Firmware Security Engineer (Embedded/Cybersecurity)
Мэтч & Сопровод
Для мэтча с этой вакансией нужен Plus
Описание вакансии
TL;DR
Firmware Security Engineer (Embedded/Cybersecurity): Leading vulnerability management and firmware coding for UEFI/BIOS, BMC, and MCU applications in industrial computing products with an accent on risk mitigation and secure scaling. Focus on threat modeling, implementing UEFI security standards, and managing the end-to-end vulnerability lifecycle.
Location: Onsite presence required at either South Burlington, VT or Cary, NC office
Salary: $100,000 – $120,000
Company
designs and manufactures specialized industrial computers and hardware solutions for global customers.
What you will do
- Identify and mitigate firmware vulnerabilities in collaboration with the security team.
- Lead firmware development tasks for vulnerability mitigation and define precise BIOS specifications.
- Drive the comprehensive vulnerability lifecycle, including scanning, CVE management, and risk mitigation.
- Validate the function of firmware and BIOS on hardware prototypes.
- Collaborate with external partners on BIOS customization and vulnerability management.
- Contribute to the Firmware Security Development Lifecycle (FSDL) from design and threat analysis to audit.
Requirements
- Bachelor's degree in Computer Science, Cybersecurity, Software Engineering, or Electrical Engineering.
- 5+ years of experience in firmware security management, specifically working with BIOS/UEFIs in the industrial PC industry.
- Expertise in embedded systems security, threat modeling, and risk assessment.
- Strong command of UEFI security standards (e.g., TPM 2.0, Secure Boot, Intel Boot Guard, Intel TXT).
- Hands-on experience in embedded firmware debugging using JTAG-based debuggers and logic analyzers.
- Location: Must be based in or be able to relocate to South Burlington, VT or Cary, NC
Nice to have
- Familiarity with security standards and certifications such as Common Criteria, MITRE, FIPS, ISO 27001:2022, or IEC 62443.
Culture & Benefits
- 401k Plan with 3% Employer Contribution.
- Annual Profit Share Bonus.
- Opportunity to participate in the Employee Stock Purchase Plan.
- Paid Maternity & Paternity Leave, and Short & Long Term Disability.
- Personal development plan created to facilitate professional growth.
Будьте осторожны: если работодатель просит войти в их систему, используя iCloud/Google, прислать код/пароль, запустить код/ПО, не делайте этого - это мошенники. Обязательно жмите "Пожаловаться" или пишите в поддержку. Подробнее в гайде →