> Markdown version of [/jobs/ext/1471979-embedded-systems-security-engineer](https://www.wearedevelopers.com/jobs/ext/1471979-embedded-systems-security-engineer). Every page supports `.md` or `Accept: text/markdown`. Links point to the HTML versions so they work for humans too. Agent guide: [/agents.md](https://www.wearedevelopers.com/agents.md). --- # Embedded Systems Security Engineer - **Company:** Horizontal Talent - **Location:** United States - **Experience:** Experienced - **Contract:** Permanent contract - **Skills:** Board Bringup, Bash Shell, Booting (BIOS), UClibc (C Standard Library), Cyber Security, Linux, File Systems, Linux on Embedded Systems, Firmware, Python (Programming Language), Linux Kernel, Public Key Infrastructure, Scripting, Yocto, Selinux, Build Tools - **Published:** July 28, 2026 - **Apply:** https://www.dice.com/job-detail/3d5b5306-0033-4709-a92f-166460e3fa2e ## About the Role * 6+ years of experience in embedded Linux development, board bring-up, or BSP customization * 3+ years of practical experience deploying security controls on physical hardware * Strong understanding of bootloader security and verified boot concepts * Experience with Linux storage and security technologies such as dm-crypt and dm-verity * Solid knowledge of ARM TrustZone and modern embedded processor security architecture * Proficiency with C and scripting in Python or Bash * Experience with embedded Linux build systems such as Yocto or Buildroot * Ability to work effectively across hardware, software, and manufacturing functions Preferred Skills * Background in cryptography, including hashing, public key infrastructure, and symmetric/asymmetric methods * Experience working with HSMs or secure key vaults * Prior collaboration with contract manufacturers or factory operations on secure provisioning * Experience with lightweight container or sandboxing tools for embedded systems * Knowledge of anti-rollback strategies for firmware and OTA updates * Experience authoring secure/trusted applications for a TEE such as OP-TEE Horizontal is committed to fostering an inclusive, respectful, and welcoming environment where people with diverse backgrounds, perspectives, and experiences can do their best work. We value equity, belonging, and collaboration, and we encourage qualified candidates to apply even if they do not meet every preferred qualification. ## Description * Design and implement hardware root of trust and secure boot solutions from early boot through the Linux kernel * Build and maintain storage integrity protections such as verified read-only root file systems and encryption at rest * Develop, integrate, and support trusted execution environment components and secure applications within the TEE * Apply strong user-space isolation controls using tools such as SELinux, AppArmor, cgroups, namespaces, and seccomp * Automate cryptographic signing workflows for bootloaders, kernels, and OTA artifacts within CI/CD pipelines * Partner with manufacturing teams to create secure provisioning processes, including fuse programming and end-of-line security validation * Design resilient multi-slot boot and recovery strategies to help devices recover safely from failed updates or boot issues * Collaborate across engineering, build, and production teams to ensure security is implemented reliably at scale ## Related Videos - [Enhancing Workload Security in Kubernetes](https://www.wearedevelopers.com/videos/356-enhancing-workload-security-in-kubernetes) - [Security Pitfalls for Software Engineers](https://www.wearedevelopers.com/videos/726-security-pitfalls-for-software-engineers) - [Docker network without Docker](https://www.wearedevelopers.com/videos/1418-docker-network-without-docker) - [For the Cars and the Curious: Android Drift](https://www.wearedevelopers.com/videos/499-for-the-cars-and-the-curious-android-drift) - [Docker exec without Docker](https://www.wearedevelopers.com/videos/1094-docker-exec-without-docker) - [Cyber Security: Small, and Large!](https://www.wearedevelopers.com/videos/259-cyber-security-small-and-large) ## Related Articles - [9 Ways to Make Money Hacking](https://www.wearedevelopers.com/magazine/333-9-ways-to-make-money-hacking) - [Events like RSAC Get You CISOs. Developers Decide What Actually Gets Deployed.](https://www.wearedevelopers.com/magazine/693-events-like-rsac-get-you-cisos-developers-decide-what-actually-gets-deployed) - [Dev Digest 134 - Where pixels sing?](https://www.wearedevelopers.com/magazine/477-dev-digest-134-where-pixels-sing) - [Is Software Engineering Over-Saturated?](https://www.wearedevelopers.com/magazine/418-is-software-engineering-over-saturated) - [Why Upskilling And Reskilling is Important For Developers](https://www.wearedevelopers.com/magazine/428-why-upskilling-and-reskilling-is-important-for-developers) - [Dev Digest 138 - Are you secure about this?](https://www.wearedevelopers.com/magazine/486-dev-digest-138-are-you-secure-about-this)