yandex
canonical
+500% приглашений

Откликайтесь
на вакансии с ИИ

Ускорим процесс поиска работы
УдалённоПолная занятость

Ubuntu Security Engineer

Оценка ИИ

Исключительная возможность для инженеров по безопасности работать в одной из самых влиятельных open-source компаний мира. Полностью удаленный формат, международная среда и работа над продуктом, которым пользуются миллионы, делают эту вакансию крайне привлекательной.


Вакансия из Quick Offer Global, списка международных компаний
Пожаловаться

Сложность вакансии

ЛегкоСложно
Оценка ИИ

Высокая сложность обусловлена строгими стандартами отбора в Canonical и необходимостью глубоких знаний в области безопасности ядра Linux и системного программирования. Кандидат должен обладать навыками аудита кода и пониманием процессов ответственного разглашения уязвимостей.

Анализ зарплаты

Медиана110 000 $
Рынок70 000 $ – 150 000 $
Оценка ИИ

Canonical адаптирует зарплату под регион проживания кандидата, но обычно предлагает конкурентоспособные ставки для глобального рынка. Указанный диапазон соответствует средним значениям для Senior Security ролей в международном remote-сегменте.

Сопроводительное письмо

I am writing to express my strong interest in the Ubuntu Security Engineer position at Canonical. With a deep-rooted passion for open-source security and extensive experience in vulnerability research and remediation, I have long admired Canonical’s commitment to making high-quality, secure computing accessible to everyone. My background in auditing source code and proficiency in languages like C and Python align perfectly with your team's mission to monitor and triage emerging threats.

In my previous work, I have consistently demonstrated the ability to navigate complex codebases and collaborate with upstream developers to implement robust security patches. I am particularly drawn to Canonical’s distributed culture and the opportunity to work with a global team of experts. I am confident that my technical skills, combined with my self-disciplined approach to remote work, will allow me to make immediate and meaningful contributions to the Ubuntu ecosystem.

+250% к просмотрам

Составьте идеальное письмо к вакансии с ИИ-агентом

Составьте идеальное письмо к вакансии с ИИ-агентом

Откликнитесь в canonical уже сейчас

Присоединяйтесь к команде Canonical и защищайте миллионы пользователей Ubuntu по всему миру!

Описание вакансии

Canonical is a leading provider of open source software and operating systems to the global enterprise and technology markets. Our platform, Ubuntu, is very widely used in breakthrough enterprise initiatives such as public cloud, data science, AI, engineering innovation, and IoT. Our customers include the world's leading public cloud and silicon providers, and industry leaders in many sectors. The company is a pioneer of global distributed collaboration, with 1200+ colleagues in 75+ countries and very few office-based roles. Teams meet two to four times yearly in person, in interesting locations around the world, to align on strategy and execution.

The company is founder-led, profitable, and growing.

Canonical is building a team dedicated to providing security coverage across a wide range of ecosystems and environments, working to make the world a better, safer place. We are hiring an Ubuntu Security Engineer to join an industry-leading security engineering team and help protect the open source community and Ubuntu users from emerging threats. We are looking for candidates across all levels of experience, from Graduate to Senior.

As part of the Ubuntu Security Team, you will work with some of the best and brightest people in technology to monitor, triage, respond to, and document new and existing vulnerabilities in open source software. You will collaborate with internal teams and external partners to identify issues, prioritize them, and coordinate remediation.

This is an engineering-focused role that may also involve activities such as producing security assessments, building features, conducting code reviews, developing internal tools, engaging with the open source community, and participating in industry initiatives and events.

This role requires international travel at least twice a year, usually for one week. It also requires the ability to be productive in a globally distributed team through self-discipline and self-motivation.

Location: Worldwide, this is a globally remote role

The role entails

  • Analyzing, fixing, and testing vulnerabilities in open source packages
  • Keeping track of vulnerabilities in the Ubuntu ecosystem as they are discovered, researched, and fixed, leveraging internal tools
  • Collaborating with other teams in the Ubuntu community and upstream developers, as needed, to exchange or develop vulnerability patches and ensure that Ubuntu includes the most robust security features
  • Auditing source code for vulnerabilities
  • Building features and tools to help teams strengthen the security of their products and contribute to the overall security of Ubuntu

What we are looking for in you

  • You have a thorough understanding of the common categories of security vulnerabilities and techniques for fixing them
  • You are familiar with coordinated disclosure practices
  • You are familiar with open source development tools and methodologies
  • You are skilled in one or more of C, Python, Go, Rust, Java, Ruby, PHP or JavaScript/TypeScript
  • You have excellent logic, problem-solving, troubleshooting, and decision-making skills
  • You can clearly and effectively communicate with the team and Ubuntu community members
  • Experience with Linux (Debian or Ubuntu preferred)
  • Excellent interpersonal skills, curiosity, flexibility, and accountability
  • Appreciative of diversity, polite, and effective in a multi-cultural, multi-national organization
  • Thoughtfulness and self-motivation
  • Result-oriented, with a personal drive to meet commitments

What we offer colleagues

We consider geographical location, experience, and performance in shaping compensation worldwide. We revisit compensation annually (and more often for graduates and associates) to ensure we recognize outstanding performance. In addition to base pay, we offer a performance-driven annual bonus or commission. We provide all team members with additional benefits which reflect our values and ideals. We balance our programs to meet local needs and ensure fairness globally.

