
Senior Linux Engineer – Privileged Access
Posted 2 days ago

Posted 2 days ago
This is a fully remote position, open to applicants in California, +1 more state.
• Design, develop, and sustain Linux endpoint privilege management features utilizing Rust, C, and .NET components.
• Create and improve kernel-facing agent functionalities by leveraging fanotify, the proc filesystem, namespaces, capabilities, and process identity.
• Develop and uphold native PAM modules alongside Linux privilege-elevation workflows.
• Construct long-running privileged Linux services employing Rust, Tokio, MQTT, TLS, and asynchronous programming methodologies.
• Create Linux-specific orchestration and session-management functionalities in .NET 8, encompassing process authentication, access controls, ephemeral accounts, and session monitoring.
• Troubleshoot intricate Linux execution and security challenges involving blocked processes, authentication races, permissions, SELinux, AppArmor, and system service behavior.
• Design secure privilege-enforcement mechanisms founded on least privilege principles, process trust, and safeguards against TOCTOU and authorization race conditions.
• Develop and manage systemd services, RPM and DEB packages, installation workflows, service hardening, and operational diagnostics.
• Collaborate with PAM, endpoint, QA, and platform engineers on architecture, testing, cross-platform functionality, and production troubleshooting.
• Leverage AI-assisted development tools such as Claude, ChatGPT, GitHub Copilot, or similar platforms to enhance systems research, debugging, code development, testing, and technical documentation.
• Over 7 years of professional experience in software or systems engineering, with substantial practical Linux systems programming expertise.
• Profound knowledge of Linux process and security principles, including the proc filesystem, user and group IDs, Linux capabilities, namespaces, and process execution.
• Extensive experience in C programming, including native Linux development, memory management, GCC and Make-based build processes, and defensive error handling.
• Familiarity with developing or integrating Linux PAM and PAM configurations.
• Strong proficiency in Rust, encompassing ownership, concurrency, asynchronous development, and design of long-running services or daemons.
• Experience with Tokio or similar asynchronous Rust frameworks.
• Proficient in C# and .NET within Linux environments.
• Background in developing security-sensitive software that includes authentication, authorization, privilege elevation, process trust, or least-privilege controls.
• Strong understanding of Linux service management and operations, including systemd, journalctl, SELinux and/or AppArmor, and RPM/DEB packaging.
• Experience in diagnosing low-level Linux behavior using system logs, process inspection, tracing, and reproducible testing tools.
• Capability to interpret Linux kernel and subsystem documentation and convert system behavior into secure production implementations.
• Willingness and ability to effectively utilize AI-assisted tools to aid in systems programming, debugging, technical analysis, testing, and documentation.
• Bachelor’s degree in Computer Science, Engineering, or a related field, or equivalent practical experience.
• Medical, Dental & Vision (including domestic partnerships).
• Employer Paid Life Insurance & Employee/Spouse/Child Supplemental Life.
• Voluntary Short/Long Term Disability Insurance.
• 401K (Roth/Traditional).
• A generous PTO plan that recognizes your commitment and seniority (including paid Bereavement/Jury Duty, etc.).
• Above-market annual bonuses.
Sigma Software Group
Collectly
Allata
Get handpicked remote jobs straight to your inbox weekly.