Назад
Company hidden
5 дней назад

Firmware Security Engineer (Embedded/Cybersecurity)

100 000 - 120 000$
Формат работы
onsite
Тип работы
fulltime
Грейд
senior
Английский
b2
Страна
US
Релокация
US
Вакансия из списка Hirify.GlobalВакансия из Hirify Global, списка международных tech-компаний
Для мэтча и отклика нужен Plus

Мэтч & Сопровод

Для мэтча с этой вакансией нужен Plus

Описание вакансии

Текст:
/

TL;DR

Firmware Security Engineer (Embedded/Cybersecurity): Leading vulnerability management and firmware coding for UEFI/BIOS, BMC, and MCU applications in industrial computing products with an accent on risk mitigation and secure scaling. Focus on threat modeling, implementing UEFI security standards, and managing the end-to-end vulnerability lifecycle.

Location: Onsite presence required at either South Burlington, VT or Cary, NC office

Salary: $100,000 – $120,000

Company

hirify.global designs and manufactures specialized industrial computers and hardware solutions for global customers.

What you will do

  • Identify and mitigate firmware vulnerabilities in collaboration with the security team.
  • Lead firmware development tasks for vulnerability mitigation and define precise BIOS specifications.
  • Drive the comprehensive vulnerability lifecycle, including scanning, CVE management, and risk mitigation.
  • Validate the function of firmware and BIOS on hardware prototypes.
  • Collaborate with external partners on BIOS customization and vulnerability management.
  • Contribute to the Firmware Security Development Lifecycle (FSDL) from design and threat analysis to audit.

Requirements

  • Bachelor's degree in Computer Science, Cybersecurity, Software Engineering, or Electrical Engineering.
  • 5+ years of experience in firmware security management, specifically working with BIOS/UEFIs in the industrial PC industry.
  • Expertise in embedded systems security, threat modeling, and risk assessment.
  • Strong command of UEFI security standards (e.g., TPM 2.0, Secure Boot, Intel Boot Guard, Intel TXT).
  • Hands-on experience in embedded firmware debugging using JTAG-based debuggers and logic analyzers.
  • Location: Must be based in or be able to relocate to South Burlington, VT or Cary, NC

Nice to have

  • Familiarity with security standards and certifications such as Common Criteria, MITRE, FIPS, ISO 27001:2022, or IEC 62443.

Culture & Benefits

  • 401k Plan with 3% Employer Contribution.
  • Annual Profit Share Bonus.
  • Opportunity to participate in the Employee Stock Purchase Plan.
  • Paid Maternity & Paternity Leave, and Short & Long Term Disability.
  • Personal development plan created to facilitate professional growth.

Будьте осторожны: если работодатель просит войти в их систему, используя iCloud/Google, прислать код/пароль, запустить код/ПО, не делайте этого - это мошенники. Обязательно жмите "Пожаловаться" или пишите в поддержку. Подробнее в гайде →