DevJobs

Sr. Software Engineer - Secure Access

Overview
Skills
  • C++ C++
  • TypeScript TypeScript
  • Go Go
  • Python Python
  • Node.js Node.js
  • Microservices Microservices
  • AWS AWS
  • Azure Azure
  • GCP GCP
  • Kubernetes Kubernetes
  • Reverse proxy
  • MITM inspection
  • mTLS
  • On-premises infrastructure
  • Proxy architectures
  • AI technologies
  • Secure session handling
  • TCP/IP
  • TLS
  • Tunneling mechanisms
  • WebSocket implementations
  • WebSockets
  • Key exchange protocols
  • 2
  • Certificate management
  • Client-side agent development
  • Encrypted channel design
  • Forward proxy
  • HTTP
  • Hybrid infrastructure
  • Firewalls
  • Endpoint security
  • SASE architectures
  • SD-WAN
  • Socket programming
  • EDR
  • NAC
  • Chromium internals
  • Kernel-level packet handling
  • Web platform APIs
  • Browser extension development
  • Micro-segmentation
  • Zero-trust principles
  • ZTNA

The Falcon Secure Access (FSA) team at CrowdStrike is expanding. As a Senior Software Engineer on our team, you will architect and deliver a next-generation secure access platform that converges Zero Trust Network Access with browser-native security.


You'll build the core systems that enable users to seamlessly and securely access internal sites, private applications, and cloud resources directly from the browser — without legacy VPNs or remote desktops — while enforcing real-time protection against zero-day exploits, phishing, data exfiltration, and unauthorized access.


This role sits at the intersection of network engineering and browser security: you'll design and implement advanced proxy communication, secure tunneling, and identity-aware routing — all operating at the browser's core to deliver holistic protection including DLP, insider threat detection, SaaS security, and continuous zero-trust verification.


What You'll Do:

  • Design and build ZTNA infrastructure — implement zero-trust access policies, secure tunneling, and identity-aware network routing that replaces traditional VPN architectures
  • Develop advanced networking solutions — build and optimize proxy communication layers, WebSocket-based transport, and encrypted client-to-server channels that handle millions of concurrent connections
  • Architect high-scale backend systems — design distributed microservices for policy enforcement, real-time threat detection, and access control at scale using Node.js / TypeScript
  • Implement secure client-server communication — design highly secured agent-to-cloud architectures with certificate pinning, mutual TLS, and encrypted tunneling protocols
  • Build browser-native security components — develop browser extensions and agents (Chrome, Edge, Firefox etc.) that enforce data protection, prevent data leakage, and provide granular visibility and control
  • Own features end-to-end — from design through delivery, including deployment and monitoring
  • Influence architecture and roadmap — play a key role in architectural decisions, building toward an efficient distributed zero-trust architecture
  • Research and develop — drive new initiatives and POCs in zero-trust access domains and browser security
  • Collaborate cross-functionally — work with security researchers, product, and platform teams across multiple locations to solve complex problems


What You'll Need:

  • 5+ years of industry experience building high-performance software products, preferably in cybersecurity
  • Strong networking fundamentals — deep understanding of communication protocols (TCP/IP, TLS, WebSockets, HTTP/2), proxy architectures, and tunneling mechanisms
  • Proven backend expertise — experience designing and developing high-scale microservices in Node.js / TypeScript / Python / GO / C++
  • Proven experience utilizing AI technologies to enhance decision-making, streamline workflows and processes, improve efficiency and drive business outcomes
  • Hands-on experience with proxy and secure communication — WebSocket implementations, forward/reverse proxies, MITM inspection, and encrypted channel design
  • Familiarity with encryption and secure communication — TLS/mTLS, certificate management, key exchange protocols, and secure session handling
  • Experience with client-agent development — building complex, efficient client-side agents with reliable server communication
  • Cloud platform experience — AWS, GCP, or Azure, with understanding of on-premises and hybrid infrastructure
  • Strong research and debugging capabilities — ability to dive deep into protocol-level issues, browser internals, and network traces
  • BS or MS in Computer Science or related engineering discipline
  • Proactive problem-solver with attention to detail and a team-oriented mindset


Bonus Points:

  • Network security background — experience with network-layer security, firewalls, NAC, SD-WAN, or SASE architectures
  • ZTNA / Zero Trust experience — familiarity with zero-trust principles, identity-based access, micro-segmentation, or existing ZTNA products
  • EDR/endpoint security knowledge — experience integrating with endpoint detection and response platforms
  • Browser internals expertise — Chromium internals, browser extension/plugin development, or web platform APIs
  • OS internals and low-level networking — understanding of OS network stacks, socket programming, or kernel-level packet handling
  • Containerization and orchestration — Kubernetes, self-contained deployable agents, on-prem components


Why Join Our Team:

  • High-impact work: Your code will protect sensitive data for thousands of global organizations
  • Technical growth: Work on challenging problems at the intersection of cloud computing, security, and distributed systems
  • Innovation-driven culture: We encourage experimentation and value creative problem-solving
  • CrowdStrike’s mission: Be part of stopping breaches and protecting customers worldwide


Ready to build the future of cloud security? Apply now.

CrowdStrike