Embedded Security Engineer

Mundi

Berlin

Hybrid

EUR 70.000 - 100.000

Vollzeit

Vor 7 Tagen
Sei unter den ersten Bewerbenden
Bewerbungsgenerator

Hebe dich für diese Rolle von der Masse ab — erstelle in etwa einer Minute einen maßgeschneiderten Lebenslauf und ein Anschreiben.

Schaffe es an den ATS-Filtern vorbei

Benefits dieser Stelle

Competitive salary
Growth opportunities
Remote work options

Zusammenfassung

Eagle Wireless is seeking an Embedded Security Engineer to join our R&D Automotive team. You will focus on vulnerability-management lifecycle for firmware, assess CVEs and advisories, and drive fixes from Linux userspace to baseband code.

The role requires strong embedded Linux and security analysis background, with backporting patches into Yocto and near-end-to-end verification on hardware. Remote-friendly with growth opportunities.

Qualifikationen

  • Degree in Computer Science, Electrical Engineering, or a related field.
  • 3+ years embedded Linux development with strong C (and working C++) skills.
  • Hands-on Yocto/OpenEmbedded experience: BitBake recipes, layers, .bbappend/patch workflow, devtool.
  • Linux kernel patching experience: backporting fixes from mainline/LTS to a vendor kernel.
  • Solid security fundamentals: vulnerability classes, CVSS scoring, threat modeling of embedded attack surfaces.
  • Good troubleshooting instincts: diagnose on-target with serial console, gdb, and logs.
  • Proficient with git/gerrit on large multi-repo codebases, cross-compilation, debugging on embedded targets.
  • Excellent written communication skills for customers/auditors.

Aufgaben

  • Analyze CVEs and OSS for firmware releases; determine real risk with evidence.
  • Maintain SBOM per product/release covering open-source and proprietary components.
  • Backport upstream fixes into Yocto build; integrate security patches.
  • Verify fixes end-to-end: rebuild images, run tests, re-test exploits.
  • Produce risk assessments and dispositions per product line and release.
  • Support customer security questionnaires, audits, and regulatory needs.
  • Improve automation: CVE scanning in CI, SBOM generation, alerting on advisories.

Kenntnisse

Embedded Linux
C
Yocto/OpenEmbedded
Kernel patching
Security fundamentals
Troubleshooting
Git/Gerrit
Written communication

Ausbildung

Bachelor's degree in CS / EE or related

Tools

Git/Gerrit
QXDM
QCAT

Jobbeschreibung

Location: Serbia and Germany

Embedded Security Engineer

Eagle Wireless is a connectivity company delivering secure, reliable, and scalable cellular modules and solutions for automotive and IoT applications. With a strong presence in the United States and global R&D teams across North America, Europe, and APAC, Eagle Wireless supports customers worldwide with long-life, compliant, and cyber-secure connectivity products. Focused on trust, supply chain resilience, and regulatory compliance, Eagle Wireless helps OEMs, Tier 1 suppliers, and IoT innovators deploy connected technologies with confidence in an increasingly complex global environment.

Job Summary:

We are seeking a skilled Security Engineer to join our R&D Automotive team, focused on the vulnerability-management lifecycle for our cellular module firmware. The ideal candidate has a strong background in embedded Linux and security analysis, and is comfortable taking a raw CVE or vendor bulletin and determining, with evidence, whether it’s a real risk for our product, then driving the fix across the full stack, from Linux userspace down to baseband code.

