> Markdown version of [/jobs/ext/2982105-senior-firmware-engineer-security](https://www.wearedevelopers.com/jobs/ext/2982105-senior-firmware-engineer-security). Every page supports `.md` or `Accept: text/markdown`. Links point to the HTML versions so they work for humans too. Agent guide: [/agents.md](https://www.wearedevelopers.com/agents.md). --- # Senior Firmware Engineer, Security - **Company:** Blue Origin - **Location:** Cupertino, CA, United States - **Experience:** Expert - **Salary:** $230,398.0 - $322,557.0 - **Contract:** Permanent contract - **Skills:** Systems Engineering, Unit Testing, Biometrics, Booting (BIOS), C++ (Programming Language), Code Review, Computer Programming, Computer Engineering, Software Debugging, Device Drivers, Embedded Software, Emulators, Firmware, Field-Programmable Gate Array (FPGA), Joint Test Action (IEEE Standards), Key Management, Reduced Instruction Set Computing, Software Deployment, PIC Microcontroller, Application Specific Integrated Circuits, Peripherals, Information Technology, Hardware Acceleration, U-Boot - **Published:** September 18, 2026 - **Apply:** https://blueorigin.wd5.myworkdayjobs.com/BlueOrigin/job/Cupertino-CA/Senior-Firmware-Engineer--Security_R71104 ## About the Role * Bachelor's degree in Electrical Engineering, Computer Engineering, Computer Science, or a related technical field. * 8+ years of experience developing embedded software or firmware for complex SoCs, ASICs, microcontrollers, or similar embedded systems. * Strong programming experience in C/C++ and low-level embedded software development. * Experience developing bootloaders, ROM code, board-support software, device drivers, or low-level firmware. * Strong understanding of embedded processor architectures, memory maps, interrupts, peripherals, and hardware/software interfaces. * Experience debugging embedded systems using tools such as JTAG, trace, logic analyzers, or equivalent debugging environments. * Experience with embedded security concepts such as secure boot, root of trust, cryptographic key management, device identity, or secure firmware updates. * Ability to work closely with ASIC and hardware teams during pre-silicon development and silicon bring-up., * Experience developing firmware specifically for secure enclaves, hardware roots of trust, or security subsystems. * Experience with manufacturing provisioning, device attestation, anti-rollback, secure debug, and tamper detection. * Experience with cryptographic hardware accelerators, key storage, OTP/eFuse, TRNG, or secure memory. * Experience with custom ASIC or SoC pre-silicon verification and post-silicon bring-up. * Experience developing firmware for high-reliability, aerospace, satellite, communications, networking, or other complex systems. * Familiarity with ARM or RISC-V processor architectures and associated embedded development environments. Special Mentions ## Description As part of a hardworking team of specialists and engineers, you will develop low-level firmware for the secure enclaves of custom ASICs in the TeraWave system. You will work closely with silicon, software, security, and system engineering teams to develop the foundational firmware required to securely boot, provision, operate, update, monitor, and recover custom silicon throughout its lifecycle., * Develop ROM code, bootloaders, and runtime firmware for secure enclaves within custom ASICs. * Design and implement firmware supporting secure boot, device attestation, and root-of-trust functionality. * Develop firmware infrastructure for OTA updates, recovery, and secure firmware lifecycle management. * Support manufacturing provisioning, including device identity, keys, credentials, and secure configuration. * Develop and support secure debug, telemetry, tamper monitoring, and device recovery mechanisms. * Work closely with ASIC, security, software, and system teams to define hardware/software interfaces and security requirements. * Support pre-silicon firmware development and validation using simulation, emulation, FPGA, or other available development platforms. * Support silicon bring-up, debugging, validation, and production deployment of secure-enclave firmware. * Develop high-quality, maintainable embedded software with appropriate unit testing, code review, and documentation., Applicants for employment at Blue Origin must be a U.S. citizen or national, U.S. permanent resident (i.e. current Green Card holder), or lawfully admitted into the U.S. as a refugee or granted asylum. Background Check * Required for all positions: Blue's Standard Background Check * Required for Certain Job Profiles: Defense Biometric Identification System (DBIDS) background check if at any time the role requires one to be on a military installation * Required for Certain Job Profiles: Drivers who operate Commercial Motor Vehicles with a Gross Vehicle Weight (GVW), Gross Vehicle Weight Rating (GVWR) or combination of power unit and trailer that meets or exceeds 10,001 lbs. and/or transports placardable amounts of hazardous materials by ground in any vehicle on a public road while in commerce, may be subject to additional Federal Motor Carrier Safety Regulations including: Driver Qualification Files, Medical Certification (obtained before onboarding), Road Test, Hours of Service, Drug and Alcohol Testing, vehicle inspection requirements, CDL requirements (if applicable) and hazardous materials transportation/shipping training. * Required for certain Job Profiles: Ability to obtain and maintain Merchant Mariner Credential, which includes pre-employment and random drug testing as well as DOT physical ## Related Videos - [Cyber Security: Small, and Large!](https://www.wearedevelopers.com/videos/259-cyber-security-small-and-large) - [Thinking Differently - How to Make Money from Cyber Attacks & Cheats](https://www.wearedevelopers.com/videos/745-thinking-differently-how-to-make-money-from-cyber-attacks-cheats) - [Playing Pong on a shoulder press machine](https://www.wearedevelopers.com/videos/100140-playing-pong-on-a-shoulder-press-machine) - [Agent Smith Gets Hardware: Autonomous IoT Hacking From Debug Port to Cloud API](https://www.wearedevelopers.com/videos/100258-agent-smith-gets-hardware-autonomous-iot-hacking-from-debug-port-to-cloud-api) - [WeAreDevelopers LIVE – Web Scraping, Agents, Actors and more](https://www.wearedevelopers.com/videos/1764-wearedevelopers-live-web-scraping-agents-actors-and-more) - [Unleashing the Full Potential of the Arm Architecture – Write Once, Deploy Anywhere](https://www.wearedevelopers.com/videos/940-unleashing-the-full-potential-of-the-arm-architecture-write-once-deploy-anywhere) ## Related Articles - [Dev Digest 134 - Where pixels sing?](https://www.wearedevelopers.com/magazine/477-dev-digest-134-where-pixels-sing) - [Dev Digest 129 - Now that's what I call private data!](https://www.wearedevelopers.com/magazine/468-dev-digest-129-now-that-s-what-i-call-private-data) - [How We Built a Worry-Free System That Runs for 10+ Years – And What We’d Do Again](https://www.wearedevelopers.com/magazine/751-how-we-built-a-worry-free-system-that-runs-for-10-years-and-what-we-d-do-again) - [Highest Paying Tech Companies for Developers](https://www.wearedevelopers.com/magazine/220-highest-paying-tech-companies-for-developers) - [The Best Software Developer Blogs to Read](https://www.wearedevelopers.com/magazine/156-the-best-software-developer-blogs-to-read) - [Dev Digest 138 - Are you secure about this?](https://www.wearedevelopers.com/magazine/486-dev-digest-138-are-you-secure-about-this)