Senior Systems Engineer II - Edge Platform & Packaging @Dispel
Engineering
Salary usd 150,000 - 1..
Remote Location
πŸ‡ΊπŸ‡Έ USA Only
Employment Type full-time
Posted 1mth ago

[Hiring] Senior Systems Engineer II - Edge Platform & Packaging @Dispel

1mth ago - Dispel is hiring a remote Senior Systems Engineer II - Edge Platform & Packaging. πŸ’Έ Salary: usd 150,000 - 159,000 per year πŸ“Location: USA

Role Description

As a Senior Systems Engineer II, you own how Dispel's on-premises software gets built, packaged, shipped, updated, and observed. This covers our Site Control appliance and the Wicket fleet:

  • OS baseline
  • Container and package layers
  • Release artifacts
  • Signing and provenance chain
  • Update mechanism
  • Local telemetry and edge-processing capability

This is a systems role, not a build-tooling role. You will make consequential calls about:

  • The runtime substrate on the edge
  • How state and configuration are reconciled
  • How an appliance recovers from a failed update
  • How much processing belongs at the edge versus in the cloud

You scope that work into well-defined milestones, estimate it, and follow through β€” and you write it so other engineers can reason about it and extend it with confidence.

Engineering at Dispel is a collaborative effort and those that show up trying to get things done and help others will receive support from the team. Dispel has high aspirations and we are growing quickly.

Qualifications

  • 5+ years of professional engineering experience with a demonstrated track record of shipping software that runs on infrastructure you do not operate.
  • You have owned a release and update mechanism for deployed systems β€” edge, appliance, embedded, or on-premises enterprise β€” and dealt with the consequences when one went wrong in the field.
  • Deep Linux systems fluency: systemd, the boot and init path, filesystem and partition layout, kernel and package lifecycle, and how a distribution actually gets assembled.
  • Strong packaging and distribution experience β€” Debian/apt packaging, OCI images, image-based or A/B update schemes, or equivalent β€” including artifact signing and repository operation.
  • Proficiency in at least one systems-capable language (Go, Rust, Python, or C) and comfort reading code across the layers you package.
  • Comfortable using coding agents (e.g., GitHub Copilot, Claude Code) as part of your daily workflow.
  • Proficiency with Infrastructure as code, with primary focus using Ansible and Terraform.
  • Container runtime and orchestration experience, with real opinions about what is appropriate on a single constrained node versus in a datacenter.
  • Infrastructure-as-code and CI/CD experience (Terraform, GitHub Actions, or similar), including building pipelines that produce release artifacts rather than just deploying them.
  • Solid network fundamentals β€” routing, DNS, firewalls, VPN concepts β€” enough to package and operate networking software without breaking its data path.
  • Demonstrated ability to work with cross-team stakeholders to define requirements and deliver results with minimal oversight.
  • A willingness to accept failure and feedback, learn and try again.
  • A passion for learning new disciplines and gaining a deep understanding of how others on the team do their work.
  • An ability to communicate clearly and succinctly both in-person and over team chat.

Requirements

  • Own the build and packaging pipeline for on-premises deliverables β€” OS images, packages, container images, and the release bundles field and customer teams actually install.
  • Make on-premises builds reproducible and verifiable: pinned inputs, deterministic outputs, signed artifacts, and an SBOM per release that survives a customer security review.
  • Design a versioning and compatibility model that tells anyone, at a glance, which appliance versions interoperate with which cloud-side and orchestration components.
  • Collapse bespoke, per-project packaging into a small number of supported paths, and make the supported paths good enough that nobody wants to fork them.
  • Turn appliance provisioning from a documented procedure into an automated, idempotent one.
  • Own the update mechanism end to end: delivery, staging, application, verification, and rollback β€” for appliances on constrained links, in maintenance windows, or fully air-gapped.
  • Design for failure as the normal case. An interrupted or bad update must leave the appliance in a known-good state and recoverable without a site visit.
  • Build fleet-level release control: staged rollouts, cohorts and canaries, version and drift visibility across the fleet, and a mechanism to hold or reverse a rollout in progress.
  • Shrink the interval between a CVE being published and the fleet being patched, and make that interval measurable rather than anecdotal.
  • Keep the update path working across the OS baseline and its kernel lifecycle, not just the application layer on top of it.
  • Extend the appliance runtime so workloads can execute locally β€” telemetry collection and pre-processing, buffering and store-and-forward, local decisioning β€” and reconcile cleanly when connectivity returns.
  • Define what belongs at the edge versus in the cloud, and hold that line with evidence about bandwidth, latency, and customer data-residency constraints rather than preference.
  • Own resource discipline on the appliance: hardware is fixed, workloads grow, and the network functions on that box must never be starved by anything you add beside them.
  • Design the local observability story so that a support engineer can reconstruct what an appliance was doing without shell access to it.
  • Own the integrity of the on-premises supply chain: signing keys, trust roots, artifact provenance, and the assumption that any of it may be audited by a customer or regulator.
  • Build the test substrate this work requires β€” appliance-in-a-loop testing, upgrade and downgrade paths exercised in CI, hardware and near-hardware validation before a release reaches a customer.
  • Ensure on-premises systems meet performance, scalability, and security requirements, particularly where packaging and runtime choices touch the network data path.
  • Participate in incident response and root cause analysis, especially for field failures where the evidence is thin and the appliance is remote.

Benefits

  • $150,000-159,000 salary range
  • 401(k) w/ company match
  • Unlimited paid time off
  • Parental leave
  • Full medical, dental, vision insurance
  • Performance bonus and equity eligible
  • Remote work (15-20% travel for on-prem purposes)
Before You Apply
️
πŸ‡ΊπŸ‡Έ Be aware of the location restriction for this remote position: USA Only
β€Ό Beware of scams! When applying for jobs, you should NEVER have to pay anything. Learn more.
Senior Systems Engineer II - Edge Platform & Packaging @Dispel
Engineering
Salary usd 150,000 - 1..
Remote Location
πŸ‡ΊπŸ‡Έ USA Only
Employment Type full-time
Posted 1mth ago
Apply for this position
Did not apply βœ“
Applied βœ“
Sent Follow-Up βœ“
Interview Scheduled βœ“
Interview Completed βœ“
Offer Accepted βœ“
Offer Declined βœ“
Application Denied βœ“
Unlock 130,000+ Remote Jobs
️
πŸ‡ΊπŸ‡Έ Be aware of the location restriction for this remote position: USA Only
β€Ό Beware of scams! When applying for jobs, you should NEVER have to pay anything. Learn more.
Apply for this position
Did not apply βœ“
Applied βœ“
Sent Follow-Up βœ“
Interview Scheduled βœ“
Interview Completed βœ“
Offer Accepted βœ“
Offer Declined βœ“
Application Denied βœ“
Unlock 130,000+ Remote Jobs
Γ—

Apply to the best remote jobs
before everyone else

Access 130,000+ vetted remote jobs and get daily alerts.

4.9 β˜…β˜…β˜…β˜…β˜… from 500+ reviews

⚑ 130,891+ remote jobs, refreshed hourly

πŸ”” Real-time alerts: Apply first

πŸ›‘οΈ Vetted companies, no scams, true remote only

Unlock All Jobs Now

Maybe later