Linux Security Engineer

Exein SpA
Germany
about 1 month ago

Role details

Contract type
Permanent contract
Employment type
Full-time (> 32 hours)
Compensation
€70,000.0 - €120,000.0
Working hours
Regular working hours
Job source

Tech stack

C (Programming Language) Linux Monitoring of Systems Intrusion Detection Systems Linux Kernel Linux Security Modules Machine Learning Open Source Technology Secure Coding System Programming Git Containerization
+3 more
Selinux Kubernetes Docker

Job description

  • Design, develop, and optimize an advanced eBPF-based security monitoring agent.
  • Analyze Linux kernel structures and system calls to detect and mitigate security threats.
  • Contribute actively to architecture discussions, ensuring scalability, performance, and reliability of security solutions.
  • Collaborate with open-source communities, contributing back improvements and innovations.
  • Participate in research to innovate security detection methodologies and integrate them into product design.
  • Ensure high-quality, reliable, and secure code through rigorous reviews, testing, and collaboration within the engineering team.

Requirements

Do you have experience in SELinux?, Exein is seeking a skilled Linux Security Engineer to develop and enhance an innovative eBPF-based security agent designed to monitor and protect Linux operating systems at a deep, internal level. Ideal candidates possess substantial expertise in Linux internals, with specific knowledge of kernel structures, system calls, containers, process management, and security implications. Proficiency in Rust and familiarity with eBPF or C is strongly desired., * Solid knowledge of Linux internals (tasks, credentials, process hierarchies, syscalls, namespaces, etc.).

  • Strong proficiency in Rust with emphasis on system programming or security-focused applications.
  • Practical knowledge of system-level security concepts and best practices.
  • Experience with containerization technologies (e.g., Docker, Kubernetes) and a clear understanding of their internal mechanisms.
  • Experience with Git and collaborative development workflows.

Preferred:

  • Hands-on experience with eBPF for kernel-level monitoring and tracing.
  • Expertise in C programming for low-level systems or kernel modules.
  • Experience in developing or contributing to security solutions or intrusion detection systems.
  • Understanding of common kernel tracing tools and Linux monitoring technologies.
  • Familiarity with additional security-focused tools and methodologies (IDS/IPS, anomaly detection, Seccomp, SELinux).
  • Familiarity with anomaly detection techniques or applied machine learning concepts in security contexts.

About the company

The physical and digital worlds are merging. Vehicles, medical devices, industrial systems, critical infrastructure: security hasn’t kept pace. AI is accelerating everything, from the capabilities of the systems we depend on to the sophistication of the threats targeting them. A software vulnerability can now have physical consequences. A physical breach can compromise entire digital ecosystems. Billions of devices operate with little to no protection, and traditional approaches can’t keep up. Not at this scale, not at this speed, and not across this diversity of systems.

Exein exists to solve this. We build the security layer for a world where physical and digital threats are no longer separate problems, from kernel-level runtime protection on embedded devices to cloud-native platforms that analyze, protect, and prove compliance across entire device fleets. We’re not patching the old model. We’re building security from the core out.

Apply for this position

This job is hosted externally. Click below to view the full posting and apply.

Apply on indeed.com

Good distractions

Talks and stories from around this role — technically off-topic, practically not.

6:21 min

Investigating push inefficiencies with upstream Git experts

Jonathan Creamer · Coffee With Developers

52 sec

Running persistent Linux environments directly on Windows

Ben Breard Ben Breard · WWC 2025

2:07 min

Inspecting default bridge architectures and custom Docker networks

Oliver Seitz Oliver Seitz · WWC 2025

2:13 min

Ecosystem of tooling and future capabilities of eBPF

Mohammed Aboullaite Mohammed Aboullaite · WWC 2024

56 sec

Favorite git commands and the importance of patch commits

Eileen Uchitelle Eileen Uchitelle +1 · Coffee With Developers

2:08 min

Protecting hardware access controls using eBPF security hooks

Reinhard Reinhard · WWC 2024

Videos

See all

Related articles

See all