Beyondtrust
Senior/Staff Software Development Engineer - macOS Endpoint
Remote Canada | Remote United States · Staff+
Sponsorship not specifiedDetected 16 hours ago
C++SwiftObjective-CCode ReviewLinuxVoIPLeadership
About the role
- As Staff Software Development Engineer, you'll be the macOS authority for the runtime enforcement layer of our Identity Security Platform.
- These components decide whether to permit or deny each action an identity or AI agent attempts on a macOS endpoint.
- That means hooks that make the right call in real time, across the fleet, without breaking legitimate workloads.
Responsibilities
- Own the enforcement decision path: event capture from Endpoint Security, policy evaluation, and deny decisions applied within Apple's authorization deadline so a slow verdict never stalls the system or gets auto-allowed.
- Drive down enforce-mode latency on the authorization path as we scale across large fleets. That means process enrichment, code-signature and hash caching with eviction under heavy process-churn, and process-ancestry resolution.
- Partner with the Linux and Windows enforcement engineers and the policy-backend team on the shared plane: policy semantics, cross-stack conformance, event schema, the common Rust agent. You'll represent macOS in cross-org architecture reviews.
- Raise the engineering bar. You'll take end-to-end ownership from design through production, and you'll carry extra weight where a bug means a wrong security decision or a hung endpoint across the fleet, not just a crash of one process.
- Experience building a System Extension end to end transfers directly.
Requirements
- You share successes and failures openly, and you work well with people.
- You know systems software best practices, from rigorous testing to sharp peer review to architecture that survives contact with production.
- 8+ years in systems-level software engineering, with real depth in macOS system software.
- That matters most in correctness- and security-critical enforcement code, where you have to know exactly when to stop and verify by hand.
- A track record of technical leadership on complex, ambiguous initiatives that span teams.
Nice to have
- process execution, file, and signal events, plus the synchronous authorization events where you allow or deny inline.
- The macOS isolation and security model - the App Sandbox, TCC, SIP, and how they intersect with endpoint security tooling.
Company info
- BeyondTrust is the global identity security leader protecting Paths to Privilege™. Our identity-centric approach goes beyond securing privileges and access, empowering organizations with the most effective solution to manage the entire identity attack surface and neutralize threats, whether from external attacks or insiders.
- BeyondTrust is leading the charge in transforming identity security to prevent breaches and limit the blast radius of attacks, while creating a superior customer experience and operational efficiencies. We are trusted by 20,000 customers, including 75 of the Fortune 100, and our global ecosystem of partners.
- Learn more at www.beyondtrust.com.
- BeyondTrust is the global identity security leader protecting Paths to Privilege™.
- Our identity-centric approach goes beyond securing privileges and access, empowering organizations with the most effective solution to manage the entire identity attack surface and neutralize threats, whether from external attacks or insiders.
- BeyondTrust is leading the charge in transforming identity security to prevent breaches and limit the blast radius of attacks, while creating a superior customer experience and operational efficiencies.
- We are trusted by 20,000 customers, including 75 of the Fortune 100, and our global ecosystem of partners.
- Harden portability and stability across macOS versions and both Apple Silicon and Intel, so enforcement loads and behaves correctly on the OS versions customers actually run.
Apply directly at Beyondtrust →Create a free account for alerts like thisView Beyondtrust immigration profile
This listing is sourced directly from Beyondtrust's careers page and normalized into a canonical job model.