Platform Security Engineer (Embedded Linux)
Мэтч & Сопровод
Для мэтча с этой вакансией нужен Plus
Описание вакансии
TL;DR
Platform Security Engineer (Embedded Linux): Owning and maturing the end-to-end software security posture across embedded Linux drone platforms, CI/CD infrastructure, and government cloud environments with an accent on firmware hardening and compliance. Focus on threat modeling, vulnerability management, and implementing secure build pipelines for DoD-regulated systems.
Location: Onsite in Salt Lake City, UT
Company
develops advanced autonomous drone platforms for government and commercial applications.
What you will do
- Design and enforce hardening standards for Ubuntu-based embedded Linux firmware on Qualcomm SoC platforms.
- Secure CI/CD pipelines by implementing artifact integrity, code signing, and automated SAST/SCA scanning.
- Lead the secrets management strategy and govern cryptographic key lifecycles using HashiCorp Vault and AWS Secrets Manager.
- Architect security controls for GovCloud deployments ensuring alignment with FedRAMP, NIST SP 800-171, and CMMC.
- Conduct network security assessments of drone fleet infrastructure, including port auditing and firewall management.
- Define the platform security roadmap and champion a security-first engineering culture across the organization.
Requirements
- Bachelor's or Master's degree in Computer Science, Computer Engineering, or a related field.
- 5+ years of hands-on experience in application or product security engineering.
- Deep expertise with embedded Linux (Yocto, BitBake) and OS hardening (Ubuntu ESM, CVE management).
- Proficiency in securing CI/CD pipelines (Jenkins, GitLab CI) and working with Docker.
- Solid understanding of cryptography (RSA, TLS, PKI) and government cloud security frameworks.
- Must provide proof of U.S. Citizenship or Permanent Residence (ITAR/EAR compliance).
Nice to have
- Active DoD security clearance or eligibility.
- Experience in drone, robotics, or aviation systems security.
- Relevant certifications such as CISSP, OSCP, or CSSLP.
- Experience with Qualcomm SoC platforms and Android Debug Bridge (ADB) workflows.
Culture & Benefits
- Competitive salary paired with a generous annual equity package.
- Potential for performance-based bonuses.
- Opportunity to work on cutting-edge robotics and defense technology.
- Collaborative environment working closely with firmware and DevOps teams.
Будьте осторожны: если работодатель просит войти в их систему, используя iCloud/Google, прислать код/пароль, запустить код/ПО, не делайте этого - это мошенники. Обязательно жмите "Пожаловаться" или пишите в поддержку. Подробнее в гайде →