About PointFive
PointFive is the AI Efficiency OS. From the cloud to the coding agent, we're the only platform that manages AI spend everywhere it happens.
Engineering and FinOps teams use PointFive to make their organizations more efficient and their cloud and AI more effective. We don't just show what you spend. We show what you're wasting, and we fix it autonomously. NuBank saw ROI in 10 days. Customers average 1,200%+ ROI and a 4.9 rating on G2.
Founded by the team behind IntSights (acquired by Rapid7), PointFive recently closed a $60M Series B led by Accel, with participation from Entrée Capital and Salesforce Ventures.
About the Role
TokenShift is PointFive's newest product, an endpoint runtime for AI coding agents that gives organizations control, visibility, and efficiency across how agents execute commands and consume models.
As AI agents move from chat interfaces into developer machines, they increasingly need access to shells, filesystems, credentials, developer tools, and local compute. At the same time, enterprises are beginning to run models locally, on laptops, workstations, developer VMs, and managed endpoint fleets, across a wide variety of operating systems and hardware architectures.
This role exists to push that frontier forward.
You'll research how AI coding agents execute and isolate workloads, design secure sandboxing mechanisms, and build the infrastructure required to deploy and operate local models across heterogeneous endpoint environments. You'll work across macOS, Windows, Linux, WSL, developer containers, and other runtime environments, figuring out how to provide agents with powerful capabilities without giving them unrestricted access to the machine.
It's a rare opportunity to work at the intersection of operating systems, endpoint security, AI infrastructure, local inference, and developer tooling, in a product already running inside enterprise engineering environments.
What You'll Do
Research AI coding agent runtimes, reverse-engineer how tools such as Claude Code, Cursor, Copilot CLI, Codex, and emerging agents execute commands, access files, spawn processes, and interact with the operating system.
Design agent sandboxing architectures that safely constrain filesystem access, networking, process execution, credentials, and other sensitive endpoint capabilities.
Explore and implement OS-native isolation mechanisms across macOS, Windows, and Linux, including containers, namespaces, sandbox profiles, virtualization, restricted processes, and permission models.
Build endpoint "harnesses" that allow TokenShift to intercept, control, observe, and modify agent execution flows.
Design infrastructure for deploying and running local LLMs across heterogeneous endpoint fleets, accounting for operating system, CPU architecture, GPU availability, memory constraints, and hardware acceleration.
Evaluate local inference runtimes and model formats such as llama.cpp, MLX, ONNX Runtime, Ollama, vLLM-compatible runtimes, and emerging alternatives.
Develop mechanisms for model discovery, installation, versioning, updates, health monitoring, and lifecycle management across large numbers of developer machines.
Research hardware-aware model selection and routing, deciding which models can run effectively on Apple Silicon, NVIDIA GPUs, Windows workstations, Linux machines, CPU-only environments, and other endpoint configurations.
Build benchmarks that measure model latency, throughput, memory consumption, startup time, resource contention, and developer experience on real endpoint hardware.
Investigate security boundaries between local models, cloud-hosted models, agents, MCP servers, shells, and enterprise resources.
Collaborate with the core CLI and platform teams to take endpoint research from prototype through production.
Track the rapidly evolving AI agent, sandboxing, and local inference ecosystems and proactively identify technologies PointFive should support.
What We're Looking For
Must-have
Deep understanding of operating system fundamentals: processes, permissions, filesystems, IPC, networking, signals, and process trees.
Strong understanding of sandboxing and workload isolation concepts.
Hands-on systems experience across multiple operating systems, ideally including Linux, macOS, and Windows.
Experience building or debugging software that runs directly on developer endpoints, workstations, or servers.
Comfort operating close to the metal, binary behavior, system calls, OS APIs, environment variables, config files, process injection/interception, and runtime behavior.
Investigative, reverse-engineering mindset, you enjoy taking apart systems you didn't build and figuring out how they actually work.
Ability to move comfortably between research prototypes and production-quality systems code.
Nice to have
Experience running or deploying local LLMs using frameworks such as llama.cpp, MLX, Ollama, ONNX Runtime, or similar inference runtimes.
Understanding of model quantization, KV-cache behavior, GPU memory constraints, model loading, and inference performance.
Experience with NVIDIA CUDA, Apple Metal, DirectML, ROCm, or other hardware acceleration stacks.
Experience with Linux namespaces, seccomp, cgroups, AppArmor, SELinux, eBPF, or container runtimes.
Familiarity with macOS sandboxing, Endpoint Security Framework, launchd, XPC, virtualization, or Apple Silicon.
Familiarity with Windows security primitives, Job Objects, AppContainers, Windows Sandbox, Hyper-V, WSL, ETW, or Windows process APIs.
Hands-on familiarity with AI coding agents such as Cursor, Claude Code, Copilot CLI, and Codex.
Experience with endpoint management or fleet deployment technologies such as MDM, Intune, Jamf, SCCM, or enterprise software distribution systems.
Experience with containers, microVMs, or lightweight virtualization technologies.
TypeScript experience.
Our Tech Stack
Go, TypeScript, Cloudflare, Snowflake, local inference runtimes, and OS-native endpoint technologies across macOS, Windows, and Linux.
Why PointFive
Founders with a track record
Built and sold IntSights to Rapid7. Backed by top-tier investors with deep conviction in this category.
Category-defining product
We're building the control plane for how AI agents operate across enterprise engineering environments, from model access to endpoint execution.
Hard systems problems
AI agents are becoming increasingly powerful, but giving them access to developer machines introduces an entirely new class of security, isolation, performance, and infrastructure challenges. You'll work directly on those problems.
Local AI is becoming infrastructure
As capable models increasingly run on laptops and workstations, enterprises will need a way to deploy, manage, secure, and govern them across thousands of heterogeneous machines. You'll help define how that infrastructure works.
Early-stage leverage
Your research will directly shape the architecture of the product and determine which capabilities PointFive can deliver next.
Frontier of AI developer tooling
Agents, local models, and endpoint runtimes are evolving extremely quickly. You'll be researching and integrating technologies before they become standard parts of the enterprise developer stack.
Equal Opportunity Statement
PointFive is proud to be an equal opportunity employer. We celebrate diversity and are committed to creating an inclusive environment for all employees. We welcome candidates from all backgrounds, experiences, and perspectives to apply.