Implement, validate, and maintain security features in Linux-based embedded software stacks. Work on systems used in critical industries like healthcare, industrial automation, and robotics. Collaborate with a diverse and international team of experienced engineers.
Key Highlights
Technical Skills Required
Benefits & Perks
Job Description
(Note: Relocation to Windhoek, Namibia required. Not a Security Engineer, we have three other Embedded Linux roles posted.)
Overview
As a Product Security Engineer, you’ll be responsible for the implementation, validation, and maintenance of security features in a Linux-based embedded software stack. That means hands-on, low-level work with bootloaders, Linux kernel security features, secure software updates and more.
We aim to make embedded software development easy and approachable, which means that our engineers have to go beyond just feature enablement. Your work will involve making the developer experience of working with low-level security features as smooth as it possibly can be. You’ll work on systems used in critical industries like healthcare, industrial automation, and robotics.
Responsibilities
- Security feature enablement: Bring up security features on new hardware. Every new product we release, we strive to have a uniform, straightforward experience for enabling basic hardware security features like secure boot, ARM TrustZone/OP-TEE, and hardware-backed encryption.
- System-level hardening: We maintain a secure, production-ready embedded Linux OS. Making sure that security features fit into the whole stack, and that configurations are secure-by-default for the most common and supported workflows is a key part of the job. Understanding how everything fits together is a must.
- Vulnerability management: Monitor upstream CVEs, assess their impact on Toradex products and their likely impact on Toradex customers' products. Apply patches and mitigations. Help draft security advisories and write VEX documents. Work on and maintain internal tooling for vulnerability management.
- Security testing and automation: Automate test coverage of security features. Familiarity with LAVA or other hardware-in-the-loop embedded testing methodologies and frameworks is a strong plus.
Qualifications and Experience
- Bachelor’s or Master’s degree in Computer Science, Electrical Engineering, Cybersecurity, or equivalent experience
- 3+ years of experience in embedded systems security or adjacent areas (e.g. Linux security engineering)
- Hands-on experience with bootloaders (e.g., U-Boot), kernel security features, and embedded Linux distributions/build systems (Yocto/OpenEmbedded, buildroot, etc.)
- Solid C/C++ coding and debugging skills
- Experience with automating security checks in CI/CD pipelines
- Knowledge of threat modeling/risk modeling methodologies and how they relate to regulatory and standards compliance is a plus
- Knowledge of security evaluation and analysis tools like fuzzers and static analysis tools is a plus
What we offer
- Agile, globally oriented and intercultural corporate culture.
- Work on the latest hardware technology with early access to major SoC vendor
- Enjoy a flat hierarchy where you may truly shape our hardware and software offerings
- Count on a diverse and international team of experienced hardware and software engineers spread globally
- Variety of knowledge sharing, training and self-development opportunities
- The opportunity to play a key role in shaping your own work processes and your work environment.
- Contemporary employment conditions, modern office space and a flexible working environment.
- Opportunities for your personal development.
Similar Jobs
Explore other opportunities that match your interests