CrowdStrike logo
CrowdStrikePosted 4 weeks ago

Sr. Engineer, Falcon Secure Access (Hybrid, ISR)

HybridTel Aviv, Tel Aviv, Israel

Full TimeSenior LevelEnterprise

Job Summary

Design and build ZTNA infrastructure, implementing zero-trust access policies, secure tunneling, and identity-aware network routing to replace traditional VPN architectures. Develop advanced networking solutions by optimizing proxy communication layers, WebSocket-based transport, and encrypted client-to-server channels handling millions of concurrent connections. Architect high-scale backend systems using Node.js/TypeScript for policy enforcement, real-time threat detection, and access control, while designing secure agent-to-cloud architectures with mutual TLS and certificate pinning. Build browser-native security components including extensions and agents for Chrome, Edge, and Firefox to enforce data protection and prevent leakage. Own features end-to-end from design through delivery, influencing the roadmap toward an efficient distributed zero-trust architecture. Collaborate cross-functionally with security researchers, product, and platform teams to solve complex problems in browser security and network engineering.

Required Qualifications

  • 5+ years of industry experience building high-performance software products, preferably in cybersecurity
  • Strong networking fundamentals — deep understanding of communication protocols (TCP/IP, TLS, WebSockets, HTTP/2), proxy architectures, and tunneling mechanisms
  • Proven backend expertise — experience designing and developing high-scale microservices in Node.js / TypeScript / Python / GO / C++
  • Proven experience utilizing AI technologies to enhance decision-making, streamline workflows and processes, improve efficiency and drive business outcomes
  • Hands-on experience with proxy and secure communication — WebSocket implementations, forward/reverse proxies, MITM inspection, and encrypted channel design
  • Familiarity with encryption and secure communication — TLS/mTLS, certificate management, key exchange protocols, and secure session handling
  • Experience with client-agent development — building complex, efficient client-side agents with reliable server communication
  • Cloud platform experience — AWS, GCP, or Azure, with understanding of on-premises and hybrid infrastructure
  • Strong research and debugging capabilities — ability to dive deep into protocol-level issues, browser internals, and network traces
  • BS or MS in Computer Science or related engineering discipline
  • Proactive problem-solver with attention to detail and a team-oriented mindset

Desired Qualifications

  • Network security background — experience with network-layer security, firewalls, NAC, SD-WAN, or SASE architectures
  • ZTNA / Zero Trust experience — familiarity with zero-trust principles, identity-based access, micro-segmentation, or existing ZTNA products
  • EDR/endpoint security knowledge — experience integrating with endpoint detection and response platforms
  • Browser internals expertise — Chromium internals, browser extension/plugin development, or web platform APIs
  • OS internals and low-level networking — understanding of OS network stacks, socket programming, or kernel-level packet handling
  • Containerization and orchestration — Kubernetes, self-contained deployable agents, on-prem components

Hiring someone like this?

Get your role in front of qualified candidates on Sorce.

Get started

Apply to this job in one click with Sorce

Apply on Sorce