# Senior Endpoint Engineer, EDR (Windows) at Ent

- Company: Ent
- What the company does: Ent is the intent-aware AI endpoint — reading human, AI, and app activity in real time to tell normal work from risky action and act at the moment of risk. Backed by Sequoia and Felicis.
- Company website: https://ent.ai/
- Type: Startups (AI role)
- Level: Senior
- Location: Remote
- Work setup: Remote
- Posted: 2026-09-04
- Apply by: 2026-10-19
- Apply: https://jobs.ashbyhq.com/ent-security/c09be178-5fd3-46df-b1b3-babb7c0a052b
- Page: https://www.1752.vc/careers/jobs/ent-senior-endpoint-engineer-edr-windows/

## About the role

The Ent agent is where our product meets the operating system. As an Endpoint Engineer, EDR, you'll design and ship the kernel- and user-mode components that observe process, file, registry, network, and identity activity on Windows and turn that raw activity into high-fidelity signals about what an actor is actually trying to do.

## What they're looking for

- 10+ years designing, building, and delivering production C/C++ systems software, a substantial portion of it in endpoint security, OS internals, or comparable performance-critical native code
- Deep working knowledge of operating system internals: process and thread lifecycle, memory management, file systems, drivers or kernel extensions, and IPC
- Hands-on production experience with kernel callbacks and minifilters
- Demonstrated experience building or operating an EDR, EPP, XDR, or AV product, or equivalent detection-and-response engineering
- Practical fluency in attacker TTPs, you can reason about what an attack looks like in raw telemetry, not just in a written report
- Strong low-level debugging skills, performance tracing, and crash-dump analysis

Tags: R&D
