Engineer III - Sensor
About the role
In this role, you will research and develop techniques for detecting malicious activity on Linux systems, then build them into production-level solutions for deployment in the endpoint sensor. The role is a split of research and implementation, working alongside a small and nimble group of Linux engineers and often leveraging shared code with other sensor platforms such as Windows and macOS.
Responsibilities
- Design and build detection logic and systems leveraged across teams within CrowdStrike to detect cyber attackers and stop breaches
- Research techniques for detecting malicious activity, including some reverse engineering and/or big-data analysis
- Own features from design to delivery, developing them into production-level solutions for deployment
- Apply engineering best practices—secure coding, testing paradigms, debugging, performance, code reviews, CI/CD, and OS internals—to ensure our sensor code is fast and reliable
- Collaborate with a cross-functional team spread across geographies
- Respond to and troubleshoot product issues reported by customers
- Take on other projects as assigned
Requirements
- 3+ years of experience with either:
- Reverse engineering, threat detection, and malware analysis, and an familiarity with on-device development, or
- Designing, building, and delivering high-quality software in C/C++ (and ideally similar languages), and an familiarity or proven interest in security
Solid knowledge of Linux OS internals: processes, storage, networking, and memory management
Ability to develop high-quality code in C/C++ that meets:
- High-concurrency requirements with strong use of multi-threading
- High reliability and performance requirements
- Detailed low-level operating requirements (memory usage, efficient performance, standards conformance)
Qualifications
- Team player—able to lead, mentor, communicate, collaborate, and work effectively in a distributed team, and to clearly articulate thoughts and designs to peers and upper management
- Prominent experience utilizing AI technologies to enhance decision-making, streamline workflows and processes, improve efficiency and drive business outcomes.
Bonus Points:
- Familiarity and ideally experience with Linux kernel programming and/or eBPF
- Prior security experience, particularly in endpoint threat detection or sensor development, including on other operating systems (macOS, Windows)
- Familiarity with recent developments in the Linux threat landscape
- Experience developing and delivering 24/7 enterprise endpoint software
Skills
- Understanding of Linux kernel and user space
- Passion for continuous learning to keep up with an ever-changing threat landscape
- Creative mindset for designing new detection methods
- Discipline to write fast and reliable code
Benefits
Market leader in compensation and equity awards
Comprehensive physical and mental wellness programs
Competitive vacation and holidays for recharge
Paid parental and adoption leaves
Professional development opportunities for all employees regardless of level or role
Employee Networks, geographic neighborhood groups, and volunteer opportunities to build connections
Vibrant office culture with world class amenities
Great Place to Work Certified™ across the globe
Pay
The base salary range for this position for all U.S. candidates is $120,000 - $180,000 per year, with eligibility for bonuses, equity grants and a comprehensive benefits package that includes health insurance, 401k and paid time off. For detailed information about the U.S. benefits package, please click here.
Schedule
Not specified