Senior Windows Internals Engineer

Reposted 21 Days Ago
Be an Early Applicant
Tokyo
In-Office
Senior level
Security • Software • Cybersecurity
Cybereason provides enterprise endpoint protection built to defend against tomorrow’s threats today.
The Role
The Senior Windows Internals Engineer will design and develop low-level Windows components, including kernel drivers and user-mode services, focusing on stability and performance while collaborating with various teams.
Summary Generated by Built In
About the Role:

We’re looking for a Senior Windows Internals Engineer to join our Endpoint team and help build the core technology behind Cybereason’s Windows agent. In this role, you’ll design and implement low-level Windows components, including kernel drivers and user-mode services, that power advanced threat detection and response capabilities. You’ll work closely with security researchers, sensor developers, and platform engineers to ensure our agent is stable, stealthy, and performant across all supported environments.

This role demands strong C++ expertise, deep knowledge of Windows OS internals, and a passion for building secure, high-impact software.


Key Responsibilities:
  • Design and develop low-level components for the Windows endpoint sensor, focusing on stability, performance, and stealth
  • Build drivers and user-mode services that collect, filter, and analyze endpoint telemetry
  • Implement robust techniques for process/thread monitoring, registry tracking, file system interception, and network event visibility
  • Debug complex kernel-mode and user-mode issues across Windows versions
  • Collaborate with researchers and product teams to translate threat intelligence into product features
  • Conduct code reviews, mentor engineers, and contribute to architecture decisions
  • Stay current with Windows internals, security trends, and system programming practices
Required Qualifications:
  • 5+ years of hands-on experience in C++ development (C++11 or later)
  • In-depth understanding of Windows internals: kernel architecture, system calls, memory management, drivers
  • Proven experience in kernel-mode development (e.g., Windows Drivers, Windows Filtering Platform, minifilters, ETW)
  • Strong debugging and reverse engineering skills (WinDbg, Process Monitor, Process Explorer, IDA/Ghidra)
  • Familiarity with Windows security mechanisms: integrity levels, UAC, AppLocker, and secure boot
  • Experience using Visual Studio, Windows Driver Kit (WDK), and related build/debug environments
Preferred Qualifications:
  • Experience building or contributing to endpoint security products (EDR, AV, EPP, etc.)
  • Familiarity with Windows telemetry, event logs, Sysmon, and ETW tracing
  • Experience with malware analysis, Windows exploit techniques, or SOC/DFIR workflows
  • Scripting capabilities in PowerShell or Python for automation and testing
  • Understanding of kernel-mode security evasion techniques and defenses
  • Background in code signing, driver deployment, and secure update mechanisms
  • Bachelor’s degree in Computer Science, Software Engineering, or equivalent experience
What We Offer:
  • Competitive salary and comprehensive benefits package
  • Flexible working hours with remote work options
  • Opportunities for professional growth and continuous learning
  • A collaborative and innovative team culture

More About Cybereason:


Our culture and how we operate reflects in our shared values. Our #Defenders are individuals with diverse skill sets and backgrounds who are driven to innovate and scale with our growing organization. We are a team that strives to learn from each other, solve challenging problems, and work collaboratively toward our goal of reversing the adversary advantage.

Core Values:

  • Win As One: The power of an individual is less than the power of a team.
  • Ever Evolving: Change keeps us at the forefront, so we encourage it.
  • Daring: To achieve the impossible, we must dare to be different.
  • Obsessed with Customers: We believe gaining our customers’ trust is the most important part of what we do.
  • Never Give Up: We are tenacious and resilient, and we never stop.
  • UbU: We believe people can only unlock their full potential when they work somewhere that accepts who they are.

If these values resonate with you and our vision excites you, join us today and help us end cyber attacks from the endpoint to everywhere! #Defenders

Don’t meet every single requirement? Studies have shown that women and people of color are less likely to apply to jobs unless they meet every single qualification. At Cybereason we are dedicated to building a diverse, inclusive, and authentic workplace (#uBu), so if you’re excited about this role but your past experience doesn’t align perfectly with every qualification in the job description, we encourage you to apply anyways. You may be just the right candidate for this or other roles.

Top Skills

C++
Powershell
Python
Visual Studio
Windbg
Windows Driver Kit
Windows Os Internals
Am I A Good Fit?
beta
Get Personalized Job Insights.
Our AI-powered fit analysis compares your resume with a job listing so you know if your skills & experience align.

The Company
HQ: Boston, MA
1,300 Employees
Year Founded: 2012

What We Do

Cybereason is the champion for today’s cyber defenders providing future-ready protection that unifies security from the endpoint, to the enterprise, to everywhere the battle moves. Our platform combines the industry’s top-rated detection and response, next-gen anti-virus, and proactive threat hunting to deliver context-rich analysis of every element of a malicious operation.

Why Work With Us

We take on each day knowing we are doing something that is worth our time, passion and brain power, and we believe that we can only solve some of the world’s most complex technology challenges by unlocking the full talents of everyone within our organization.

Gallery

Gallery

Similar Jobs

Cybereason Logo Cybereason

Senior Windows Internals Engineer

Security • Software • Cybersecurity
In-Office
Tokyo, JPN
1300 Employees

ServiceNow Logo ServiceNow

Consultant

Artificial Intelligence • Cloud • HR Tech • Information Technology • Productivity • Software • Automation
Remote or Hybrid
Tokyo, JPN
28000 Employees

ServiceNow Logo ServiceNow

Account Manager

Artificial Intelligence • Cloud • HR Tech • Information Technology • Productivity • Software • Automation
Remote or Hybrid
Tokyo, JPN
28000 Employees

Wise Logo Wise

Operations Associate

Fintech • Mobile • Payments • Software • Financial Services
Hybrid
Tokyo, JPN
6500 Employees

Similar Companies Hiring

Standard Template Labs Thumbnail
Software • Information Technology • Artificial Intelligence
New York, NY
10 Employees
PRIMA Thumbnail
Travel • Software • Marketing Tech • Hospitality • eCommerce
US
15 Employees
Scotch Thumbnail
Software • Retail • Payments • Fintech • eCommerce • Artificial Intelligence • Analytics
US
25 Employees

Sign up now Access later

Create Free Account

Please log in or sign up to report this job.

Create Free Account