SoC Offensive Security Staff Engineer

Arm
Austin, United States
Today
Verified
Apply on careers.arm.com
Prepare application

Role details

Experience level
Experienced
Compensation
€198,000.0 - €268,000.0
Languages
English

Tech stack

Network Security

Job description

Job Description:

The Security Research and Response team in Arm's Architecture and Technology Group is seeking a highly skilled SoC Offensive Security Staff Engineer to apply an attacker's mindset to Arm's next-generation solutions, identifying design and integration-level vulnerabilities early in the development lifecycle!

Working as part of the SoC Offensive Security team, you will perform adversarial security assessments across multiple projects by reviewing architectural specifications, evaluating pre- and post-silicon platforms, conducting firmware security analysis, and collaborating with development teams to uncover security weaknesses that traditional SDL processes may overlook. You will use practical security research methods, automation, and where appropriate, AI-assisted techniques to improve the depth, scale, and efficiency of adversarial analysis. Your work will contribute directly to improving the security of Arm's next-generation silicon solutions!

Responsibilities:

  • Perform adversarial security analysis of SoC and chiplet micro-architectures, identifying unknown or emerging vulnerabilities across pre-silicon and post-silicon environments.
  • Engage with project teams at different stages of the development lifecycle to review architecture, micro-architecture, system-level specifications, security assumptions, RTL implementations, and firmware components.
  • Participate in design reviews, security discussions, and focused hackathons to develop new threat scenarios, perform adversarial testing, and improve security models.
  • Apply automation, scripting, and AI-assisted techniques where appropriate to support vulnerability discovery, specification analysis, test generation, triage, or exploration of complex attack surfaces.
  • Demonstrate the practical impact of vulnerabilities by developing Proofs of Concept (PoCs), exploits, and security demonstrations where appropriate.
  • Investigate multi-stage and cross-component attack chains beyond those captured in threat models or standard verification activities.
  • Collaborate closely with internal security researchers and engineering teams to accelerate security assessments and identify effective mitigations.
  • Contribute to improving threat models, security mitigations, and security architecture recommendations based on assessment findings.
  • Contribute to the development and continuous improvement of offensive security methodologies, tools, and best practices across the SoC Offensive Security team.


Requirements

Required Skills and Experience:

  • Strong knowledge of SoC architecture and IP integration.
  • Thread modeling standalone IPs and Subsystems. Candidate should have experience enumerating micro-architectural attack surfaces and SoC integration concerns.
  • Demonstrated experience conducting adversarial assessments (PoCs, exploits, CTFs, published work).
  • Practical experience with SystemVerilog RTL, UVM-based validation environments and HW Dev IDEs
  • Comfortable reusing current verification environments and adapting them for negative and offensive testing.
  • Hands-on lab experience setting up development and testing platforms, delivering security evaluations, and validating findings in practical environments.
  • Firmware security analysis experience on projects like UEFI, uBoot, MCUBoot, Trusted Firmware or similar.
  • Experience with security focused specifications and standards such as Caliptra, DICE, or related attestation and hardware root-of trust standards.
  • Strong, determined problem solving outlook with creative security mentality.
  • Great communication skills, with the ability to influence design teams and clearly articulate risk and recommendations.
  • Ability to independently conduct complex technical investigations across assigned areas of responsibility.

“Nice To Have” Skills and Experience:

  • Familiarity with typical Hardware interface standards : PCIe, CXL, SMBus, SPI, I2C, UART, etc.
  • Familiarity with ARM’s AMBA interconnect protocols: AXI, CHI, CXS, APB, ATB, LPI, etc.
  • Experience with formal proof tools and approaches for HW Security.
  • Experience with TEE and their HW building blocks. Should be able to elaborate on what is in the TCB of a confidential VM.
  • Experience with hardware fuzzing in pre and post silicon environments
  • Experience with software exploitation techniques.
  • Reverse engineering skills for hardware, firmware, or microarchitecture.
  • Contributions to open standard bodies or participation in security-focused special interest groups (e.g., industry working groups, architecture forums).


Benefits & conditions

Salary Range:

$198,100-$268,000 USD per year

We value people as individuals and our dedication is to reward people competitively and equitably for the work they do and the skills and experience they bring to Arm. Salary is only one component of Arm's offering. The total reward package will be shared with candidates during the recruitment and selection process.


About the company

Arm is the industry’s highest-performing and most power-efficient compute platform with unmatched scale that touches 100 percent of the connected global population. To meet the insatiable demand for compute, Arm is delivering advanced solutions that allow the world’s leading technology companies to unleash the unprecedented experiences and capabilities of AI. Together with the world’s largest computing ecosystem and 22 million software developers, we are building the future of AI on Arm.

Apply for this position

This job is hosted externally. Click below to view the full posting and apply.

Apply on careers.arm.com
Prepare application

Inside Arm

Culture, engineering, and team stories

Good distractions

Talks and stories from around this role — technically off-topic, practically not.

1:16 min

Securing internal pod communication with network security policies

Marc Nimmerrichter · World Congress 2022

1:57 min

Following security research and continuous developer education

Martin Schmiedecker · LIVE

4:19 min

Introduction to network security and endpoint monitoring architectures

Christoph Ruggenthaler · LIVE

10:42 min

Essential soft skills and evaluating security candidates

Kurt Eder · LIVE

3:22 min

Transitioning from software engineering to security roles

Anna Oliveira · Coffee With Developers

46 sec

Apple's privacy-first approach to on-device processing

MIlan Todorović MIlan Todorović · World Congress 2025

Videos

See all

Related articles

See all