Назад
Company hidden
1 день назад

Principal Security Firmware Architect (Embedded Security)

Формат работы
onsite
Тип работы
fulltime
Грейд
senior
Английский
b2
Страна
Taiwan
Вакансия из списка Hirify.GlobalВакансия из Hirify Global, списка международных tech-компаний
Для мэтча и отклика нужен Plus

Мэтч & Сопровод

Для мэтча с этой вакансией нужен Plus

Описание вакансии

Текст:
/
TL;DR
Principal Security Firmware Architect (Embedded Security): Leading the architecture and development of secure embedded firmware and security microarchitectures for BMC and data center server systems with an accent on cryptography, secure boot, embedded protocols, and industry security standards. Focus on threat modeling, vulnerability mitigation, Root of Trust implementation, and integrating security features across hardware and firmware.

Location: Taipei City, Taiwan; onsite

Company

hirify.global, a Sanmina Company, designs, builds, and delivers technology infrastructure and server solutions for global customers.

What you will do

  • Lead the architecture and design of secure embedded firmware and security microarchitectures.
  • Develop cryptographic security solutions and integrate protection features into embedded systems.
  • Conduct security assessments and threat modeling to identify and mitigate firmware vulnerabilities.
  • Drive secure coding practices, static and dynamic code analysis, and adoption of security tools.
  • Collaborate with hardware, engineering, industry partners, and stakeholders on board-level security and BMC protocols.
  • Lead security initiatives for data center systems, including Secure Boot, SPDM, Root of Trust, TCG DICE, and NIST 800-193 implementations.

Requirements

  • Bachelor’s degree in Electrical Engineering, Computer Science, Computer Engineering, or a related technical discipline.
  • 12+ years of BMC development experience, or 10+ years with a master’s degree.
  • Extensive embedded firmware development experience across bare-metal, RTOS, embedded Linux, and U-Boot environments.
  • Strong knowledge of cryptographic algorithms and protocols, including PKI, SHA, ECC, HMAC, and AES.
  • Experience with embedded protocols such as I2C, I3C, SPI, USB, and PCIe, plus BMC, Redfish, PLDM, Yocto, and OpenBMC.
  • Ability to interpret board schematics and data sheets, assess vulnerabilities, and work effectively with cross-functional teams.

Nice to have

  • Experience with OCP S.A.F.E. audits.
  • Knowledge of Black Duck or equivalent code composition tools.
  • Knowledge of FPGA security features.

Culture & Benefits

  • Collaborative, fast-paced environment focused on building technology infrastructure.
  • Competitive base salary and performance-based annual bonus eligibility.
  • 401(k) retirement savings plan and tuition reimbursement for eligible programs.
  • Medical, dental, and vision coverage, mental health resources, life insurance, and disability insurance.
  • Paid time off, company holidays, parental leave, and family care support.
  • Structured training, on-the-job learning, matching gifts, and volunteer programs.

Будьте осторожны: если работодатель просит войти в их систему, используя iCloud/Google, прислать код/пароль, запустить код/ПО, не делайте этого - это мошенники. Обязательно жмите "Пожаловаться" или пишите в поддержку. Подробнее в гайде →