Staff Software Engineer
Indexed description
Role Overview
We are seeking a Senior Linux systems engineer with over 10 years of specialized experience in low-level C/C++ systems programming, cryptographic network security, and enterprise identity integration. In this role, you will architect, build, and secure core Linux infrastructure components. You will be responsible for designing high-throughput Linux daemons, authoring custom PAM modules, automating X.509 certificate lifecycles, and hardening enterprise software against complex, system-level vulnerabilities.Key Responsibilities
- Low-Level Systems Development: Architect and build high-performance, fault-tolerant Linux daemons using modern C/C++ and POSIX APIs.
- Identity & Authentication Engineering: Design and implement custom Pluggable Authentication Modules (PAM) and integrate systems seamlessly with enterprise identity providers (Active Directory, LDAP, Kerberos, SSSD).
- Cryptography & PKI Management: Implement robust end-to-end transport and storage security using OpenSSL/WolfSSL APIs; manage and automate X.509 PKI certificate lifecycles, mTLS configurations, and cryptographic operations.
- System Hardening & Security: Enforce system safety across Linux environments using granular security policies (Seccomp, SELinux/AppArmor) and secure coding standards (constant-time cryptographic execution, memory safety).
- Network Analysis & Debugging: Diagnose, trace, and resolve complex network- and protocol-level bottlenecks or security flaws across TCP/IP stacks using advanced tools.
- 10+ years of hands-on experience in Linux systems programming, enterprise security engineering, or low-level software architecture.
- Languages & Toolchains: Proficient in C, C++, POSIX APIs, CMake, Make, GCC/Clang, GDB, and advanced Shell Scripting (Bash).
- Linux Systems Programming: Deep knowledge of IPC (Unix Sockets, Shared Memory, Message Queues), Concurrency/Threading (pthreads), Asynchronous Event Loops (epoll, io_uring), Custom Daemon development, and manual Memory Management.
- Cryptography & Security: Direct API-level experience with OpenSSL/WolfSSL, TLS 1.2/1.3, mTLS, X.509 PKI, PEM/DER encoding, symmetric/asymmetric ciphers, HMAC, and constant-time cryptographic programming.
- Authentication & Identity Integration: Demonstrated experience with PAM module development, Active Directory (AD), LDAP, SSSD, Kerberos/GSSAPI, and enterprise OAuth2/OIDC protocols.
- Networking & Linux Hardening: Expert understanding of TCP/IP, socket-level programming, Seccomp sandboxing, AppArmor/SELinux mandatory access control, and network tracing tools (tcpdump, Wireshark).
- AI Collaboration: Demonstrated expertise leveraging advanced AI coding tools (e.g., Cursor, Claude) as force-multiplier co-workers to accelerate low-level engineering workflows. Spec-Driven Methodology: Strong foundation in AI spec-driven development practices (e.g., Plan/BMAD modes) to design, map, and implement full SDLC phases.
- AI Code Review & Governance: Ability to critically inspect, profile, and audit AI-generated code for zero-trust security, memory safety, architectural integrity, and performance bottlenecks.
Create a free Caio profile to unlock more results and save your role and location preferences.
Unlock free search