Next job

Embedded Security Engineer in Pro recruitment

Posted more than 30 days ago

4 views

Pro recruitment

Pro recruitment

0
0 reviews
Without experience
Kyiv
Full-time work
Company: a product company with two directions - cloud services and embedded solutions.  Conduct regular security enhancements, provide recommendations to developers, and provide evidence of the highest level of security for our solutions.  protocols Conducting security audits of firmware and hardware platforms. Implementation and improvement of Secure Boot, memory encryption, key protection. Analyzing and countering reverse engineering attempts and physical attacks. Implementation of secure app

Company: a product company with two directions - cloud services and embedded solutions. 

Conduct regular security enhancements, provide recommendations to developers, and provide evidence of the highest level of security for our solutions. 

protocols 

  • Conducting security audits of firmware and hardware platforms. 

  • Implementation and improvement of Secure Boot, memory encryption, key protection. 

  • Analyzing and countering reverse engineering attempts and physical attacks. 

  • Implementation of secure approaches to OTA updates. 

  • Working with developers to improve the overall security of the product. 

  • Preparation of documentation, procedures, safety protocols. 

    > STM32 or similar. 

  • Practical experience in firmware protection: encryption, signature, obfuscation, anti-tampering. 

  • Secure Boot, TEE, hardware root of trust.

  • Firmware analysis: Ghidra, IDA Pro, Radare2. 

  • Protection against physical attacks: JTAG/SWD-lock, glitching, side-channel. 

  • C/C++ or Rust development experience for low-level systems.

  • Knowledge of SPI, I2C, UART, CAN, BLE protocols and their protection.

  • Architectural: 

    • Threat Modeling. 

    • Ability to formulate product security policies. 

    Tools: 

    JTAGulator, ChipWhisperer, OpenOCD, Wireshark.

    Soft skills: 

    • Analytical thinking.

    • Ability to communicate business and team risks. 

    • Documentation of results and recommendations.

    Expected results (first 3 months)

    1st month 

    • Conduct an audit of the company's existing embedded software and create a list of components that require an in-depth audit. Create a security audit protocol for embedded solutions.

    • Conduct a full security audit of one product. 

    • Analyze the results together with the technical manager. Month 2 

    • Conduct a second product audit. 

    • Agree the conclusions with the technical manager. 

    • Prepare methodological recommendations for developers. 

      > will be updated. 

    • Set up automatic security tests (static analysis, integrity checks). 

    • Create an annual plan of security measures. 

    We offer:

    trainings, technical exchange and participation in strategic projects.

    Security and stability: reservation of conscripted employees from the first month.

    Official employment and social security:

    holiday. font-style: normal; text-decoration: none">Legal support: consultations and support on military accounting issues.

    Adaptation: high-quality onboarding with mentoring support and step-by-step involvement in project activities.

    Comfortable conditions: corporate catering, recreation areas, a friendly atmosphere and equipped shelter on the office territory.

    Convenient location: 10 minutes' walk from the subway.


    Join a team that creates technologies that make Ukraine safer. Real impact. Real solutions. Real future.

    Signal: AntonJo.09

    Without experience
    Kyiv
    Full-time work
    Want to get related jobs?
    New job openings in your Telegram
    Subscribe
    We use cookies
    accept