> Markdown version of [/jobs/ext/2309620-sr-principal-system-firmware-authentication-engineer](https://www.wearedevelopers.com/jobs/ext/2309620-sr-principal-system-firmware-authentication-engineer). Every page supports `.md` or `Accept: text/markdown`. Links point to the HTML versions so they work for humans too. Agent guide: [/agents.md](https://www.wearedevelopers.com/agents.md). --- # Sr. Principal System Firmware Authentication Engineer - **Company:** Ampere Computing - **Location:** San Francisco, CA, United States - **Experience:** Expert - **Salary:** $237,000.0 - $338,500.0 - **Contract:** Permanent contract - **Skills:** Microsoft Windows, Agile Methodology, Computing Platforms, ARM Architecture, JIRA, User Authentication, Bash Shell, BIOS, Booting (BIOS), Bugzilla, CMake, Code Review, Computer Programming, Computer Engineering, System Configuration, Continuous Integration, Software Debugging, Linux, Embedded Software, Emulators, Firmware, Hardware Interface Design, Joint Test Action (IEEE Standards), Python (Programming Language), Key Management, OpenSSL, PCI Express, X.509, Release Management, Secure Coding, Software Engineering, System Programming, System Software, Systems Integration, Windows Software Trace Preprocessor, 64bit, SSL Certificate Management, Multithreading, Extensible Firmware Interface, Cloud Platform System, Software Security, Git, Information Technology, Production Code, Trace32, Hardware Infrastructure, U-Boot, Jenkins - **Published:** August 30, 2026 - **Apply:** https://www.dice.com/job-detail/d82e9a89-5a31-43fc-aa60-537be1a91bfa ## About the Role * Bachelor's or master's degree in Computer Engineering, Electrical Engineering, Computer Science, or a related technical field, or equivalent practical experience. * 12 or more years of relevant experience in firmware, embedded software, platform security, or a related engineering discipline. * Extensive and demonstrable expertise in C and C++ for embedded or systems software development. * Deep experience with 32-bit and 64-bit ARM architecture, including ARM server platforms and system boot flows. * Strong expertise in secure boot, firmware authentication, cryptography, platform security, hardware roots of trust, and trusted computing concepts. * Extensive knowledge of X.509 certificates, certificate chains, certificate packaging, key management, signing workflows, and device identity. * Hands-on experience with OpenSSL, mbedTLS, or comparable cryptographic libraries and security frameworks. * Experience implementing or integrating device attestation, measured boot, remote attestation, or related platform-trust technologies. * Strong understanding of firmware, BIOS/UEFI, Linux, and Windows software development and integration. * Experience with ARM firmware bring-up, boot sequences, system initialization, and multi-threaded programming. * Experience debugging and validating firmware in virtual platforms, hardware emulation environments, and post-silicon systems. * Strong analytical, debugging, testing, and root-cause analysis skills. * Demonstrated ability to resolve issues that span multiple firmware, software, hardware, and operating-system subsystems. * Experience with server hardware interfaces, including SPI, I2C, I3C, DDR3/DDR4/DDR5, PCIe, and related platform technologies. * Experience using JTAG and debugging tools such as TRACE32 or OpenOCD. * Proficiency with Python and Bash scripting for automation, testing, diagnostics, and development workflows. * Experience with Kconfig, Device Tree, CMake, or comparable firmware build and configuration systems. * Experience with source-control and development infrastructure, including Git, Jenkins, Bugzilla, Jira, or equivalent tools. * Strong understanding of software development lifecycle practices, Agile methodologies, code review, continuous integration, and release management. * Demonstrated experience driving features from requirements and architecture through implementation, integration, validation, and production release. * Track record of writing secure, maintainable, testable, and production-quality code. * Ability to operate independently, manage competing priorities, and make sound technical decisions in a complex, cross-functional environment. * Demonstrated technical leadership, including the ability to influence architecture, resolve ambiguity, mentor engineers, and drive execution without direct authority. * Experience