Job Title: Embedded Systems Security Engineer/Embedded Security Engineer
Location: Foster City, CA
Work Model: Onsite, 5 days/week
Job Summary:
Seeking an Embedded Systems Security Engineer with 6+ years of Embedded Linux/BSP experience and strong expertise in device security.
The role focuses on Secure Boot, Hardware Root of Trust, ARM TrustZone, Linux kernel hardening, TEE/OP-TEE, SELinux, dm-verity/dm-crypt, secure OTA updates, and production device provisioning.
Key Responsibilities:
- Design and implement Secure Boot and Hardware Root of Trust.
- Harden Embedded Linux kernels and filesystems using dm-verity/dm-crypt.
- Develop and integrate TEE/OP-TEE and Trusted Applications.
- Implement application sandboxing using SELinux, seccomp, namespaces, and cgroups.
- Build CI/CD pipelines for secure cryptographic signing.
- Support secure manufacturing, key injection, eFuse/OTP programming, and EOL testing.
- Implement A/B OTA updates, recovery, and anti-rollback mechanisms.
Required Skills:
• Embedded Linux • BSP / Board Bring-Up • C • Python / Bash • Yocto / BitBake • U-Boot • ARM TrustZone • Secure Boot • dm-verity • dm-crypt • SELinux • OP-TEE / TEE • Cryptography / PKI • HSM • CI/CD • Secure OTA • eFuse / OTP
Regards,
Stephen
Lead Talent Acquisition Specialist
Email : [email protected]