The Hardware/Firmware Product Security Engineer will be a member of the Product Security Assurance team specializing in security considerations for hardware and firmware components in flash storage devices (SSDs). This individual will provide crystal-clear technical direction and risk mitigation guidance for diverse engineering and business leaders at all levels. This person will also lead the evolution of secure development practices for hardware and firmware components. During the product development process, this individual will advise the development team on security requirements and evaluate the architecture with a security lens. The HW/FW Product Security Engineer will lead security risk assessments, guide threat modeling activities, and participate in validation of security requirements at the component or system level. Our ideal teammate has experience architecting and developing hardware/firmware that meets the highest cybersecurity standards, is highly motivated and passionate about technology. This ideal candidate is eager to stay up to date with the latest industry trends and technologies and enjoys participating in industry consortiums. If this applies to you – join our collaborative team to develop together the next big thing in data!
Essential duties and responsibilities:
Design and implement security architectures and features for hardware and storage devices
Be a key technical contributor to the continuous improvement of the Secure Development Lifecycle
Develop reference threat models for hardware components and devices overall
Assist development teams in adapting the reference threat model to the product/component specific threat model
Perform security assessments, code audits and design reviews of embedded platforms throughout the secure development lifecycle
Raise awareness and understanding of security considerations with engineers and leaders at all levels of the organization
Collaborate with development teams on security during design/development/testing
Partner with teams to develop robust security validation plans and verify implementations of security controls
Research and develop technical solutions to mitigate security risks
Participate in industry consortiums/standards bodies and conduct research to identify new attack vectors and industry trends