Назад
Company hidden
обновлено 11 дней назад

Software Security Analyst (m/f/d) (Embedded Security)

Тип работы
fulltime
Грейд
senior
Английский
b2
Страна
Austria
Вакансия из списка Hirify.GlobalВакансия из Hirify Global, списка международных tech-компаний
Для мэтча и отклика нужен Plus

Мэтч & Сопровод

Для мэтча с этой вакансией нужен Plus

Описание вакансии

Текст:
/
TL;DR
Software Security Analyst (Embedded Security): Performing deep vulnerability analysis of embedded software, boot flows, privilege boundaries, and security-critical components with an accent on low-level systems, exploitability assessment, and security certifications. Focus on combining static and dynamic analysis, fuzzing, scripting, and AI-assisted workflows to discover vulnerabilities and develop concrete mitigations.

Location: Gratkorn, Austria

Company

hirify.global develops semiconductor technologies and embedded systems.

What you will do

  • Perform in-depth vulnerability analysis of bare-metal, RTOS, and trusted execution environment software.
  • Analyze boot flows, privilege boundaries, memory isolation, cryptographic libraries, and key-handling mechanisms.
  • Conduct root-cause analysis and assess the exploitability and impact of identified weaknesses.
  • Support PSA, SESIP, Common Criteria, and other security certifications and evaluations.
  • Develop analysis methodologies and tooling using static analysis, fuzzing, scripting, automation, and AI-assisted workflows.
  • Collaborate with development and architecture teams to translate findings into concrete mitigations.

Requirements

  • Degree in Electrical Engineering, Computer Science, Mathematics, or a related field.
  • Strong understanding of low-level system behavior, including memory layout, interrupts, privilege levels, and concurrency.
  • Solid C programming experience and familiarity with ARM and/or RISC-V architectures.
  • Experience with assembly-level debugging and analysis.
  • Strong analytical thinking, independent investigation skills, and clear communication of technical findings.
  • Reliable working practices appropriate for security-related tasks and certification activities.

Nice to have

  • Experience in vulnerability research, reverse engineering, or exploit development.
  • Familiarity with dynamic analysis, symbolic execution, debugging interfaces such as JTAG and GDB, or trace tooling.
  • Experience with AI-assisted code analysis, automated analysis workflows, scripting pipelines, or agent-based approaches.
  • Rust experience or interest in memory-safe system design.

Culture & Benefits

  • Full-time employment with compensation benchmarked against the Austrian electronics and semiconductor industry.
  • Employment Group V under the applicable Austrian collective bargaining agreement.
  • Home office options and flexible working time.
  • Meal benefits and additional employee benefits.

Будьте осторожны: если работодатель просит войти в их систему, используя iCloud/Google, прислать код/пароль, запустить код/ПО, не делайте этого - это мошенники. Обязательно жмите "Пожаловаться" или пишите в поддержку. Подробнее в гайде →