HamburgerMenu
hirist

Job Description

Description :

Embedded Security Engineer

Location : Mumbai (On-site/Hybrid)

Reporting to : Head of Product Security / Engineering Lead

Role Summary :

We are seeking a highly specialized Embedded Security Engineer to architect and enforce the security posture of our next-generation industrial devices, solar modules, and manufacturing equipment. In this critical role, you will be responsible for the entire security lifecycle of embedded systemsfrom hardware root-of-trust implementation to secure device-to-cloud communication. You will bridge the gap between firmware development and cybersecurity, ensuring that our products are resilient against advanced threats and compliant with international industrial standards. The ideal candidate is a hands-on expert in Embedded C/C++ and RTOS, capable of implementing complex cryptographic protocols and performing deep-dive firmware vulnerability analyses to protect our hardware ecosystem.

Responsibilities :

- Security Architecture Design : Design and implement robust security controls for embedded systems and firmware tailored for industrial and solar applications.

- Firmware Integrity Governance : Implement and manage Secure Boot sequences, firmware signing processes, and cryptographic image verification to prevent unauthorized code execution.

- Hardware Security Integration : Deploy hardware-level root-of-trust mechanisms using TPM (Trusted Platform Modules), Secure Elements (SE), and Hardware Security Modules (HSM).

- Cryptography Orchestration : Design and implement embedded encryption schemes and lifecycle-based Key Management (generation, storage, and rotation) within MCU/SoC architectures.

- Vulnerability & Code Analysis : Perform rigorous secure code reviews and firmware vulnerability assessments to identify and mitigate buffer overflows, injection flaws, and logic errors.

- Communication Security : Engineer secure protocols for Device-to-Device (D2D) and Device-to-Cloud (D2C) communication, ensuring data confidentiality and integrity via TLS/DTLS or custom encrypted tunnels.

- Cross-Functional Collaboration : Partner closely with R&D, Hardware Design, and Manufacturing teams to integrate security features without compromising device performance or production timelines.

- Regulatory & Compliance Support : Ensure product alignment with global cybersecurity standards (such as IEC 62443 or NIST) and support third-party security certifications.

- Linux & RTOS Hardening : Apply security hardening techniques to Embedded Linux distributions and Real-Time Operating Systems (RTOS) to minimize attack surfaces.

- Incident Response Support : Assist in analyzing field-reported security incidents and developing "over-the-air" (OTA) security patches.

Technical Requirements :

- Embedded Programming : Expert proficiency in Embedded C/C++ and familiarity with assembly language for low-level security optimizations.

- OS Expertise : Deep hands-on experience with RTOS (e.g., FreeRTOS, Zephyr) and Embedded Linux kernel security.

- SoC Security Architectures : Comprehensive understanding of MCU/SoC security features such as ARM TrustZone, MPU/MMU configurations, and JTAG locking.

- Cryptographic Implementation : Practical experience implementing AES, RSA, ECC, and SHA algorithms within resource-constrained environments.

- Tooling & Testing : Proficiency with static and dynamic analysis tools (SAST/DAST) and hardware debugging tools like JTAG/SWD and logic analyzers.

Education : Bachelors or Masters degree in Electronics, Embedded Systems, Computer Engineering, or Cybersecurity.

Preferred Skills & Certifications :

- Professional Certifications : CSSLP (Certified Secure Software Lifecycle Professional) or specialized Embedded Security certifications are highly valued.

- Security Testing : Experience with penetration testing for hardware (CEH exposure) or side-channel attack mitigation.

- Industrial Protocols : Knowledge of Modbus, CAN bus, or Zigbee security frameworks used in manufacturing and solar environments.

- Manufacturing IQ : Understanding of how security controls impact high-volume manufacturing lines and device provisioning processes.

- Analytical Rigor : Exceptional ability to deconstruct complex hardware-firmware interactions to identify non-obvious security bypasses.


info-icon

Did you find something suspicious?

Similar jobs that you might be interested in