Principal Embedded Security Vulnerability Analyst (m/f/d)

NXP Semiconductors

Gratkorn

Vor Ort

EUR 130.000 - 170.000

Vollzeit

Vor 10 Tagen
Bewerbungsgenerator

Eine zielgenaue Bewerbung für diese Stelle — ein maßgeschneiderter Lebenslauf und ein Anschreiben, die genau zur Stellenanzeige passen.

Schaffe es an den ATS-Filtern vorbei

Benefits dieser Stelle

Home office
Flexible working time
Meal benefits

Zusammenfassung

NXP Semiconductors in Gratkorn, Austria, is seeking a Principal Embedded Security Vulnerability Analyst to lead deep technical analysis of embedded systems at the hardware/software boundary. You will drive vulnerability discovery in low-level firmware, boot code, and system components and shape security architectures for next-generation products.

You will guide AI-assisted vulnerability discovery, develop advanced analysis methods, and mentor engineers.

Qualifikationen

  • Degree in Electrical Engineering, Computer Science, Mathematics, or related field or equivalent practical experience.
  • Deep understanding of memory layout, interrupts, privilege levels, and concurrency.
  • Extensive experience in C programming; strong familiarity with ARM and/or RISC-V architectures.
  • Strong experience with assembly-level debugging and low-level system analysis.
  • Experience evaluating AI-assisted vulnerability discovery tools and workflows.
  • Rust experience or strong interest in memory-safe system design.

Aufgaben

  • Lead in-depth vulnerability analysis of embedded software (bare-metal, RTOS, trusted execution environments).
  • Drive analysis of boot flows, privilege boundaries, and security-critical components (crypto libraries, key handling, isolation).
  • Own root cause analysis and assess exploitability and systemic impact of weaknesses.
  • Define and guide security evaluation strategies for certifications (PSA, SESIP, Common Criteria).
  • Lead analysis of PSIRT incidents and drive architectural improvements.
  • Architect and develop advanced analysis methodologies and tooling (static analysis, fuzzing, automation).
  • Define and scale the use of AI-assisted techniques for code analysis and vulnerability discovery (LLM-based, agentic workflows).
  • Design workflows combining traditional analysis with AI-assisted approaches.
  • Evaluate and incorporate emerging attack techniques into methodologies.
  • Influence product teams by translating findings into systemic mitigations.
  • Mentor engineers in vulnerability analysis and research methodologies.

Kenntnisse

C programming
ARM/RISC-V architectures
Assembly debugging
AI-assisted vulnerability analysis
Vulnerability research background
Memory safety concepts

Ausbildung

Degree in Electrical Engineering, Computer Science, Mathematics, or related field

Tools

JTAG/GDB debugging
Static/Dynamic analysis tools
Fuzzing tooling
Scripting & distributed systems

Jobbeschreibung

We are seeking a Principal Embedded Security Vulnerability Analyst to lead deep technical analysis of embedded systems, focusing on identifying and understanding vulnerabilities at the hardware/software boundary. You will drive the discovery and analysis of complex vulnerabilities in low-level firmware, boot code, and system components, and influence the security architecture of next-generation products. This role requires expert-level systems thinking, a deep understanding of attack techniques, and the ability to reason about complex execution environments. You will also define and advance modern vulnerability analysis approaches, including the integration of AI-assisted and agentic workflows, to significantly improve the depth, scalability, and effectiveness of security assessments. If you are already exploring how LLMs and agentic workflows can augment deep code and system analysis, this role provides an opportunity to apply, scale, and shape these approaches across an organization. We welcome both: experienced security researchers highly experienced embedded engineers with a demonstrated transition into security.

Your Responsibilities
  • Lead in-depth vulnerability analysis of embedded software (bare-metal, RTOS, trusted execution environments)
  • Drive analysis of boot flows, privilege boundaries, and security-critical components (e.g., crypto libraries, key handling, isolation mechanisms)
  • Own root cause analysis and assess exploitability and systemic impact of identified weaknesses
  • Define and guide security evaluation strategies for certifications (e.g., PSA, SESIP, Common Criteria)
  • Lead analysis of PSIRT incidents and drive structural and architectural improvements
  • Architect and develop advanced analysis methodologies and tooling (static analysis, fuzzing, automation frameworks)
  • Define and scale the use of AI-assisted techniques for code analysis and vulnerability discovery (e.g., LLM-based and agentic workflows)
  • Design and institutionalize workflows that combine traditional analysis (static/dynamic) with AI-assisted approaches
  • Evaluate and introduce emerging attack techniques and incorporate them into internal methodologies
  • Influence product teams and architecture decisions by translating findings into systemic mitigations
  • Mentor and guide other engineers in vulnerability analysis and research methodologies
Education & Qualifications
  • Degree in Electrical Engineering, Computer Science, Mathematics, or related field, or equivalent practical experience
  • Deep understanding of low-level system behavior (memory layout, interrupts, privilege levels, concurrency)
  • Extensive experience in C programming; strong familiarity with ARM and/or RISC-V architectures
  • Strong experience with assembly-level debugging and low-level system analysis
  • Strong differentiators: Proven track record in vulnerability research, reverse engineering, or exploit development
  • Deep experience with static and dynamic analysis tools, fuzzing, or symbolic execution
  • Strong understanding of vulnerability classes (memory corruption, logic flaws, side channels) and exploitation techniques
  • Experience with debugging interfaces (e.g., JTAG, trace, GDB) in complex systems
  • Experience evaluating and operationalizing AI-assisted vulnerability discovery tools and workflows
  • Experience building scalable and automated analysis pipelines (e.g., scripting, distributed systems, agent-based approaches)
  • Rust experience or strong interest in memory-safe system design
Your Profile
  • Expert-level analytical thinking and strong intuition for how systems fail under adversarial conditions
  • Ability to lead complex, ambiguous technical investigations end-to-end
  • Strong interest in combining deep technical expertise with modern AI-assisted methodologies
  • Ability to influence technical direction across teams and organizational levels
  • Clear and authoritative communication of technical risks and findings
  • Mentorship mindset and willingness to develop others
Why Join Us

