Software Engineer, HSM Infrastructure Security, Consumer Devices
Core
Design and implement security-critical software and firmware for hardware security modules (HSMs), secure elements, and trusted execution environments to protect cryptographic keys and enforce security policies.
Role type
Senior IC security software engineer (embedded firmware/HSM)
Builds
HSM trusted applications, firmware services, device drivers, PKCS#11 components, and cryptographic service integrations for consumer devices.
Domain
Consumer electronics, hardware security, applied cryptography
Deliverable
production ML models | product features | dashboards & analysis | research | client delivery | infrastructure | physical/clinical work
Required skills
C, C++, Rust, secure embedded firmware development, HSM firmware, cryptographic mechanisms, device drivers, PKCS#11, secure key provisioning, threat modeling, fuzzing, fault injection
Preferred skills
ARM TrustZone, commercial HSM platforms (Thales, Entrust, AWS CloudHSM), secure boot, remote attestation, hardware/software co-design, multi-party authorization
Technologies
C, C++, Rust, PKCS#11, OpenSSL, ARM TrustZone, HSMs, secure elements, TEEs
Responsibilities
Design and implement security-critical software and firmware for HSMs and secure elements; Build and harden the policy-to-HSM boundary for certificate issuance and signing; Develop HSM trusted applications, firmware components, and device drivers; Implement cryptographic interfaces like PKCS#11 and OpenSSL providers; Build firmware enforcing key lifecycle policies; Develop end-to-end cryptographic protocols; Design controls for verifiable trusted software changes; Write, review, and audit secure embedded software; Develop test harnesses, emulators, and fuzzers; Threat-model trust boundaries; Partner with hardware and security teams to integrate secure capabilities.
Seniority
Senior, hands-on IC
