Sr. Engineer, Falcon Secure Access (Hybrid, ISR)
HybridTel Aviv, Tel Aviv, Israel
Job Summary
Design and build ZTNA infrastructure, implementing zero-trust access policies, secure tunneling, and identity-aware network routing to replace traditional VPN architectures. Develop advanced networking solutions by optimizing proxy communication layers, WebSocket-based transport, and encrypted client-to-server channels handling millions of concurrent connections. Architect high-scale backend systems using Node.js/TypeScript for policy enforcement, real-time threat detection, and access control, while designing secure agent-to-cloud architectures with mutual TLS and certificate pinning. Build browser-native security components including extensions and agents for Chrome, Edge, and Firefox to enforce data protection and prevent leakage. Own features end-to-end from design through delivery, influencing the roadmap toward an efficient distributed zero-trust architecture. Collaborate cross-functionally with security researchers, product, and platform teams to solve complex problems in browser security and network engineering.
Required Qualifications
- 5+ years of industry experience building high-performance software products, preferably in cybersecurity
- Strong networking fundamentals — deep understanding of communication protocols (TCP/IP, TLS, WebSockets, HTTP/2), proxy architectures, and tunneling mechanisms
- Proven backend expertise — experience designing and developing high-scale microservices in Node.js / TypeScript / Python / GO / C++
- Proven experience utilizing AI technologies to enhance decision-making, streamline workflows and processes, improve efficiency and drive business outcomes
- Hands-on experience with proxy and secure communication — WebSocket implementations, forward/reverse proxies, MITM inspection, and encrypted channel design
- Familiarity with encryption and secure communication — TLS/mTLS, certificate management, key exchange protocols, and secure session handling
- Experience with client-agent development — building complex, efficient client-side agents with reliable server communication
- Cloud platform experience — AWS, GCP, or Azure, with understanding of on-premises and hybrid infrastructure
- Strong research and debugging capabilities — ability to dive deep into protocol-level issues, browser internals, and network traces
- BS or MS in Computer Science or related engineering discipline
- Proactive problem-solver with attention to detail and a team-oriented mindset
Desired Qualifications
- Network security background — experience with network-layer security, firewalls, NAC, SD-WAN, or SASE architectures
- ZTNA / Zero Trust experience — familiarity with zero-trust principles, identity-based access, micro-segmentation, or existing ZTNA products
- EDR/endpoint security knowledge — experience integrating with endpoint detection and response platforms
- Browser internals expertise — Chromium internals, browser extension/plugin development, or web platform APIs
- OS internals and low-level networking — understanding of OS network stacks, socket programming, or kernel-level packet handling
- Containerization and orchestration — Kubernetes, self-contained deployable agents, on-prem components
Hiring someone like this?
Get your role in front of qualified candidates on Sorce.