  • Distributed work environment with twice-yearly team sprints in person
  • Personal learning and development budget of USD 2,000 per year
  • Annual compensation review
  • Recognition rewards
  • Annual holiday leave
  • Maternity and paternity leave
  • Team Member Assistance Program & Wellness Platform
  • Opportunity to travel to new locations to meet colleagues
  • Priority Pass and travel upgrades for long-haul company events

About Canonical

Canonical is a pioneering tech firm at the forefront of the global move to open source. As the company that publishes Ubuntu, one of the most important open-source projects and the platform for AI, IoT, and the cloud, we are changing the world of software. We recruit on a global basis and set a very high standard for people joining the company. We expect excellence; in order to succeed, we need to be the best at what we do. Most colleagues at Canonical have worked from home since our inception in 2004.​ Working here is a step into the future and will challenge you to think differently, work smarter, learn new skills, and raise your game.

Canonical is an equal opportunity employer

We are proud to foster a workplace free from discrimination. Diversity of experience, perspectives, and background create a better work environment and better products.Whatever your identity, we will give your application fair consideration.

#LI-remote

+400% к собеседованиям

Создайте идеальное резюме с помощью ИИ-агента

Создайте идеальное резюме с помощью ИИ-агента

Навыки

  • TypeScript
  • Cybersecurity
  • C++
  • Python
  • Rust
  • Linux
  • JavaScript
  • Ruby
  • Java
  • Code Review
  • Go
  • Vulnerability Assessment
  • PHP
  • Ubuntu
  • Debian

Возможные вопросы на собеседовании

Проверка понимания фундаментальных проблем безопасности в системном коде.

Расскажите о наиболее сложной уязвимости переполнения буфера или повреждения памяти, которую вы исправляли. Какие методы защиты (ASLR, DEP и т.д.) были задействованы?

Оценка опыта взаимодействия с open-source сообществом.

Опишите ваш опыт взаимодействия с upstream-разработчиками при отправке патчей безопасности. Как вы справляетесь с разногласиями в подходе к исправлению?

Проверка навыков аудита кода.

Каков ваш процесс проведения аудита безопасности для незнакомого программного пакета на языке C или Go? На что вы обращаете внимание в первую очередь?

Оценка понимания специфики Ubuntu/Debian.

Как вы подходите к процессу бэкпортирования исправлений безопасности в старые LTS-релизы Ubuntu, обеспечивая при этом стабильность системы?

Проверка навыков приоритизации.

Если одновременно обнаружены несколько критических уязвимостей в разных компонентах системы, какими критериями вы будете руководствоваться для определения очередности их исправления?

Похожие вакансии

Atom group
4 000 $ – 5 000 $

Senior Information Security (ИБ)

SeniorУдалённоБеларусь
Information Security · DevSecOps · SDLC · Risk Management · Security Policy · DevOps
+6 навыков
SDOdev
380 000 ₽ – 500 000 ₽

Senior Android Security / Reverse Engineer (HTTPS Traffic, Google Services)

SeniorУдалённоРоссия
Android · iOS · TCP/IP · HTTPS · Cryptography · MITM · Frida · Objection · Apktool · Jadx · Hopper · Smali · Hermes · Swift · Dart · Objective-C · C++ · Reverse Engineering · Cybersecurity
+19 навыков
Operation Zero
450 000 ₽ – 900 000 ₽

Исследователь безопасности Android

УдалённоРоссия
Android · Reverse Engineering · Exploit Development · Kernel Research · C++ · ARM Assembly · Java · Ghidra · IDA Pro · Linux Kernel · Kotlin · JavaScript
+12 навыков
NDA
250 000 ₽ – 450 000 ₽

Эксперт по защите периметра (WAF)

УдалённоРоссия
WAF · Wallarm · Positive Technologies Application Firewall · NGFW · IPS · Vulnerability Assessment · Network Security
+7 навыков
Квазар
до 350 000 ₽

DevOps-инженер/ИБ (devops engineer, information security)

УдалённоРоссия
TCP/IP · DNS · DHCP · HTTPS · SMTP · BGP · OSPF · VLAN · NAT · Zero Trust · RBAC · SIEM · Zabbix · ELK · Wazuh · Grafana · Bash · PowerShell · Python · VMware · Proxmox · Hyper-V · KVM · SoC
+24 навыков
Innostaff
Не указана

Сеньор AppSecOps-инженер

SeniorУдалённоБеларусь
AppSecOps · DevSecOps · SAST · DAST · SCA · CI/CD · Cybersecurity · Kubernetes · Docker
+9 навыков
более 1000 офферов получено
4.9

1000+ офферов получено

Устали искать работу? Мы найдём её за вас

Quick Offer улучшит ваше резюме, подберёт лучшие вакансии и откликнется за вас. Результат — в 3 раза больше приглашений на собеседования и никакой рутины!

canonical