Enable job alerts via email!

System Security Architect

Arm Limited

Cambridge

On-site

GBP 60,000 - 100,000

Full time

30+ days ago

Generate a tailored resume in minutes

Land an interview and earn more. Learn more

Start fresh or import an existing resume

Job summary

An established industry player is seeking a seasoned System Security Architect to enhance their Product Security team. This pivotal role focuses on analyzing and hardening security architectures, ensuring robust protection from silicon to firmware layers. Collaboration with multi-functional teams will be key as you evaluate critical security features, including Root of Trust and secure boot flows. If you are passionate about system software and hardware security, this is a unique opportunity to make a significant impact in a dynamic and inclusive environment that values innovation and creativity.

Benefits

Attractive relocation package
Diverse workplace
Dynamic and inclusive environment
Opportunities for growth and success

Qualifications

  • Proven track record in securing system architectures involving hardware and firmware.
  • Deep experience in secure boot, key provisioning, and firmware mitigations.

Responsibilities

  • Lead architecture-level security assessments and risk analyses across SoC and firmware.
  • Guide engineering teams in security methodologies during design and verification phases.

Skills

System Security Architecture
Firmware Security
Threat Modeling
Secure Boot
Key Provisioning
Hardware Isolation
Attack Modeling
Technical Leadership

Job description

Job Description:

We are seeking a seasoned System Security Architect with a strong background in hardware and low-level firmware security to join our Product Security team. In this design review-focused role, you’ll use your deep expertise—not to build from scratch, but to analyze, evaluate, and harden security architectures spanning from silicon to firmware layers.

You'll collaborate with multi-functional teams to evaluate critical features like Root of Trust, secure boot flows, key management, and trusted firmware execution, ensuring every layer of the stack meets or exceeds industry security standards. If you thrive at the intersection of architecture, system software, and silicon—and love diving into the details of firmware and hardware security mechanisms—this is the role for you.

Responsibilities:

System Security Assessment (Hardware + Firmware):

  • Lead architecture-level security assessments and risk analyses across SoC and low-level firmware components.
  • Conduct in-depth threat modeling of boot flows, firmware, memory protection mechanisms, and secure execution environments.
  • Detailed attack-modelling and review security features across firmware interfaces.

Firmware Security Review:

  • Evaluate firmware-level implementation of security critical features.
  • Collaborate with firmware and SoC teams to ensure secure firmware architecture, including the handling of secrets, keys, and hardware-backed security features.

Technical Leadership & Collaboration:

  • Guide engineering teams in applying standard methodologies in security during architecture, design, and verification phases.
  • Communicate security design decisions clearly to technical and non-technical stakeholders.
Required Skills and Experience :
  • A track record securing system architectures at the intersection of hardware and firmware.
  • Deep experience in areas such as secure boot, key provisioning, firmware mitigations, and hardware-enforced isolation.
  • Understanding of threat models including firmware exploitation, privilege-escalation, code injection, and side-channel attacks.
  • Solid grasp of Arm TrustZone, secure world monitor designs, memory and IO protection mechanisms, and SoC-level isolation techniques.
  • Experience identifying low-level security flaws and recommending hardware or firmware-level fixes.
  • Ability to lead technical discussions across architecture, firmware, software, and validation teams.
“Nice To Have” Skills and Experience :
  • Familiarity with RTL design, UVM/SystemVerilog, or hardware verification flows.
  • Experience with trusted execution environments (TEEs) and secure monitor implementation.
  • Understanding of secure firmware update mechanisms (rollback protection, anti-cloning).
  • Prior work with TPMs, Secure Elements, or other hardware security modules.
  • Contributions to security standards or academic research in system security, firmware security, embedded cryptography, side channel attacks.
In Return:

Arm is committed to global talent acquisition, offering an attractive relocation package. With offices worldwide, Arm is a diverse organization of dedicated, creative, and hardworking engineers. By enabling a dynamic, inclusive, meritocratic, and open workplace where everyone can grow and succeed, we encourage our people to share their outstanding contributions to Arm's success in the global marketplace.

Get your free, confidential resume review.
or drag and drop a PDF, DOC, DOCX, ODT, or PAGES file up to 5MB.