working directly with ODMs, customers, Field Application Engineers, or other external stakeholders on technical issue diagnosis and resolution. * Excellent written and verbal communication skills, with the ability to explain complex security and firmware concepts to both technical and nontechnical audiences. ## Description Ampere Computing is seeking a Sr. Principal System Firmware Authentication Engineer to lead the architecture, development, and validation of secure system firmware for ARM -based server platforms. This role will focus on firmware authentication, secure boot, cryptographic services, certificate management, device attestation, and trusted platform capabilities while collaborating with hardware, firmware, security, validation, ODM, and customer teams throughout the product lifecycle. What You'll Achieve: * Deliver robust firmware authentication and secure-boot capabilities across multiple ARM server platforms. * Establish scalable certificate, key, signing, and authentication processes that support the complete product lifecycle. * Bring up and validate System Control Processor firmware across virtual platforms, emulation systems, and silicon. * Enable secure firmware updates, platform recovery, device identity, and attestation capabilities where required. * Define and execute comprehensive unit, integration, functional, negative, regression, and security testing strategies. * Improve the reliability and security of firmware interactions with hardware, BIOS/UEFI, Linux, Windows, and other platform software. * Identify security and functional risks early through architecture reviews, design analysis, and pre-silicon validation. * Debug and root-cause issues spanning firmware, software, hardware interfaces, operating systems, and cryptographic services. * Drive complex issues from initial investigation through root cause, corrective action, validation, and release. * Support multiple products and programs while maintaining alignment with platform architecture and security requirements. * Deliver high-quality, sustainable code and documentation that can be reused across future platforms. * Provide technical direction on firmware authentication architecture, implementation standards, and secure development practices. * Strengthen collaboration among firmware, hardware, validation, product security, RMA, signing, ODM, and customer engineering teams. ## Related Videos - [Security Pitfalls for Software Engineers](https://www.wearedevelopers.com/videos/726-security-pitfalls-for-software-engineers) - [10M Data Records Lost, Underwater Computing, and Psychedelic Fish - Matthias Geniar](https://www.wearedevelopers.com/videos/1908-10m-data-records-lost-underwater-computing-and-psychedelic-fish-matthias-geniar) - [Improving quality with Agentic AI with Rovo Dev and Xray](https://www.wearedevelopers.com/videos/2005-improving-quality-with-agentic-ai-with-rovo-dev-and-xray) - [How a Small Team Shrank a Microsoft Monorepo by 94%](https://www.wearedevelopers.com/videos/1236-how-a-small-team-shrank-a-microsoft-monorepo-by-94) - [How to Submit CFPs and Get into Public Speaking - Moran Weber](https://www.wearedevelopers.com/videos/2112-how-to-submit-cfps-and-get-into-public-speaking-moran-weber) - [Collaboration Quantified: Lessons from Open Source Developer Networks](https://www.wearedevelopers.com/videos/1422-collaboration-quantified-lessons-from-open-source-developer-networks) ## Related Articles - [How We Built a Worry-Free System That Runs for 10+ Years – And What We’d Do Again](https://www.wearedevelopers.com/magazine/751-how-we-built-a-worry-free-system-that-runs-for-10-years-and-what-we-d-do-again) - [Top Characteristics of a Software Engineer](https://www.wearedevelopers.com/magazine/166-top-characteristics-of-a-software-engineer) - [The Best X (Twitter) Accounts for Developers](https://www.wearedevelopers.com/magazine/294-the-best-x-twitter-accounts-for-developers) - [9 Ways to Make Money Hacking](https://www.wearedevelopers.com/magazine/333-9-ways-to-make-money-hacking) - [What’s the Difference between a Junior, Mid, and Senior Developer?](https://www.wearedevelopers.com/magazine/238-what-s-the-difference-between-a-junior-mid-and-senior-developer) - [Events like RSAC Get You CISOs. Developers Decide What Actually Gets Deployed.](https://www.wearedevelopers.com/magazine/693-events-like-rsac-get-you-cisos-developers-decide-what-actually-gets-deployed)