Key Requirements
  • Perform scanning and analyze of CVE/OSS for firmware releases
  • Maintain an accurate SBOM (software bill of materials) per product/release, covering open-source and proprietary vendor components.
  • Analyze whether a CVE is actually reachable and exploitable in our configuration
  • Write risk assessments and dispositions (affected / not affected / mitigated / fix planned) per product line and release for customers.
  • Prioritize fixes based on severity, exploitability, and exposure; elevate critical remotely-exploitable issues immediately.
  • Backport upstream fixes into our Yocto build
  • Integrate Qualcomm security patches, TrustZone/QTEE, and bootloader trees; adapt patches that conflict with local modifications.
  • Verify fixes end-to-end: rebuild affected images, run regression tests, and re-test proof-of-concept exploits where available.
  • Maintain patch and disposition history per firmware release; feed fixes into release planning and release notes.
  • Support customer security questionnaires, audits, and regulatory/certification needs (UNECE R155/CSMS, ISO/SAE 21434, carrier and RED/CRA requirements).
  • Improve pipeline automation: CVE scanning in CI, SBOM generation, and alerting on new advisories affecting shipped versions.
Required Qualifications
  • Degree in Computer Science, Electrical Engineering, or a related field.
  • 3+ years embedded Linux development, with strong C (and working C++) skills.
  • Hands-on Yocto/OpenEmbedded experience: BitBake recipes, layers, .bbappend/patch workflow, devtool.
  • Linux kernel patching experience: backporting fixes from mainline/LTS to a vendor kernel.
  • Solid security fundamentals: vulnerability classes, CVSS scoring, threat modeling of embedded attack surfaces.
  • Good troubleshooting instincts: comfortable with incomplete information, diagnosing on-target with serial console, gdb, and logs.
  • Proficient with git/gerrit on large multi-repo codebases, cross-compilation, and debugging on embedded targets.
  • Excellent written communication skills: able to produce clear, precise technical risk assessments for customers and auditors.
Preferred Qualifications
  • Qualcomm platform experience: modem/baseband codebase structure (AMSS, Hexagon DSP), TrustZone/QTEE, secure boot chain, EFS/NV configuration.
  • Cellular protocol knowledge (LTE/5G NAS/RRC, IMS/VoLTE, SIM/UICC).
  • Experience with Qualcomm tooling (QXDM/QCAT log analysis, QFIL).
  • SELinux policy, secure coding review, fuzzing, or penetration-testing experience.
  • Familiarity with automotive/regulatory security frameworks: UNECE R155, Cyber Resilience Act, carrier security requirements.
What We Offer
  • Competitive salary and performance-based bonuses.
  • Opportunities for professional growth and development.
  • Flexible working hours and remote work options.
We Want to Work With You!

"" indicates required fields

Hol dir deinen kostenlosen, vertraulichen Lebenslauf-Check.

oder ziehe deine Datei hierhin.

Similar jobs

Ähnliche Jobs, die dir auch gefallen könnten

Embedded Security Engineer
Embedded Security Engineer

Eagle Wireless, Inc. • Deutschland

Vor Ort
EUR 70.000 - 100.000
Flexible working hours
Remote work options
Baseband Hardware Engineer
Baseband Hardware Engineer

Eagle Wireless, Inc. • Kronach

Hybrid
EUR 70.000 - 100.000
Baseband Hardware Engineer
Baseband Hardware Engineer

Eagle Wireless • Kronach

Vor Ort
EUR 90.000 - 120.000
Hardware RF Engineer
Hardware RF Engineer

Eagle Wireless • Kronach

Vor Ort
EUR 70.000 - 110.000
Baseband Hardware Engineer
Baseband Hardware Engineer

Mundi • Kronach

Vor Ort
EUR 70.000 - 110.000
Cybersecruity Engineer - Embedded, Robotics (human)
Cybersecruity Engineer - Embedded, Robotics (human)

NEURA Robotics • Deutschland

Vor Ort
USD 120.000 - 150.000
Embedded Software Engineer
Embedded Software Engineer

Steneg • Deutschland

Vor Ort
USD 90.000 - 120.000
Hardware RF Engineer
Hardware RF Engineer

Eagle Wireless, Inc. • Kronach

Hybrid
EUR 90.000 - 120.000
Embedded Security Engineer – Stuttgart, Germany
Embedded Security Engineer – Stuttgart, Germany

Optimus Search • Baden-Württemberg

Vor Ort
EUR 54.000 - 90.000
Cyber-Security Software Engineer for Automated Mobile Machinery (f/m/div.)
Cyber-Security Software Engineer for Automated Mobile Machinery (f/m/div.)

Bosch • Schwieberdingen

Vor Ort
EUR 70.000 - 110.000
Flexible working models