# Staff Software Development Engineer - Windows Endpoint at BeyondTrust

- Company: BeyondTrust
- What the company does: Backed by Insight.
- Company website: http://www.beyondtrust.com
- Type: Startups
- Level: Senior
- Location: Remote Canada | Remote United States
- Work setup: Remote
- Posted: 2026-07-21
- Apply by: 2026-10-08
- Apply: https://job-boards.greenhouse.io/beyondtrust/jobs/7931017
- Page: https://www.1752.vc/careers/jobs/beyondtrust-staff-software-development-engineer-windows-endpoint/

## About the role

As Staff Software Development Engineer, you'll be the Windows kernel authority for the runtime enforcement layer of our Identity Security Platform. These components decide, in-kernel, whether to permit or deny each action an identity or AI agent attempts on a Windows endpoint.

## What they're looking for

- Own the kernel/user-mode enforcement boundary: kernel-side event capture, policy evaluation in user mode, and deny decisions pushed back into the driver as hash-keyed caches so subsequent hits block inline
- Read requirements to find gaps and risks, propose simplifications, and explain tradeoffs to technical and non-technical stakeholders
- Mentor senior and mid-level engineers on Windows systems and kernel-driver craft
- Driver signing and deployment reality: WHQL attestation, EV code signing, the WDK and WDF/KMDF, and the operational cost of shipping kernel code to a large install base
- The Windows isolation model - job objects, silos, Windows containers, AppContainer - and how it intersects with kernel-level security tooling
- Kernel debugging and performance tooling: WinDbg and KD, live-kernel and crash-dump analysis, ETW, Driver Verifier, and the checked-build workflow

Tags: Engineering
