Lead SoC Security Software Engineer

Anodize, LLC
San Francisco, CA, United States
12 days ago
Apply on www.indeed.com
Prepare application

Role details

Contract type
Permanent contract
Employment type
Full-time (> 32 hours)
Experience level
Expert
Experience required
6 years minimum
Working hours
Regular working hours
Job source

Tech stack

ARM Architecture Software Debugging Firmware Hardware Security Module Key Management Kernel-Based Virtual Machine Linux Kernel Public Key Infrastructure Security Software Subsystems System Programming U-Boot

Job description

We’re a well-funded, stealth startup building a new end-to-end personal computing platform based on our own custom silicon. As our Lead SoC Security Software Engineer, you will own the software foundation for our hardware security. You will operate at the intersection of firmware, silicon, and cryptography, architecting the systems that keep our platform private and tamper-proof. You will bridge the gap between hardware primitives and high-level software, ensuring our Root of Trust, secure media pathways, and secrets storage are secure by design., * Root of Trust & Secure Boot: Architect and implement the entire chain of trust from power-on, including TF-A, secure boot sequences, and hardware-backed verification.

  • Secure Subsystem & Cryptography: Build the firmware for our Secure Subsystem / TEE to manage sensitive keys, execute cryptographic operations in isolation, and handle secure provisioning.
  • Encrypted Media Pipelines: Design and enforce end-to-end encrypted pathways for high-value media, integrating DRM and HDCP frameworks while maintaining memory isolation from the application processor.
  • Hardware/Software Co-Design: Work directly with the silicon and hardware teams to define security requirements for IP blocks, including OTP/eFuses, PUF, and crypto accelerators.
  • Vulnerability Hardening: Proactively model threats and implement defenses against physical and logical attacks, including side-channel analysis and fault injection, to ensure our product stays resilient.

Requirements

  • 6+ years in SoC/Embedded Security: Deep expertise in silicon-level security, firmware engineering, and building secure platforms.
  • ARM Architecture Experience: Hands-on experience with ARM v8/v9, ARM TrustZone, and low-level firmware integration (TF-A, OP-TEE).
  • Cryptography & Key Management: Practical experience implementing PKI, symmetric/asymmetric schemes, and hardware-based secret storage in production environments.
  • Low-Level Software Fluency: Expert-level C or Rust programming for constrained environments; comfortable reading datasheets and debugging assembly., * Experience implementing secure display/video paths, DRM, or memory isolation primitives.
  • Experience hardening firmware against physical side-channel and fault-injection attacks.
  • Background in Linux kernel security (dm-verity, module signing, hypervisors) or TEE development.
  • Experience delivering firmware through the full silicon lifecycle, from tape-out and secure manufacturing to field deployment.
  • Familiarity with Linux kernel fundamentals, KVM, eBPF, and security modules.

Apply for this position

This job is hosted externally. Click below to view the full posting and apply.

Apply on www.indeed.com
Prepare application

Good distractions

Talks and stories from around this role — technically off-topic, practically not.

2:19 min

Orchestrating over-the-air firmware updates for vehicle modules

Denis Grahovac · World Congress 2021

2:05 min

Finding product boundaries using lack of cohesion metric grouping

Pratishtha Pandey Pratishtha Pandey · World Congress 2024

1:45 min

Transitioning from software development to security roles

Stefania Chaplin · World Congress 2022

2:20 min

Utilizing custom firmware for variable torque manipulation

Daniel Meilak Daniel Meilak +1 · World Congress 2026 Europe

3:22 min

Transitioning from software engineering to security roles

Anna Oliveira · Coffee With Developers

2:20 min

Evaluating remote hardware allocations for localized infrastructure constraints

Paul Graham Paul Graham · LIVE

Videos

See all

Related articles

See all