Senior Product Security Engineer

ARM LIMITED

Saffron Walden

On-site

GBP 65,000 - 90,000

Full time

3 days ago
Be an early applicant
Application generator

Don’t send a generic resume — generate a resume and cover letter tailored to this exact role.

Get past ATS filters

Job summary

Arm is seeking a Product Security Engineer in the UK to secure SoC and embedded firmware architectures from the ground up. You will review firmware and SoC design for security risks, perform threat modeling, and conduct hands-on testing, collaborating across teams to embed security in the product lifecycle.

You will evaluate secure boot, rollback protection, memory isolation, and trusted execution environments, and conduct thorough C/C++ security reviews to identify flaws.

Qualifications

  • Proven experience securing hardware-firmware interfaces or embedded systems.
  • Strong hands-on expertise in C/C++ security code reviews.
  • Background in secure boot, key provisioning, firmware hardening, and trusted computing.

Responsibilities

  • Review firmware and SoC architecture for security risks and threat models.
  • Evaluate critical security features like secure boot, rollback protection, memory isolation, and TEE.
  • Perform C/C++ security code reviews to spot implementation-level flaws.
  • Conduct targeted hands-on tests to validate security concerns when needed.
  • Collaborate with cross-functional teams to embed security into the development lifecycle.
  • Help shape secure firmware architectures for key handling, update flows, and hardware-backed protections.
  • Communicate risks and solutions clearly to both technical and non-technical audiences.
  • Excellent collaboration, communication, and documentation skills.

Skills

Embedded security
C/C++ security
Secure boot
TrustZone
Threat modeling
Code reviews
Firmware hardening
Hardware interfaces
Side-channel security

Job description

Job Description:Are you passionate about building secure systems from the ground up? We're looking for an experienced and motivated Product Security Engineer to help shape the security posture of our SoC and embedded firmware solutions! In this role, you'll evaluate system security architectures, dive into firmware code for review, contribute to ROM assessments, and perform hands-on threat modeling and lightweight testing.This is a fantastic opportunity for someone who loves solving complex security challenges, enjoys collaborating with brilliant minds across domains, and wants to make a meaningful impact in real-world products. If you care about getting the details right and empowering others to do the same, we'd love to hear from you!

Responsibilities:
  • Review firmware and SoC architecture for security risks and threat models.
  • Evaluate critical security features like secure boot, rollback protection, memory isolation, and TEE.
  • Perform C/C++ security code reviews to spot implementation-level
    flaws.
  • Conduct targeted hands-on tests to validate security concerns when needed.
  • Collaborate with cross-functional teams to embed security into the development lifecycle.
  • Help shape secure firmware architectures for key handling, update flows, and hardware-backed protections.
  • Communicate risks and solutions clearly to both technical and non-technical audiences.
  • Excellent collaboration, communication, and
    documentation skills.
Required Skills and Experience:
  • Proven experience securing hardware-firmware interfaces or embedded systems.
  • Strong hands-on expertise in C/C++ security code reviews.
  • Background in secure boot, key provisioning, firmware hardening, and trusted computing.
  • Solid understanding of firmware attack surfaces: fault injection, code injection, privilege escalation.
  • Familiarity with isolation technologies such as Arm TrustZone, secure monitor, or memory protection.
  • Ability to run and interpret quick tests to verify security assumptions.
  • Experience with advanced attack surfaces like side-channel or fault attacks.
  • Excellent collaboration, communication, and
    documentation skills.
Nice To Have:
  • Familiarity with hardware design flows (e.g., RTL, UVM/SystemVerilog).
  • Exposure to TPMs, Secure Elements, or hardware-backed crypto modules.
  • Background in academic research or industry work in embedded security, firmware, or cryptographic implementation.
  • Discovering or analysing security vulnerabilities in products, ideally with public CVEs or equivalent internal findings.
  • Hands-on experience evaluating or testing products against certification schemes such as SESIP, PSA Certified, or Common Criteria.
Accommodations at Arm:

At Arm, we want to build extraordinary teams. If you need an adjustment or an accommodation during the recruitment process, please email #####. To note, by sending us the requested information, you consent to its use by Arm to arrange for appropriate accommodations. All accommodation or adjustment requests will be treated with confidentiality, and information concerning these requests will only be disclosed as necessary to provide the

Get your free, confidential resume review.

or drag and drop your file here.

Similar jobs

Similar jobs worth comparing

Senior Product Security Engineer
Senior Product Security Engineer

Arm Limited • Cambridge

On-site
GBP 60,000 - 80,000
Senior Product Security Engineer
Senior Product Security Engineer

Camwebdir • United Kingdom

On-site
GBP 90,000 - 130,000
Staff Hardware Security Engineer
Staff Hardware Security Engineer

Camwebdir • United Kingdom

On-site
GBP 90,000 - 130,000
Hybrid working
Recruitment accommodations
Staff Hardware Security Engineer
Staff Hardware Security Engineer

Arm Limited • Cambridge

On-site
GBP 90,000 - 120,000
Senior Firmware Security Engineer
Senior Firmware Security Engineer

Camwebdir • United Kingdom

Hybrid
GBP 90,000 - 130,000
Senior SoC & Firmware Security Engineer
Senior SoC & Firmware Security Engineer

ARM LIMITED • Saffron Walden

On-site
GBP 65,000 - 90,000
Principal Platform Security Architect -Firmware & Operating Systems
Principal Platform Security Architect -Firmware & Operating Systems

Arm • Cambridge

On-site
GBP 126,200 - 170,800
Relocation package (visa sponsorship)
Principal Platform Security Architect -Firmware & Operating Systems
Principal Platform Security Architect -Firmware & Operating Systems

Camwebdir • United Kingdom

On-site
GBP 110,000 - 160,000
Relocation package
Visa sponsorship
Senior Principal SoC Security Architect
Senior Principal SoC Security Architect

Camwebdir • United Kingdom

On-site
GBP 100,000 - 150,000
Relocation package
Senior Product Security Engineer
Senior Product Security Engineer

Arm Limited • Cambridge

On-site
GBP 90,000 - 130,000