Sr. Engineer, Application Security / Sensor - Product Security (Remote) @ CrowdStrike | Jobright.ai
JOBSarrow
RecommendedLiked
0
Applied
0
External
0
Sr. Engineer, Application Security / Sensor - Product Security (Remote) jobs in Sunnyvale, CA
Be an early applicantLess than 25 applicants
company-logo

CrowdStrike · 1 day ago

Sr. Engineer, Application Security / Sensor - Product Security (Remote)

ftfMaximize your interview chances
Artificial Intelligence (AI)Cloud Data Services
check
Growth Opportunities
check
H1B Sponsor Likelynote

Insider Connection @CrowdStrike

Discover valuable connections within the company who might provide insights and potential referrals.
Get 3x more responses when you reach out via email instead of LinkedIn.

Responsibilities

Join project teams working on product improvements and new products as a security expert and advisor, influencing the design and capabilities of our world-class endpoint protection products, with a focus on the endpoint sensors
Create and update threat models to help drive security decisions
Read and review source code for applications, looking for security flaws and vulnerabilities; you’ll have tools to help you but you’ll be digging deeper than tools can
Think like a hacker and attack endpoint applications with kernel components, mostly before they go to production; again, you’ll have tools to help you, but you’ll do more than tools can
Work with developers to help them understand problems, risks, design weaknesses, etc. and figure out good solutions
Build small tools and automation to make your life/your team’s life/developers’ lives easier
Validate and replicate some kinds of bug bounty reports, and hunt for similar issues in affected applications

Qualification

Find out how your skills align with this job's requirements. If anything seems off, you can easily click on the tags to select or unselect skills to reflect your actual expertise.

C/C++ programmingWindows security featuresLinux security featuresMac security featuresConcurrency in multi-threaded appsContainerization securityVirtualization securityAgile/DevOps environmentsCommon software weaknessesCollaboration across technical teamsDebugger tools GhidraDebugger tools IDA ProApplication security automationThreat modeling (STRIDE)Application penetration testingReverse-engineeringMalware analysis

Required

Experience programming in or assessing security of C/C++ apps for Windows, Linux or Mac
Understanding of system internals and security features for Windows, Linux or Mac
Comfort with concurrency considerations in multi-threaded applications
Understand the security implications of containerization and virtualization
A working understanding of how software products are created and shipped in Agile/DevOps like environments – enough to have a positive working relationship with product engineers
A solid understanding of common software weaknesses that impact endpoint and client/server applications; you’ll be hunting for these, you need to know them when you see them and be able to help product engineers understand and fix them
Comfort with collaborating across technical teams: asking technical questions, challenging assumptions, getting or providing context for decisions, etc.

Preferred

C/C++ programming/review
Experience with debuggers like Ghidra, IDA Pro, or other similar tools
Experience developing/maintaining automation for application security tasks
Experience developing and using threat models, especially using STRIDE
Application penetration testing experience, especially if it includes testing against install packages and control bypass methods
Reverse-engineering or malware analysis, or related security research capabilities

Benefits

Remote-friendly and flexible work culture
Market leader in compensation and equity awards
Comprehensive physical and mental wellness programs
Competitive vacation and holidays for recharge
Paid parental and adoption leaves
Professional development opportunities for all employees regardless of level or role
Employee Resource Groups, geographic neighbourhood groups and volunteer opportunities to build connections
Vibrant office culture with world class amenities
Great Place to Work Certified™ across the globe

Company

CrowdStrike

company-logo
CrowdStrike is a cybersecurity technology firm that provides cloud-delivered protection for cloud workloads, identity, and data.

H1B Sponsorship

CrowdStrike has a track record of offering H1B sponsorships. Please note that this does not guarantee sponsorship for this specific role. Below presents additional info for your reference. (Data Powered by US Department of Labor)
Distribution of Different Job Fields Receiving Sponsorship
Represents job field similar to this job
Trends of Total Sponsorships
2023 (49)
2022 (84)
2021 (64)
2020 (32)

Funding

Current Stage
Public Company
Total Funding
$1.24B
Key Investors
ARK Investment ManagementAccelCapitalG
2022-12-01Post Ipo Equity· $4.6M
2021-01-12Post Ipo Debt· $750M
2019-06-12IPO

Leadership Team

leader-logo
George Kurtz
President, CEO, and Founder
linkedin
leader-logo
Mike Petronaci
Chief Technology Officer, Proactive Security
linkedin
Company data provided by crunchbase
logo

Orion

Your AI Copilot