Principal Platform Security Architect -Firmware & Operating Systems
Core
Design and improve security mechanisms across platform firmware and embedded Linux environments, securing boot chains, firmware updates, and management subsystems.
Role type
Principal Platform Security Architect (Firmware & OS)
Builds
Secure firmware, embedded Linux management environments, and data center platform components.
Domain
Embedded systems, firmware security, and data center infrastructure.
Deliverable
production ML models | product features | dashboards & analysis | research | client delivery | infrastructure | physical/clinical work
Required skills
Embedded Linux (Yocto/OpenEmbedded), Linux hardening, firmware security controls, low-level firmware/UEFI/BIOS, secure boot chains, firmware update mechanisms, Arm architecture, PCIe security, automation/scripting, C/C++, Linux security fundamentals, file system/data protection.
Preferred skills
BMC platforms (OpenBMC), Linux security features (SELinux/AppArmor), firmware analysis/fuzzing, container security, hardware roots of trust (TPM/DICE), network security.
Technologies
Yocto, OpenEmbedded, UEFI, ARM, PCIe, SELinux, AppArmor, TPM, DICE, eCryptfs, CI/CD pipelines.
Responsibilities
Evaluate and integrate security mechanisms in BIOS/BMC/firmware; improve security of Linux-based management environments; identify attack surfaces and apply hardening measures; develop validation tools and integrate security checks into CI; support threat modeling for firmware and management components.
Seniority
Principal, hands-on IC with strategy & mentorship