Senior Embedded Security Engineer — Secure Boot

Triwill Group

Irvine (CA)

On-site

USD 220,000 - 292,000

Full time

6 days ago
Be an early applicant
Application generator

Don’t send a generic resume — generate a resume and cover letter tailored to this exact role.

Get past ATS filters

Job summary

Anduril Industries is seeking a Senior Software Engineer to own product security for the Sentry Tower platform. You will manage the trusted boot chain across NVIDIA Jetson compute generations, implement encryption and signing, and enforce strict hardening postures to protect fielded systems.

You will collaborate with the product security organization to translate requirements into shipable implementations, oversee CVE tracking, and manage upgrade paths for hardware approaching end-of-life; this

Qualifications

  • 4+ years of professional software engineering with a security focus on Linux or embedded systems.
  • Hands-on experience implementing a secure boot chain: code signing, chain of trust, UEFI Secure Boot or an equivalent vendor secure boot implementation.
  • Practical cryptographic engineering skills: PKI and certificate hierarchies, HSM or PKCS#11-backed signing, key lifecycle management, and full-disk encryption.
  • Strong Linux internals knowledge, particularly in patching, boot flow, kernel and initrd, systemd, privilege boundaries, and filesystem and device access control.
  • Proficiency in C or Rust, plus the ability to work fluently in shell.
  • Practical hardening and vulnerability-management experience on real systems: attack-surface reduction, CVE triage on a deployed fleet, and live patching strategies that don’t break the product.
  • Ability to explain a security decision to engineers who need to implement it, and to a program stakeholder who needs to accept the residual risk.
  • US person status required. Active US Secret clearance, or a previously granted Secret clearance eligible for reactivation.

Responsibilities

  • Own the signed boot chain across compute generations: firmware and bootloader signing, UEFI Secure Boot key hierarchies, signed kernel and initrd, and full-disk encryption with automated unlock.
  • Own signing key management and the infrastructure behind it: HSM-backed keys, separation of development and production trust roots, key rotation, and build-time enforcement that the right keys sign the right artifacts.
  • Define and implement the platform’s hardening postures, spanning network exposure and firewall policy, privilege and sudo restriction, serial console and USB lockdown, and the difference between a locked-down fielded system and a debuggable bench unit.
  • Drive vulnerability management for the fielded fleet: track CVEs (Common Vulnerabilities and Exposures) against our kernel and userspace, own the patching strategy for hardware approaching vendor end-of-life, and keep a clear picture of fleet security state.
  • Partner with our product security organization to turn security requirements into shippable implementations, act as our team’s security liaison, and support program-specific accreditation efforts.

Skills

Software engineering
Security focus
Linux/Embedded

Tools

NVIDIA Jetson

Job description

Anduril Industries is seeking a Senior Software Engineer to own product security for the Sentry Tower platform. You will manage the trusted boot chain across NVIDIA Jetson compute generations, implement encryption and signing, and enforce strict hardening postures to protect fielded systems.

You will collaborate with the product security organization to translate requirements into shipable implementations, oversee CVE tracking, and manage upgrade paths for hardware approaching end-of-life; this

Get your free, confidential resume review.

or drag and drop your file here.

Similar jobs

Similar jobs worth comparing

Senior Embedded Security Engineer: Secure Boot & Hardening
Senior Embedded Security Engineer: Secure Boot & Hardening

Anduril • Irvine (CA)

On-site
USD 140,000 - 210,000
Senior Embedded Security Engineer: Secure Boot & Hardening
Senior Embedded Security Engineer: Secure Boot & Hardening

AI Chopping Block • Irvine (CA), Northern (KY)

Hybrid
USD 220,000 - 292,000
Senior Embedded Security Engineer: Bootchain & Hardening
Senior Embedded Security Engineer: Bootchain & Hardening

Anduril Industries • Irvine (CA)

On-site
USD 220,000 - 292,000
Senior Embedded Security Engineer: Secure Boot & Hardening
Senior Embedded Security Engineer: Secure Boot & Hardening

Linuxconfig • Irvine (CA), Northern (KY)

Hybrid
USD 220,000 - 292,000
Senior Embedded Linux Engineer - Boot & Platform
Senior Embedded Linux Engineer - Boot & Platform

Anduril-1 • Irvine (CA)

On-site
USD 170,000 - 210,000
Embedded Linux Platform Engineer – Boot & Hardware Bring-Up
Embedded Linux Platform Engineer – Boot & Hardware Bring-Up

Slope • Irvine (CA)

On-site
USD 140,000 - 190,000
Senior Software Engineer, Embedded Product Security
Senior Software Engineer, Embedded Product Security

Anduril • Irvine (CA)

On-site
USD 140,000 - 210,000
Senior Embedded Crypto Engineer — Secure Boot & TPM
Senior Embedded Crypto Engineer — Secure Boot & TPM

Mosaic.tech • California (MO)

On-site
USD 191,000 - 253,000
Senior Product Security Engineer—Embedded & AI Platforms
Senior Product Security Engineer—Embedded & AI Platforms

Anduril Industries • Costa Mesa (CA)

On-site
USD 156,000 - 253,000
Equity grants
Comprehensive benefits
Senior Cyber Software Engineer, Embedded Crypto & Trust
Senior Cyber Software Engineer, Embedded Crypto & Trust

Engg • Irvine (CA), Washington

On-site
USD 180,000 - 240,000