Principal Linux Security Engineer
Posted 8hrs ago
Employment Information
Report this job
Job expired or something wrong with this job?
Job Description
Principal Linux Security Engineer securing CIQ’s enterprise Linux distributions and infrastructure. Building compliance profiles, security tooling, errata, and CVE assessments for demanding workloads.
Responsibilities:
- Create and use operating-system security errata, including CSAF, VEX, advisories, repository updateinfo, and security feeds for scanners.
- Build STIG and DIS compliance profiles.
- Improve OpenSCAP and develop Ansible scripts to apply security profiles.
- Implement proactive Linux OS security using build flags, LKRG, and SELinux while preserving usability.
- Build tools and use AI to accelerate development, testing, and release.
- Score CVEs using the CVSS calculator and assess software affectedness based on build and configuration.
Requirements:
- Proven work experience in Security and/or Linux Engineering with a focus on the Linux OS.
- At least 4 years of experience doing security in Linux and at least 2 years of experience building Linux Packages.
- Understanding of security errata in an operating system, including CSAF, VEX, advisories, repository updateinfo, and security feeds.
- Experience building STIG and DIS profiles.
- Understanding of OpenSCAP and ability to build Ansible scripts to apply security profiles.
- Knowledge of proactive Linux OS security, including build flags, LKRG, and SELinux.
- Ability to build tools and interact with AI to accelerate development, testing, and release.
- Understanding of CVE scoring and experience using the CVSS calculator.
- Ability to determine whether software is affected by a CVE and how build and configuration affect affectedness.
Benefits:
- Medical, dental, and vision insurance.
- Flexible paid time off.
- Employee stock options.
- Remote work; no travel required for most positions.


















