> Markdown version of [/jobs/ext/1421243-hardware-security-architect-principal](https://www.wearedevelopers.com/jobs/ext/1421243-hardware-security-architect-principal). Every page supports `.md` or `Accept: text/markdown`. Links point to the HTML versions so they work for humans too. Agent guide: [/agents.md](https://www.wearedevelopers.com/agents.md). --- # Hardware Security Architect, Principal - **Company:** Positron Ai, Inc. - **Location:** United States (Remote available) - **Salary:** $200,000.0 - $300,000.0 - **Contract:** Permanent contract - **Skills:** Artificial Intelligence, Cloud Computing Security, Cyber Security, Data Security, Software Debugging, Dynamic Random-Access Memory, Federal Information Processing Standards (FIPS), Firmware, Hardware Security Module, Information Systems Security Architecture Professional, Joint Test Action (IEEE Standards), Key Management, PCI Express, Reduced Instruction Set Computing, Software Deployment, U-Boot - **Published:** July 24, 2026 - **Apply:** https://www.indeed.com/viewjob?jk=8d427eb3cad5d150 ## About the Role * 12+ years of experience in hardware security architecture. * Deep expertise in secure boot and hardware root of trust design. * Strong cryptography and key management ability. * Hands-on experience with secure manufacturing processes. * A solid grasp of silicon bring-up in a security-critical context., * Experience with AI accelerator platforms. * Familiarity with HSMs and TPMs. * Expert-level proficiency in TEE, CCA, and Arm TrustZone architectures. * Experience with confidential computing, PCIe IDE, and CXL IDE. ## Description Own the hardware security architecture for Positron's AI accelerator platform, ensuring protection of customer models, user data, firmware, intellectual property, and secure operation throughout the product lifecycle. This role spans architecture through production deployment., Silicon Security Architecture * Define the overall silicon security architecture for Positron's platform. * Own secure boot, hardware root of trust, chain of trust, authenticated firmware, and measured boot. * Own secure debug, secure manufacturing, fuse programming, key provisioning, and device identity. * Own key ladders, anti-rollback protections, JTAG security, scan access control, and lifecycle states. AI Asset Protection * Protect customer models and weights through weight encryption and weight authentication. * Secure data in motion via link encryption, PCIe security, CXL security, and on-chip fabric security. * Own DRAM encryption, secure DMA, secure memory regions, and confidential computing techniques. Threat Modeling & Security Reviews * Perform architecture security reviews and develop attack models across the platform. * Mitigate physical attacks, fault injection, side-channel attacks, replay attacks, firmware compromise, and supply-chain attacks. Cross-Functional Partnership * Partner with firmware, software, architecture, DFT, validation, manufacturing, and cloud security teams to embed security throughout the product lifecycle. Industry Engagement * Stay current with NIST, FIPS, CCA, RISC-V security, and Arm security standards, as well as emerging areas like post-quantum cryptography and confidential AI. AI-Enabled Engineering * Apply AI-assisted techniques for threat modeling, security verification, coverage analysis, and documentation. ## Related Videos - [This Machine Ends Data Breaches](https://www.wearedevelopers.com/videos/574-this-machine-ends-data-breaches) - [Playing Pong on a shoulder press machine](https://www.wearedevelopers.com/videos/100140-playing-pong-on-a-shoulder-press-machine) - [Agent Smith Gets Hardware: Autonomous IoT Hacking From Debug Port to Cloud API](https://www.wearedevelopers.com/videos/100258-agent-smith-gets-hardware-autonomous-iot-hacking-from-debug-port-to-cloud-api) - [An alternative approach to digital sovereignty: Confidential Computing](https://www.wearedevelopers.com/videos/100043-an-alternative-approach-to-digital-sovereignty-confidential-computing) - [When Agents Meet Legacy: Never Change a Running System](https://www.wearedevelopers.com/videos/100320-when-agents-meet-legacy-never-change-a-running-system) - [A Hitchhikers Guide to Container Security - Automotive Edition 2024](https://www.wearedevelopers.com/videos/1119-a-hitchhikers-guide-to-container-security-automotive-edition-2024) ## Related Articles - [Dev Digest 134 - Where pixels sing?](https://www.wearedevelopers.com/magazine/477-dev-digest-134-where-pixels-sing) - [Stephan Gillich - Bringing AI Everywhere](https://www.wearedevelopers.com/magazine/489-stephan-gillich-bringing-ai-everywhere) - [Dev Digest 138 - Are you secure about this?](https://www.wearedevelopers.com/magazine/486-dev-digest-138-are-you-secure-about-this) - [The Overflow: Security and Privacy](https://www.wearedevelopers.com/magazine/715-the-overflow-security-and-privacy) - [Dev Digest 182: GPT5 Prompts, MCP Vulnerabilities, Code Traps](https://www.wearedevelopers.com/magazine/622-dev-digest-182-gpt5-prompts-mcp-vulnerabilities-code-traps) - [Dev Digest 129 - Now that's what I call private data!](https://www.wearedevelopers.com/magazine/468-dev-digest-129-now-that-s-what-i-call-private-data)