{"id":1285596,"url":"https://alion.io/job/sisainfosec-senior-software-engineer-endpoint-security","title":"Senior Software Engineer - Endpoint Security","company":{"id":2278839,"name":"Sisainfosec","domain":"sisainfosec.com","url":"https://alion.io/company/sisainfosec","size_band":null,"is_staffing_agency":false,"employer_type":"direct","is_intermediary":false,"listed_via":null,"ats_vendor":null,"truth_index":null},"role":"Backend","role_family":"Backend","seniority":"senior","employment_type":null,"work_mode":"on_site","remote_scope":null,"remote_scope_basis":null,"remote_working_hours":null,"hiring_geo_confidence":"structured","locations":["Delhi, India"],"countries":["IN"],"hiring_countries":[],"hiring_countries_total":0,"salary":null,"salary_estimate":{"min_usd":16500,"max_usd":44000,"period":"year","method":"role_seniority_country_remote_cell","sample_n":123},"experience_years_min":8,"visa_sponsorship":false,"relocation_package":false,"has_equity":false,"technologies":[{"name":"C++","optional":false},{"name":"CI/CD","optional":false},{"name":"eBPF","optional":false},{"name":"Go","optional":false},{"name":"gRPC","optional":false},{"name":"Linux","optional":false},{"name":"Protobuf","optional":false},{"name":"Windows","optional":false},{"name":"OpenTelemetry","optional":true},{"name":"PCI DSS","optional":true},{"name":"Prometheus","optional":true},{"name":"TCP/IP","optional":true},{"name":"Windows Server","optional":true}],"status":"live","first_seen_at":"2026-08-13T08:24:50Z","employer_posted_date":null,"last_verified_at":"2026-08-13T08:24:50Z","board_verified":false,"closed_at":null,"days_open":48,"trust":{"level":"not_scored","repost_count":null,"flags":[],"days_open":48},"description":"About The Role :\n\nWe're hiring a Senior Software Engineer to build and maintain the core of our endpoint security agent the core runtime and its pluggable security-module framework, built entirely in Go along with the on-premise management and telemetry-relay components it communicates with over gRPC.\n\nYou'll also work on the kernel-level components that hook into the OS, which are written in C/C++ as is standard for driver-level development.\n\nThis is a deeply hands-on systems engineering role, working close to the OS, network stack, kernel-level hooks, and security primitives (mTLS, certificates, secure channels).\n\nKey Responsibilities :\n\n- Design and implement features across the core agent runtime and its pluggable security-module framework, entirely in Go.\n\n- Develop and maintain kernel-level components (e.g., Windows kernel drivers/minifilters, Linux kernel modules/eBPF) used for real-time monitoring, hooking, or enforcement, ensuring they are stable and don't destabilize the host OS.\n\n- Build and maintain gRPC services/clients for the control-plane channel between the agent and its on-premise management component, and the data-plane channel to the telemetry relay component.\n\n- Implement mTLS-based authentication, certificate handling, and secure channel setup at the agent level.\n\n- Build reliable local buffering/queuing (e.g., disk-backed queue, WAL) so telemetry survives relay or network downtime without data loss.\n\n- Implement security-module binary distribution, independent versioning, staged/canary rollout, and rollback mechanisms.\n\n- Design for resource efficiency CPU, RAM, disk, network so multiple security modules can run concurrently on constrained endpoints without degrading host performance.\n\n- Build failure isolation between the core agent runtime and individual security modules so one module crashing doesn't take down the whole agent.\n\n- Debug and optimize performance and stability issues across Windows and/or Linux endpoints in production environments.\n\n- Collaborate with the architect on protocol/version compatibility matrices; author and maintain Protobuf schemas.\n\n- Write unit and integration tests, participate in code reviews, and contribute to CI/CD pipelines for agent releases.\n\nRequired Technical Skills :\n\n- 8 to 10 years of hands-on software engineering experience with a strong systems-level programming background.\n\n- Strong, genuinely hands-on proficiency in Go the agent runtime and its modules are built entirely in Go this role is code-first, not just familiar-with-the-syntax.\n\n- Hands-on experience writing and debugging kernel-level code in C/C++ (e.g., Windows kernel drivers/minifilters/WFP, or Linux kernel modules/eBPF) this is a core requirement, not a nice-to-have, given the agent's need for OS-level hooks that can't be implemented in Go.\n\n- Solid understanding of gRPC/Protocol Buffers, HTTP/2 streaming, and core networking fundamentals (TCP/IP, TLS/mTLS).\n\n- Experience building agent/daemon software that runs persistently on endpoints (Windows and/or Linux) service lifecycle, background processes, auto-update mechanisms.\n\n- Comfortable with concurrent/multi-threaded programming and designing for resource-constrained environments.\n\n- Experience implementing local data persistence or buffering for reliability under network interruption (disk-backed queues, write-ahead logs, or similar).\n\n- Understanding of certificate-based authentication and secure communication design at the implementation level.\n\nPreferred / Nice To Have :\n\n- Experience in EDR/XDR, antivirus, or other endpoint security agent development.\n\n- Exposure to active security-testing or breach-and-attack simulation style tool internals.\n\n- Experience with cross-platform agent development (Windows/Linux/macOS).\n\n- Familiarity with PCI-DSS or other compliance-driven engineering practices.\n\n- Experience with observability tooling (Prometheus, OpenTelemetry, or similar) for on-prem/distributed components.\n\nWhat Success Looks Like In This Role :\n\n- Security-module binaries that upgrade cleanly and roll back safely without fleet-wide incidents.\n\n- An agent that degrades gracefully buffering and reconnecting rather than losing data during network interruptions.\n\n- Kernel-level code that is stable enough to run on production endpoints without causing crashes or performance regressions.\n\nEducation :\n\n- Bachelor's degree in Computer Science, Engineering, or a related field.\n\n- Equivalent hands-on experience will be given full weight over formal qualifications.\nSkills\nCyber Security, Golang, C++, Linux, Windows Server, Endpoint Detection & Response, PCI-DSS","description_format":"text","description_chars":4626,"description_truncated":false,"requirements":{"experience_years_min":8,"management_years_min":null,"team_size_min":null,"manages_managers":false,"education":null,"security_clearance":false,"languages":[]},"benefits":[],"hiring_locations":[],"hiring_excludes":[],"relocation_offered":false,"industries":["Endpoint Security","Vulnerability Management"],"lifecycle":[{"event":"open","at":"2026-09-26T04:00:00Z"}],"liveness":{"score":7,"band":"cold","label":"Long shot","p_open":0.4,"p_active":0.527,"p_room":0.35,"age_days":47,"expected_fill_days":23,"reasons":["seen:47","velocity","win:tail"],"computed_at":"2026-09-30T05:45:00Z"},"pay":null,"html_url":"https://alion.io/job/sisainfosec-senior-software-engineer-endpoint-security","json_url":"https://alion.io/job/sisainfosec-senior-software-engineer-endpoint-security.json","meta":{"generated_at":"2026-10-01T04:40:38Z","cache_seconds":300,"methodology":"https://alion.io/methodology","terms":"https://alion.io/terms","contact":"https://alion.io/contact","api":"https://alion.io/developers","usage":{"tier":"crawler","counted_by":"address","units_charged":1,"used_today":4157,"day_limit":5000,"remaining_today":843,"minute_limit":60,"resets_at":"2026-10-02T00:00:00Z"}}}