Senior Platform Security Engineer – Device Trust, Attestation and Secure Browser
Core
Designing and operating enterprise device attestation and secure browser platforms to establish trust in endpoints, workloads, and browsing sessions across cloud and on-premises environments.
Role type
Senior IC Platform Security Engineer (Device Trust & Secure Browser)
Builds
Device attestation services, secure browser platform (Prisma Access Browser), and SRE agents for security operations automation.
Domain
Enterprise Security, Platform Security, Zero Trust Architecture, AI Infrastructure
Deliverable
production ML models | product features | infrastructure
Required skills
Platform/infrastructure security engineering, distributed service architecture, software development, Zero Trust architecture, device trust/posture models, hardware trust primitives (TPM, Secure Enclave, measured boot), SRE automation, incident response, observability.
Preferred skills
Building attestation services at enterprise scale, TPM/measured boot internals, remote attestation protocols, enterprise browser/secure web access stack, AI agents/ML-assisted automation, device trust transformations.
Technologies
TPM 2.0, Secure Enclave, measured boot, Prisma Access Browser, SASE, ZTNA, DPoP, mTLS, WebAuthn
Responsibilities
Design and implement device attestation services; lead engineering and rollout of secure browser platform; build SRE agents for security platforms; define reference architectures binding device trust to session trust; integrate trust signals into identity and access workflows; scale platform-security capabilities and establish SLOs/observability.
Seniority
Senior, hands-on IC
