Principal Linux Security Engineer

21 hours, 9 minutes ago
Full-time
Lead
DevOps and Infrastructure
CIQ

CIQ

CIQ reimagines software infrastructure with Rocky Linux, offering solutions for security, HPC computing, and cluster management. They empower people to do great things with support, certified hardware, and open source software.

Internet Software & Services
51-250
Founded 2020
$26M raised

Description

  • Create and manage OS security errata, including CSAF, VEX, advisories, repository update metadata, and scanner feeds.
  • Develop STIG and DISA profiles, improve OpenSCAP content, and create Ansible scripts to apply security controls.
  • Implement proactive Linux security measures involving build flags, LKRG, SELinux, and usable OS hardening.
  • Build tools that accelerate security development, testing, and release workflows, including AI-assisted development processes.
  • Score CVEs using CVSS and interpret the factors behind severity ratings.
  • Determine CVE affectedness based on software builds, configurations, and system settings.
  • Collaborate across Linux engineering and security activities to improve enterprise operating-system security.

Requirements

  • Proven professional experience in security engineering and/or Linux engineering focused on the Linux operating system.
  • At least 4 years of experience performing Linux security work.
  • At least 2 years of experience building Linux packages.
  • Practical knowledge of CSAF, VEX, security advisories, repository update metadata, and vulnerability-scanner feeds.
  • Experience developing STIG and DISA security profiles, OpenSCAP content, and Ansible remediation scripts.
  • Understanding of Linux hardening technologies such as build security flags, LKRG, and SELinux.
  • Hands-on experience using the CVSS calculator and evaluating CVE severity.
  • Ability to determine whether software is affected by CVEs based on build and configuration differences.
  • Experience building tools to automate or accelerate security development, testing, and release processes.

Benefits

  • Medical, dental, and vision insurance.
  • Flexible paid time off.
  • Employee stock options.
  • Remote work with no travel required for most positions.

Interested in this position?

Apply directly on the company website

Apply Now

Similar Roles

ingénieur de sécurité principal

Shakepay 51-250 Diversified Financial Services

Shakepay recherche un ingénieur de sécurité principal pour protéger son infrastructure, ses produits et ses données clients tout en développant ses capacités de sécurité, d’observabilité et d’intelligence artificielle dans un environnement fintech réglementé.

AWS Bitcoin Git GitHub
19 hours, 54 minutes ago

Security Software Engineer II, Detection and Response

Pinterest 5K-10K Internet Software & Services

Pinterest is hiring a Security Engineer to strengthen detection and incident response capabilities, protect employees and infrastructure, and adapt security operations to emerging threats in a cloud-first environment.

Go Network Security Python Ruby SIEM TCP/IP
20 hours, 24 minutes ago

Lead Security Engineer

LawnStarter 11-50 Professional Services

LawnStarter is hiring a hands-on Lead Security Engineer to establish and lead security across its AWS-based marketplace, applications, payment systems, customer data, and compliance programs.

AWS CI/CD Datadog Encryption Kubernetes Laravel Network Security PHP React Secrets Management TypeScript
21 hours, 24 minutes ago

Senior Microsoft Purview Engineer

New Era Technology US 1K-5K IT Services

New Era Technology is seeking a hands-on Senior Microsoft Purview Engineer to operate and mature enterprise data protection capabilities in a live production environment through a 6–12 month staff augmentation engagement, with possible full-time conversion.

1 day, 19 hours ago

You're on a roll! Sign up now to keep applying.

Sign Up

Already have an account? Log in

Used by 14,729+ remote workers