Security Architect & Certification Owner

Felsite Technologies Private Limited

Ernakulam

On-site

INR 4,500,000 - 6,500,000

Full time

14 days+
Application generator

Stand out for this role — generate a tailored resume and cover letter in about a minute.

Get past ATS filters

Job summary

Felsite Technologies Private Limited seeks a Security Architect & Certification Owner to drive certification programs from now through product derivatives. The role involves owning threat inventories, Security Target definitions, and leakage-focused evaluation strategies across global labs and schemes.

Preferred is Kochi (Kochi) but other locations may be considered for the right candidate. The position targets 8–15 years of security and assurance experience, with a path from certification

Qualifications

  • Carried a product through a formal certification or assurance regime with evidenced results.
  • Familiar with standards such as Common Criteria, FIPS, PCI, SESIP, IEC 62443, ISO 26262, IEC 61508, DO-178/254.
  • Discipline transfers to the scheme; hardware CC experience not required.

Responsibilities

  • Own the threat inventory spanning software, microarchitectural, physical, supply-chain and cryptographic classes.
  • Define the Security Target and evaluated boundary for derivatives.
  • Lead vulnerability analysis and resistance against high-attack-potential adversaries.
  • Manage lab and scheme relationships (Indian evaluation centres, European facility, FIPS lab, national lab).
  • Design leakage-assessment programme with phases, criteria, labs and budget.
  • Shape entropy-source validation path integrated into silicon design.

Skills

Threat inventory
Security Target
Vulnerability analysis
Lab and scheme relationships
Leakage-assessment
Entropy-source validation

Job description

Security Architect & Certification Owner Open

8–15 years. Kochi preferred; other locations considered for the right person. The first of the two security hires.

The larger of the two security seats and the one we hire first. It runs from now through certification, and into every derivative product after.

What you own
  • The threat inventory — software, microarchitectural, physical, supply-chain and cryptographic attack classes across several adversary tiers — written to survive an evaluator, not to reassure a reader.
  • The Security Target and the evaluated boundary. Every derivative die and firmware personality inherits those design rules.
  • The vulnerability analysis and penetration-resistance argument against a high-attack-potential adversary — the bar that decides whether this chip can be sold into defence at all.
  • Every lab and scheme relationship: Indian evaluation centres and scheme empanelment, a European facility for the augmented Common Criteria path, an accredited FIPS lab, a national laboratory for side-channel work, and the sovereign defence evaluation.
  • The leakage-assessment campaign as a programme — phases, pass criteria, lab partners and budget. You design it, not inherit it.
  • The entropy-source validation path. Certification needs a validated physical entropy source, and that evidence has to be designed into the silicon.
What we look for

You have carried a product through a formal certification or assurance regime and produced the evidence yourself. Common Criteria, FIPS, PCI, SESIP, IEC 62443, ISO 26262, IEC 61508, DO-178/254 — any of them counts. We are not asking for hardware Common Criteria experience: the discipline transfers, the scheme is learnable.

What success looks like at twelve months

A Security Target a lab will accept, an evaluation facility engaged and scheduled, a leakage-assessment programme returning real results, and a threat inventory that survives someone hostile reading it line by line.

What we fund

Common Criteria and FIPS 140-3 specifics — eighteen months shadowing a European evaluation facility at our cost, a budgeted line rather than a promise. Side-channel evaluation methodology, hands-on at a national laboratory.

Not required

Common Criteria experience. Cryptography mathematics. A PhD. Writing synthesisable RTL — you need to read and threat-model it, not author it. Side-channel lab skills; we contract the bench.

Get your free, confidential resume review.

or drag and drop your file here.

Similar jobs

Similar jobs worth comparing

Cryptographic Hardware Engineer
Cryptographic Hardware Engineer

Felsite Technologies Private Limited • Ernakulam

On-site
INR 1,200,000 - 2,400,000
Analog & Power Management Lead
Analog & Power Management Lead

Felsite Technologies Private Limited • Ernakulam

On-site
INR 3,000,000 - 6,000,000
IT Engineer,Security,Senior
IT Engineer,Security,Senior

Anite • Gurugram District

On-site
INR 1,500,000 - 2,500,000
Senior Product Security Engineer
Senior Product Security Engineer

Mico • Bengaluru

On-site
INR 350,000 - 600,000
IT Engineer,Security,Senior
IT Engineer,Security,Senior

Keysight Technologies SAles Spain SL. • Gurugram District

On-site
INR 2,500,000 - 5,500,000
Vulnerability Researcher II
Vulnerability Researcher II

Safe • New Delhi

On-site
INR 1,800,000 - 3,000,000
Meaningful Equity
Unlimited Leaves
Comprehensive Benefits
+1
Cybersecurity Architect
Cybersecurity Architect

Grid Dynamics • Bengaluru

On-site
INR 2,500,000 - 3,500,000
Competitive salary
Professional development opportunities
Well-equipped office
+1
Product Security Engineer
Product Security Engineer

Emerson • Maharashtra

On-site
INR 1,200,000 - 1,800,000
Senior Cybersecurity Lab Engineer
Senior Cybersecurity Lab Engineer

UL India Pvt Ltd • Bengaluru

On-site
INR 1,400,000 - 2,100,000
Application Security Lead
Application Security Lead

Sagility • Bengaluru

On-site
INR 3,500,000 - 7,000,000