As part of the ASE Detection Team, you will develop software to run on Apple Silicon that will enable creation of advanced detections. Specifically, you will:
Experience developing system software.
Proficiency in, or desire to learn, Swift development in Xcode.
Knowledge of operating system internals, macOS and/or iOS preferred, but Linux alone is also acceptable if coupled with a strong desire and capacity to learn macOS/iOS internals in detail.
Knowledge of system-level APIs and instrumentation at the OS/API level. Ability to understand OS changes needed to enable intercepting and interpreting system level interactions.
Experience building, maintaining, and supporting production software with rigorous performance and availability SLOs.
Experience building CI/CD tools for test/release and associated methods for deployment on host (e.g. packages, containers, etc).
Experience with macOS malware detection tools such as EndpointSecurity. (https://developer.apple.com/documentation/endpointsecurity/monitoring_system_events_with_endpoint_security) framework
Understanding of infrastructure security detections.
Sufficient security acuity to discuss/debate with detection engineers what operating system observables would most efficiently enable implementation of their detection ideas.
Bachelors degree in Computer Science / Engineering or a related, with emphasis in security related fields (or equivalent experience).
Note: Apple benefit, compensation and employee stock programs are subject to eligibility requirements and other terms of the applicable plan or program.