Lead vulnerability analysis for security-critical components of modern embedded systems and silicon

Directly influence the security architecture of next-generation products

Shape and scale advanced vulnerability research methodologies, including AI-assisted analysis

Work in an environment that values deep technical expertise and offensive security thinking

Collaborate with experts across hardware, firmware, and applied security research

Please note: The successful candidate may/will be responsible for security related tasks. The assignment may/will be in scope of security certifications, therefore a conscious and reliable way of working is necessary.

For applications in Gratkorn: NXP provides market competitive compensation according to the benchmarking of the electronic and semiconductor industry. Due to the Austrian Equal Treatment Act we are obligated to state the employment group of our applicable collective bargaining agreement (CBA) "Kollektivvertrag für Angestellte Gewerbe und Handwerk und in der Dienstleistung", this position (fulltime) is graded in Employment Group V after 6 years. Your individual experiences and expectations will be considered in the application process. Moreover, we provide attractive benefits to our employees like home office, flexible working time, meal benefits and more.

More information about NXP in Austria... #LI-a8a1 NXP Semiconductors N.V. (NASDAQ: NXPI) enables a smarter, safer, and more sustainable world through innovation. As the world leader in secure connectivity solutions for embedded applications, NXP is pushing boundaries in the automotive, industrial & IoT, mobile, and communication infrastructure markets. For more information, visit www.nxp.com

Bright Minds. Bright Futures. We believe that a key component to growing our business is to develop our people. To enable you to grow your career at NXP, we offer online and offline learning opportunities to help you develop some of your core and professional skills.

Commitment At NXP. We recognize NXP is a powerful change agent as we continue to deliver innovative solutions that advance a more sustainable future. We remain steadfast in our commitment to sustainability and making measurable year-on-year progress. Also, we aim to create an inclusive work environment and we will not tolerate racism, discrimination or harassment of any kind. We have programs in place focused on diversity, inclusion and equality.

Hol dir deinen kostenlosen, vertraulichen Lebenslauf-Check.

oder ziehe deine Datei hierhin.

Similar jobs

Ähnliche Jobs, die dir auch gefallen könnten

Senior Embedded Security Vulnerability Analyst (m/f/d)
Senior Embedded Security Vulnerability Analyst (m/f/d)

NXP Semiconductors • Gratkorn

Hybrid
EUR 90.000 - 130.000
Home office
Flexible working time
Meal benefits
Software Security Analyst (m/f/d)
Software Security Analyst (m/f/d)

NXP Semiconductors • Gratkorn

Vor Ort
EUR 90.000 - 120.000
home office
flexible working time
meal benefits
Software Security Analyst (m/f/d)
Software Security Analyst (m/f/d)

NXP Semiconductors N.V. • Österreich

Vor Ort
EUR 50.000 - 70.000
Flexible working time
Meal benefits
Home office options
Software Security Architect - CRA (m/f/d)
Software Security Architect - CRA (m/f/d)

NXP Semiconductors N.V. • Österreich

Vor Ort
EUR 90.000 - 130.000
Home office benefits
Flexible working time
Meal benefits
Embedded AI Security Research Engineer (AI MSc / PhD / Postdoc) (m/f/d)
Embedded AI Security Research Engineer (AI MSc / PhD / Postdoc) (m/f/d)

NXP Semiconductors • Gratkorn

Vor Ort
EUR 90.000 - 120.000
Home office
Flexible working time
Meal benefits
Senior Product Security Architect – Secure Embedded Systems (m/f/d)
Senior Product Security Architect – Secure Embedded Systems (m/f/d)

JobsinAustria • Gratkorn

Vor Ort
EUR 80.000 - 110.000
Home office
Flexible working time
Meal benefits
Junior Software / Firmware Application Support Engineer (m/f/d)
Junior Software / Firmware Application Support Engineer (m/f/d)

NXP Semiconductors • Österreich

Hybrid
EUR 60.000 - 90.000
home office
flexible working time
meal benefits
Senior System Security Architect (m/f/d)
Senior System Security Architect (m/f/d)

NXP Semiconductors N.V. • Österreich

Hybrid
EUR 90.000 - 130.000
Home office option
Flexible working time
Meal benefits
Senior Embedded Security Vulnerability Research Lead
Senior Embedded Security Vulnerability Research Lead

NXP Semiconductors • Gratkorn

Vor Ort
EUR 130.000 - 170.000
Home office
Flexible working time
Meal benefits
Principal System Architect – Mobile Wallet (m/f/d)
Principal System Architect – Mobile Wallet (m/f/d)

NXP Semiconductors • Österreich

Vor Ort
EUR 110.000 - 170.000
Home office
Flexible working time
Meal benefits