About the Role
Diversity. Inclusion. They’re more than just words for us. They are the guiding values of how we build our teams, cultivate leaders, and create a culture where people feel connected.
We take care of our employees so they can take care of our customers. Customers who come from all walks of life just like us. We hire incredible people from diverse backgrounds because when we are different together, we are stronger together.
The Role
As Staff Software Development Engineer, you'll be the macOS authority for the runtime enforcement layer of our Identity Security Platform. These components decide whether to permit or deny each action an identity or AI agent attempts on a macOS endpoint.
You'll set the technical direction for enforcement on macOS and own it end to end. That means hooks that make the right call in real time, across the fleet, without breaking legitimate workloads. Peer engineers own the Linux and Windows enforcement surfaces. You share one policy language, one event schema, and one userspace agent with them, but macOS is yours.
You know this layer better than anyone. You want your code to be the thing that stops a compromised credential or a runaway AI coding agent before it impacts production.
What You’ll Do
- Design, build, and own our Endpoint Security client: process execution, file, and signal events, plus the synchronous authorization events where you allow or deny inline.
- Own the enforcement decision path: event capture from Endpoint Security, policy evaluation, and deny decisions applied within Apple's authorization deadline.
- Drive down enforce-mode latency on the authorization path as we scale across large fleets.
- Extend enforcement across network and content control: a Network Extension content filter for socket- and flow-level policy.
- Harden portability and stability across macOS versions and both Apple Silicon and Intel.
- Partner with the Linux and Windows enforcement engineers and the policy-backend team on the shared plane.
- Read requirements to find gaps and risks, propose simplifications, and explain tradeoffs to technical and non-technical stakeholders.
- Raise the engineering bar and take end-to-end ownership from design through production.
- Mentor senior and mid-level engineers on macOS systems and Endpoint Security craft.
What You’ll Bring
This is a macOS specialist role, so the depth requirements are real:
- Deep macOS system internals - the Endpoint Security framework, System and Network Extensions, the code-signing and notarization model, launchd and XPC, TCC and entitlements.
- Hands-on work with Endpoint Security for enforcement, with real comfort on the synchronous authorization path.
Requirements
macOS system internals
You must have deep knowledge of the Endpoint Security framework and related macOS internals.
C/C++/Objective-C/Swift/Rust
Proficiency in one or more of these programming languages is essential for production systems programming.
Endpoint Security experience
Hands-on experience with macOS Endpoint Security for enforcement is required.
Synchronous authorization path
You should be comfortable handling AUTH events within Apple's deadlines.
Nice to Have
Experience mentoring other engineers is a plus.
Familiarity with Linux and Windows enforcement systems can be beneficial.
Benefits
Remote work
This position offers the flexibility of remote work.
Diversity and inclusion programs
We have initiatives to promote diversity and inclusion within the workplace.