Remote

Senior Staff Network Software Engineer

About Kaseya

Kaseya is the leading provider of AI-powered IT management and cybersecurity software, serving Managed Service Providers (MSPs) and internal IT organizations worldwide. Our comprehensive platform helps organizations efficiently manage, secure, and automate their IT environments, driving operational efficiency and long-term business success.

Backed by Insight Partners, a leading global software investor, Kaseya has experienced sustained double-digit growth and continues to expand its global footprint. Today, Kaseya supports customers in more than 20 countries and manages over 15 million endpoints worldwide.

Founded in 2000, Kaseya was built by builders - and we're still building. We look for people who create rather than wait, who see a hard problem and lean in, and who treat challenges as raw material. At Kaseya, everyone plays a role in shaping the future of IT: whether you're in engineering, product, sales, marketing, customer support, or operations, your work helps protect, defend, and optimize IT environments across the globe.

We're building teams that grow, perform, and make an impact. If you're driven by the itch to make things better - a product, a process, a career - you'll fit right in.

At Kaseya, we don't just raise the bar. We build it.

 

Position Summary

We are seeking a Sr. Staff Network Software Engineer to architect and develop scalable and multi-tenant cloud-native networking solutions and security architectures. This role blends cloud networking expertise with software development. 

The ideal candidate has deep experience in cloud-native Next-Generation Firewalls (NGFWs), Zero Trust Security, and Secure Access Service Edge (SASE) stack, along with hands-on cloud software development, data plane engineering, and cloud automation. The role will focus on building high-performance, multi-tenant cloud networking solutions for multiple deployment scenarios, integrating public and private clouds, cloud-managed networking devices, and SASE components. 

This is a hands‑on role: you’ll define the design, write and review code, and guide teams through delivering production systems. 

Key Responsibilities

  • Architect and develop multi-tenant cloud-native networking and security solutions in public, private cloud, and hybrid environments. 
  • Optimize traffic steering, policy orchestration, and security enforcement. 
  • Develop high-speed telemetry and analytics solutions for network visibility and threat detection. 
  • Develop software solutions to optimize cloud egress and gateway hosting costs, reducing expenses while maintaining network security and performance. 
  • Develop cloud networking applications using Go & PHP for traffic management, security policy orchestration, network observability, and service chaining. 

 

Required Qualifications  

  • 10+ years of experience in software engineering, with at least 7+ years focused primarily on backend systems.
  • 3+ years of experience in a Staff, Principal, or Architect role with end-to-end ownership of architecture and delivery.
  • 5+ years of hands-on programming experience in Golang, PHP.
  • 3+ years of hands-on experience with cloud-native NGFWs and network security appliances.
  • 5+ years of experience in Linux networking, including firewall configuration using netfilter, iptables, and nftables, as well as DNS filtering, traffic shaping, and QoS.
  • 3+ years of experience with network security technologies including DNS filtering, Deep Packet Inspection (DPI), Intrusion Detection and Prevention Systems (IDPS), Anti-Virus, and SSL Proxy.
  • 2+ years of experience working with SASE components such as DLP, SWG, ZTNA, CASB, sandboxing, anti-malware, and anti-virus.
  • 2+ years of hands-on experience with Linux userspace fast-path frameworks such as VPP and DPDK

Preferred Qualifications

  • Hands-on experience with fast path Linux Kernel fast path technologies like eBPF, XDP, and AF_XDP. 
  • Proven experience with data-path Multitenancy like VXLAN, Linux Namespaces and VRFs. 
  • Solid background in containerization and Kubernetes orchestration, including CNI selection, configuration, and troubleshooting. 
  • Familiarity with cloud-native Networking frameworks, like Cilium and Calico. 
  • Working experience with ELK stack, database stores like Redis and Cassandra, and message queues like Kafka. 
  • Knowledge of continuous integration workflows, testing tools, and source code management tools (e.g., Git). 
  • Strong experience with VPN technologies like IPSec and WireGuard. 

#IND525

 

Additional information
Kaseya provides equal employment opportunity to all employees and applicants without regard to race, religion, age, ancestry, gender, sex, sexual orientation, national origin, citizenship status, physical or mental disability, veteran status, marital status, or any other characteristic protected by applicable law.

Apply for this job

If you believe you belong to any of the categories of protected veterans listed below, please indicate by making the appropriate selection. As a government contractor subject to the Vietnam Era Veterans' Readjustment Assistance Act (VEVRAA), we request this information in order to measure the effectiveness of the outreach and positive recruitment efforts we undertake pursuant to VEVRAA. Classification of protected categories is as follows:

A "disabled veteran" is one of the following: a veteran of the U.S. military, ground, naval or air service who is entitled to compensation (or who but for the receipt of military retired pay would be entitled to compensation) under laws administered by the Secretary of Veterans Affairs; or a person who was discharged or released from active duty because of a service-connected disability.

A "recently separated veteran" means any veteran during the three-year period beginning on the date of such veteran's discharge or release from active duty in the U.S. military, ground, naval, or air service.

An "active duty wartime or campaign badge veteran" means a veteran who served on active duty in the U.S. military, ground, naval or air service during a war, or in a campaign or expedition for which a campaign badge has been authorized under the laws administered by the Department of Defense.

An "Armed forces service medal veteran" means a veteran who, while serving on active duty in the U.S. military, ground, naval or air service, participated in a United States military operation for which an Armed Forces service medal was awarded pursuant to Executive Order 12985.

Voluntary Self-Identification


For government reporting purposes, we ask candidates to respond to the below self-identification survey. Completion of the form is entirely voluntary. Whatever your decision, it will not be considered in the hiring process or thereafter. Any information that you do provide will be recorded and maintained in a confidential file.

As set forth in Kaseya’s Equal Employment Opportunity policy, we do not discriminate on the basis of any protected group status under any applicable law.