Назад
Company hidden
4 часа назад

Adversarial Security Test Engineer (Embedded Firmware)

159 800 - 271 700$
Формат работы
onsite
Тип работы
fulltime
Грейд
senior
Английский
b2
Страна
US
Вакансия из списка Hirify.GlobalВакансия из Hirify Global, списка международных tech-компаний
Для мэтча и отклика нужен Plus

Мэтч & Сопровод

Для мэтча с этой вакансией нужен Plus

Описание вакансии

Текст:
/
TL;DR
Adversarial Security Test Engineer (Embedded Firmware): Conducting attacker-informed security testing of firmware-driven products, embedded systems, and storage platforms with an accent on exploitability analysis, offensive testing, fuzzing, reverse engineering, and adversarial assessment. Focus on developing proof-of-concept exploits, validating attack paths, building security automation, and applying AI-assisted techniques to firmware and binary analysis.

Location: Milpitas, California, United States; onsite at the Milpitas office

Salary: $159,800–$271,700 per year

Company

hirify.global develops Flash memory, storage, and advanced memory technology products for global digital infrastructure and supply chains.

What you will do

  • Conduct adversarial security testing of firmware, embedded systems, storage products, host tooling, and product ecosystems.
  • Evaluate attack surfaces including secure boot, firmware updates, authentication, debug interfaces, cryptographic implementations, provisioning, manufacturing, and RMA pathways.
  • Assess exploitability, develop proof-of-concept exploits, validate attack paths, and perform root-cause analysis.
  • Research emerging attacks against firmware, embedded systems, storage controllers, hardware/firmware interfaces, and supply chains.
  • Build repeatable security testing methodologies, scripts, frameworks, and automation using reverse engineering, fuzzing, exploit development, and dynamic instrumentation.
  • Collaborate with firmware, platform security, product engineering, validation, product assurance, PSIRT, and external security partners to communicate findings and remediation guidance.

Requirements

  • Bachelor’s or Master’s degree in Computer Science, Electrical Engineering, Cybersecurity, or a related technical field.
  • 5+ years of experience in offensive security, embedded systems security, firmware security, product security testing, or a related discipline.
  • Strong experience with penetration testing, fuzzing, reverse engineering, exploitability analysis, low-level debugging, and vulnerability research.
  • Strong understanding of secure boot, firmware architectures, embedded systems security, cryptography fundamentals, attack surface analysis, and hardware/firmware trust boundaries.
  • Programming or scripting experience in Python, C, C++, or related languages.
  • Ability to work onsite at the Milpitas office in California.

Nice to have

  • Experience with SSDs, storage controllers, Flash technologies, embedded systems, or silicon products.
  • Experience with Ghidra, IDA Pro, Frida, AFL, libFuzzer, or similar tools.
  • Experience using AI/LLM technologies, agentic workflows, or AI-assisted code and binary analysis for offensive security research.
  • Experience with hardware or firmware security testing and strong technical communication skills.

Culture & Benefits

  • Inclusive environment focused on diversity, belonging, respect, and contribution.
  • Paid vacation and sick leave.
  • Medical, dental, vision, life, accident, and disability insurance.
  • Flexible spending and health savings accounts, employee assistance, legal, pet, and supplemental insurance programs.
  • Tuition reimbursement, transit benefits, employee stock purchase plan, 401(k), and potential short-term and long-term incentive participation.

Будьте осторожны: если работодатель просит войти в их систему, используя iCloud/Google, прислать код/пароль, запустить код/ПО, не делайте этого - это мошенники. Обязательно жмите "Пожаловаться" или пишите в поддержку. Подробнее в гайде →