Senior Firmware Cybersecurity Software Engineer

Insight Global

Saint Paul (MN)

Hybrid

USD 120,000 - 160,000

Full time

14 days+

Get more replies from employers

Send a job-specific resume in minutes.

Job summary

Insight Global is seeking a Senior Firmware Cybersecurity Software Engineer for a Fortune 500 chemical manufacturer. The role will architect, design, and secure embedded firmware and IoT software across devices, gateways, and platforms with a focus on secure development and threat-informed design.

You will collaborate with hardware, software, product management, and security teams to define secure requirements, implement secure OTA updates, hardening, and vulnerability remediation while

Qualifications

  • 5+ years of software or firmware development in a fast-moving product environment
  • 3+ years in C/C++ for embedded firmware development
  • Experience applying secure software development practices including secure coding, code review, remediation and defect management
  • Experience with embedded RTOS or bare-metal development and security for constrained devices
  • Experience with UART, SPI, I2C, and secure comms for connected systems
  • Experience with ARM-based microcontrollers (Microchip, NXP, Silicon Labs, ST)
  • Experience with vulnerability management, CVE analysis, SBOM usage and remediation verification
  • Experience with cybersecurity frameworks or secure development standards (NIST SSDF, IEC 62443, ISO 27001, OWASP)

Responsibilities

  • Define secure system requirements for embedded firmware, IoT edge devices, gateways, and backend-connected components
  • Design, develop, and test secure firmware and IoT software with secure-by-design principles
  • Implement hardware security controls (secure elements, TPMs, hardware root of trust)
  • Apply memory safety practices and compiler hardening to mitigate C/C++ vulnerabilities
  • Develop secure device provisioning workflows (key injection, certificate enrollment)
  • Lead vulnerability triage, remediation planning, and release coordination for embedded/IoT software
  • Perform threat modeling, secure code reviews, static/dynamic analysis, and security testing
  • Collaborate with cross-functional teams to deliver secure connected products
  • Stay current with cybersecurity standards and emerging vulnerabilities in embedded IoT environments
  • Participate in embedded incident response and rapid hotfix development

Skills

C/C++ embedded
ARM MCUs
Secure SDLC
Vulnerability mgmt
Threat modeling
Security testing
RTOS/bare-metal
Secure OTA/update
Hardware security
Secure communications

Education

Bachelor’s degree in Computer Engineering/CS/EE/Cybersecurity

Job description

Title: Senior Firmware Cybersecurity Software Engineer

Location: St. Paul, MN or Naperville, IL (3x per week hybrid, some flexibility)

Employment Type: Long term contract through end of 2026 with expected extension

A large Fortune 500 chemical manufacturing client is seeking a Senior Firmware Cybersecurity Software Engineer to architect, design, develop, and secure embedded firmware and IoT software solutions. This senior-level role will focus on secure software development, vulnerability remediation, threat-informed design, and continuous improvement of cybersecurity practices across connected devices, gateways, and supporting IoT platforms. The candidate will be part of a dynamic team helping support the client’s digital transformation by delivering secure, resilient IoT solutions that protect customer environments and enable trusted business outcomes.

What You Will Do:

  • Partner with stakeholders, product teams, and security teams to define secure system requirements for embedded firmware, IoT edge devices, gateways, and backend-connected components.
  • Design, develop, and test secure firmware and IoT software using secure-by-design principles, including authentication, authorization, secure communications, encryption, logging, and secure update mechanisms.
  • Implement hardware security controls including secure elements, TPMs, hardware root of trust, and JTAG/SWD lockdown.
  • Apply memory safety practices and compiler hardening techniques to mitigate common C/C++ vulnerabilities.
  • Develop secure device provisioning workflows including key injection, certificate enrollment, and device identity lifecycle management.
  • Lead vulnerability triage, root-cause analysis, remediation planning, patch development, verification, and release coordination for embedded and IoT software components.
  • Perform and support threat modeling, secure code reviews, static and dynamic analysis, dependency scanning, and security testing throughout the software development lifecycle.
  • Participate in embedded incident response, coordinated disclosure, and rapid hotfix development for fielded devices.
  • Design and implement secure OTA update pipelines including signing, encryption, rollback protection, A/B partitioning, and update integrity validation using secure OTA lifecycle best practices.
  • Integrate SAST, DAST, dependency scanning, and firmware‑specific security checks into CI/CD pipelines using secure CI/CD pipelines principles.
  • Collaborate with cross-functional teams, including hardware, software, product management, quality, regulatory, and external partners, to deliver secure connected products.
  • Stay current with cybersecurity standards, secure development practices, emerging vulnerabilities, tools, and techniques relevant to embedded systems and industrial IoT environments.
  • Bachelor’s degree in Computer Engineering, Computer Science, Electrical Engineering, Cybersecurity, or a similar technical degree.
  • 5 or more years’ experience in software or firmware development in a fast-moving product development environment.
  • 3 or more years working in C or C++ for embedded firmware development.
  • Experience applying secure software development practices, including secure coding, code review, vulnerability remediation, and security defect management.
  • Experience with embedded RTOS or bare-metal development and security considerations for constrained devices.
  • Experience with serial communication protocols, such as UART, SPI, and I2C, and secure communication concepts for connected systems.
  • Experience with ARM-based microcontrollers, such as Microchip, NXP, Silicon Labs, or STMicroelectronics.
  • Experience with vulnerability management processes, CVE analysis, SBOM usage, dependency scanning, penetration test findings, and remediation verification.
  • Experience with cybersecurity frameworks or secure development standards such as NIST SSDF, IEC 62443, ISO 27001, OWASP, or secure product lifecycle practices.

Preferred Qualifications:

  • Experience supporting embedded firmware platforms, board support package development, secure boot, secure storage, cryptographic services, or firmware update mechanisms.
  • Experience in one or more of the following areas: bootloaders, embedded file systems, Linux, CAN Bus, Modbus RTU, Modbus TCP, network security, device identity, or certificate management.
  • Experience with Agile development methodologies and integrating security activities into sprint planning, backlog management, release readiness, and defect triage.
  • Initiative and ability to work independently and as a member of a multi-disciplinary team while managing multiple security, development, or remediation priorities.
  • Strong communication skills, both verbal and written, with the ability to clearly explain technical security risks, remediation plans, and release impacts to technical and non-technical stakeholders.
Get your free, confidential resume review.
or drag and drop your file here.
Similar jobs

Similar jobs worth comparing

Senior Firmware Cybersecurity Software Engineer
Senior Firmware Cybersecurity Software Engineer

Insight Global • Naperville (IL)

Hybrid
USD 124,000 - 165,000
Senior Embedded Security Engineer for Firmware & IoT
Senior Embedded Security Engineer for Firmware & IoT

Insight Global • Naperville (IL)

Hybrid
USD 124,000 - 165,000
Senior Embedded Security Engineer: Firmware & IoT (Hybrid)
Senior Embedded Security Engineer: Firmware & IoT (Hybrid)

Insight Global • Saint Paul (MN)

Hybrid
USD 120,000 - 160,000
Staff Firmware Engineer
Staff Firmware Engineer

West Search Partners, LLC • Longmont (CO)

Hybrid
USD 140,000 - 190,000
Hybrid work environment
Senior Product Security Engineer
Senior Product Security Engineer

Intellias • Newton (MA)

On-site
USD 120,000 - 180,000
Senior Firmware Engineer (4652)
Senior Firmware Engineer (4652)

Hireclout • Tucson (AZ)

On-site
USD 150,000 - 170,000
Senior Firmware Security Architect (Hybrid)
Senior Firmware Security Architect (Hybrid)

Socket.dev • Greenville (SC)

On-site
USD 120,000 - 160,000
Senior Software Engineer (Embedded Linux)
Senior Software Engineer (Embedded Linux)

Delaney Group • United States

Remote
USD 100,000 - 130,000
Embedded Cyber Software Developer 4
Embedded Cyber Software Developer 4

Cts Technology Solutions, Inc. • Hazelwood (MO)

Remote
Comprehensive healthcare coverage
Paid time off
Retirement savings plans
+1
Senior Software Engineer
Senior Software Engineer

Motion Recruitment • California (MO)

On-site
USD 130,000 - 190,000
Benefits