Назад
Company hidden
16 часов назад

BootROM & Security Lead - RISC-V MPU

Тип работы
fulltime
Грейд
lead
Английский
b2
Страна
India
Вакансия из списка Hirify.GlobalВакансия из Hirify Global, списка международных tech-компаний
Для мэтча и отклика нужен Plus

Мэтч & Сопровод

Для мэтча с этой вакансией нужен Plus

Описание вакансии

Текст:
/
TL;DR
BootROM & Security Lead - RISC-V MPU (RISC-V secure boot): Building a production-quality secure boot and Root of Trust stack for a 64-bit RISC-V MPU SoC platform with an accent on low-level firmware, Linux integration, and platform security. Focus on validating and debugging boot, cryptography, isolation, and lifecycle flows across FPGA, first silicon, and production SDK releases.

Location: Karnataka, Bengaluru, India

Company

hirify.global is a full-service semiconductor foundry providing design, development, and fabrication services for technology companies worldwide.

What you will do

  • Design, implement, maintain, and harden secure boot and Root of Trust software for a 64-bit RISC-V MPU platform.
  • Enable the boot and firmware stack, including BootROM, FSBL, U-Boot, OpenSBI, early platform initialization, and firmware handoff.
  • Integrate platform security at the OS level through Linux kernel and BSP changes, Device Tree updates, firmware interfaces, memory reservations, and secure/non-secure boundaries.
  • Develop and debug security components for cryptography, key services, secure storage, provisioning, anti-rollback, and attestation.
  • Validate the platform across pre-silicon, FPGA, and first-silicon environments, root-causing issues across hardware, firmware, and the kernel.
  • Deliver security integration, validation, documentation, and release-readiness materials for SDK releases.

Requirements

  • B.E./B.Tech or M.E./M.Tech in Computer Engineering, Electrical/Electronics Engineering, or a related field.
  • Typically 5+ years of experience in low-level firmware, boot software, secure boot, and Root of Trust development on SoCs.
  • Expert-level C programming and ability to read low-level firmware and kernel-adjacent code.
  • Strong knowledge of Linux internals, including boot flow, memory management, MMU basics, privilege, isolation, and system-level debugging.
  • Hands-on experience with U-Boot, Linux kernel, Device Tree, Yocto/OpenEmbedded, GDB, and OpenOCD/JTAG, Lauterbach, or similar tools.
  • Experience with SoC bring-up and validation on FPGA, emulation, or early-silicon platforms.

Nice to have

  • RISC-V RV64 security experience or exposure to application-class CPU security architectures such as ARM TrustZone/EL3.
  • Experience with OpenSBI, secure monitor layers, early-boot isolation, PMP, sPMP, or IOPMP.
  • Knowledge of lifecycle and provisioning flows, secure storage, anti-rollback, attestation, and firmware/OS security boundaries.
  • Exposure to CI/CD and automated validation for boot and security quality.

Culture & Benefits

  • Build a secure boot and Root of Trust stack from the ground up for real products.
  • Own the security platform end to end, from pre-silicon and FPGA through first silicon and production SDK releases.
  • Work closely with architecture and SoC teams, using validation data to guide security decisions.
  • Participate in deep technical work with a strong peer group and long-term platform development.

Будьте осторожны: если работодатель просит войти в их систему, используя iCloud/Google, прислать код/пароль, запустить код/ПО, не делайте этого - это мошенники. Обязательно жмите "Пожаловаться" или пишите в поддержку. Подробнее в гайде →