End Point Security Lead Developer (USA Based)

Remote

UltraViolet Cyber

Evolve your security operations into your proactive risk reducing superpower through the combination of MDR with Red Teams that validate every alert.

View company page

Make a difference here.

UltraViolet Cyber is a leading platform-enabled unified security operations company providing a comprehensive suite of security operations solutions. Founded and operated by security practitioners with decades of experience, the UltraViolet Cyber security-as-code platform combines technology innovation and human expertise to make advanced real-time cybersecurity accessible for all organizations by eliminating risks of separate red and blue teams.

By creating continuously optimized identification, detection, and resilience from today’s dynamic threat landscape, UltraViolet Cyber provides both managed and custom-tailored unified security operations solutions to the Fortune 500, Federal Government, and Commercial clients. UltraViolet Cyber is headquartered in McLean, Virginia, with global offices across the U.S. and in India. 

Ultraviolet Cyber is seeking a highly skilled and motivated (hands-on) Endpoint Security Engineering Lead to join our dynamic team. Someone with a strong sense of ownership for their product, with zeal for security, optimization, and collaboration.  As the Endpoint Security Engineering Lead, you will play a crucial role in creating, developing, and maintaining our custom endpoint agent. This agent is built and written in Golang.  Develop and maintain design to efficiently ship logs to our central logging system. 

The Engineering role requires analysis and development of Windows/Linux security agents/solutions in both traditional workstations/endpoints and cloud-native systems such as Kubernetes. Provide architecture assurance on Windows/Linux security initiatives.   

Preferred Requirements:

  • Win32 user mode APIs
  • Linux user mode APIs
  • Systemd / journald
  • Windows event logging
  • Event Tracing for Windows (ETW)
  • Sysinternals Sysmon
  • Linux audit
  • Extended Berkeley Packet Filter (EBPF)
  • C/C++, Golang, Ruby, and Python
  • OpenTelemetry
  • OSQuery
  • OpenAPI
  • GRPC
  • Open Cybersecurity Schema Framework (OCSF)
  • Software Bill of Materials (SBOM)
  • Windows Filesystem Minifilter API
  • Windows Filtering Platform (WFP)

Responsibilities:

  • Design, build, and maintain our endpoint agent that securely ships logs to our MDR platform.  
  • Collaborate with cross-functional teams to define technical requirements and ensure the agent's seamless integration with existing systems and tools.
  • Apply knowledge with multi-architecture builds of applications.
  • Conduct code reviews, provide mentorship, and support the growth and professional development of junior engineers.
  • Implement best practices for endpoint security, ensuring data confidentiality, integrity, and availability.
  • Continuously monitor and enhance the performance, scalability, and reliability of the endpoint agent.
  • Troubleshoot and resolve issues related to the agent's performance and functionality in a timely manner.  i.e. Handle large amounts of data throughput with little to no latency impact.
  • Contribute to build out unit tests and CI/CD implementations to verify code updates across a suite of OS’s and architectures.
  • Stay up to date with industry trends and advancements in endpoint security, and proactively suggest improvements to our security measures.
  • Collaborate with security analysts to identify potential threats and vulnerabilities and develop countermeasures to enhance the overall security posture of the agent.
  • Participate in security incident response and investigations, providing expertise and guidance as needed.
  • Create and maintain technical documentation.  To include well-documented code and provide comprehensive support documentation, including architecture, design, and troubleshooting guides.

Minimum Requirements:

  • Bachelor's or master's degree in computer science, Information Technology, or a related field. 
  • Proven experience in designing and developing endpoint security solutions, with a strong focus on log shipping and data security.
  • Deep understanding of popular operating systems and their internals, ie: Linux syscalls, windows ETW events, etc.
  • Expertise in Golang, with a deep understanding of their application in security-related projects.
  • Solid understanding of various endpoint security concepts, including encryption, authentication, and access control.
  • Hands-on experience with endpoint security tools, such as antivirus, intrusion detection, and firewall solutions.
  • Strong knowledge of networking protocols, web application security, and cloud-based environments.
  • Self-motivated with apt prioritization.  Ability to lead and mentor junior engineers, fostering a collaborative and innovative work environment.
  • Excellent problem-solving skills and the ability to troubleshoot complex technical issues.
  • Strong communication and interpersonal skills, with the ability to work effectively with both technical and non-technical stakeholders.
  • Familiarity with compliance standards and regulations related to data security and privacy.

Benefits at UltraViolet Cyber!

  • 401(k), including an employer match of 100% of the first 3% contributed and 50% of the next 2% contributed  
  • Medical, Dental, and Vision Insurance (available on the 1st day of the month following your first day of employment)  
  • Group Term Life, Short-Term Disability, Long-Term Disability  
  • Voluntary Life, Hospital Indemnity, Accident, and/or Critical Illness  
  • Participation in the Discretionary Time Off (DTO) Program  
  • 11 Paid Holidays Annually  
We sincerely thank all applicants in advance for submitting their interest in this position. We know your time is valuable.

UltraViolet Cyber welcomes and encourages diversity in the workplace regardless of race, gender, religion, age, sexual orientation, gender identity, disability, or veteran status. 

If you want to make an impact, UltraViolet Cyber is the place for you! 
Apply now Apply later
  • Share this job via
  • or

* Salary range is an estimate based on our InfoSec / Cybersecurity Salary Index 💰

Tags: APIs Application security APT C CI/CD Cloud Compliance Computer Science Encryption Endpoint security Firewalls Golang Incident response Intrusion detection Kubernetes Linux Privacy Python Ruby SBOM Vulnerabilities Windows

Perks/benefits: 401(k) matching Health care Insurance Team events

Region: Remote/Anywhere
Job stats:  5  0  0

More jobs like this

Explore more InfoSec / Cybersecurity career opportunities

Find even more open roles in Ethical Hacking, Pen Testing, Security Engineering, Threat Research, Vulnerability Management, Cryptography, Digital Forensics and Cyber Security in general - ordered by popularity of job title or skills, toolset and products used - below.