Software Security Architect - AI

NXP Semiconductors
Gratkorn, Austria
1 day ago
Apply on devjobs.at
Prepare application

Role details

Contract type
Permanent contract
Employment type
Full-time (> 32 hours)
Working hours
Regular working hours
Job source

Tech stack

Artificial Intelligence Computing Platforms Assembly Language Cyber Security Middleware Embedded Software Firmware Key Management Software Engineering System Software Software Security Information Technology
+1 more
U-Boot

Job description

  • Join our team and support product development teams in gathering requirements, specifying, designing, reviewing, verifying, and implementing security solutions for NXP products.
  • As a Software Security Architect, you will help ensure that security is built into products throughout their entire lifecycle.
  • You will collaborate with product teams, security experts, and stakeholders across the company to develop robust security architectures, assess security risks, and support compliance with relevant cybersecurity standards and regulations, including the Cyber Resilience Act (CRA).
  • Specify, design, review, and evolve system software security architectures and implementations.
  • Conduct threat analysis, attack surface analysis, and security risk assessments for embedded systems and software platforms.
  • Define security requirements and establish traceability from security objectives to implementation and verification activities.
  • Integrate security-by-design principles throughout the complete product lifecycle.
  • Support secure development lifecycle (SDL) activities, including architecture reviews, security assessments, and security verification.
  • Analyze security vulnerabilities and defects, perform root cause analysis, and define appropriate mitigations and countermeasures.
  • Define and review security mechanisms such as secure boot, secure update, cryptographic services, key management, device identity, and root-of-trust solutions.
  • Translate cybersecurity standards, regulatory requirements, and industry best practices into practical engineering requirements and architectures.
  • Support compliance activities related to product security regulations and standards, including the Cyber Resilience Act (CRA), through security documentation, evidence generation, and risk management activities.
  • Drive adoption of security best practices across project teams and product lines.
  • Serve as a technical interface to customers, evaluation labs, compliance experts, and product development teams.
  • Contribute to the continuous improvement of NXP’s product security methodologies, frameworks, and processes.

Requirements

  • Master’s degree, PhD, or equivalent experience in Computer Science, Cybersecurity, Software Engineering, Electronics, Mathematics, or a related technical field., * Strong background in cybersecurity and software security architecture.
  • Strong understanding of SoC software stacks, middleware, firmware, operating systems, and applications.
  • Familiarity with security technologies such as: Secure Boot, Cryptography and Key Management, Device Identity and Root of Trust, Firmware Protection, Secure Update Mechanisms.
  • Familiarity with cybersecurity regulations, standards, and certification schemes applicable to embedded and connected products.
  • Strong analytical skills and ability to address complex system-level security challenges.
  • Independent working style with a willingness to listen, learn, and adapt.
  • Excellent communication and stakeholder management skills.
  • Strong team player with the ability to work effectively in global and cross-functional environments., * Extensive experience in embedded software development using C, Rust, and/or assembly language.
  • Experience in AI security is a must.
  • Experience with threat modelling, security risk assessment, and secure system design.

Benefits & conditions

  • NXP provides market competitive compensation according to the benchmarking of the electronic and semiconductor industry.
  • Due to the Austrian Equal Treatment Act we are obligated to state the employment group of our applicable collective bargaining agreement (CBA) “Kollektivvertrag fĂźr Angestellte Gewerbe und Handwerk und in der Dienstleistung”, this position (fulltime) is graded in Employment Group V after 6 years.
  • Your individual experiences and expectations will be considered in the application process.
  • Moreover, we provide attractive benefits to our employees like home office, flexible working time, meal benefits and more.

Apply for this position

This job is hosted externally. Click below to view the full posting and apply.

Apply on devjobs.at
Prepare application

Good distractions

Talks and stories from around this role — technically off-topic, practically not.

1:19 min

Advancing autonomous driving capabilities with specialized software talent

Katrin Lehmann Katrin Lehmann +1 ¡ Coffee With Developers

2:19 min

Orchestrating over-the-air firmware updates for vehicle modules

Denis Grahovac ¡ World Congress 2021

1:18 min

Implementing routing middleware for seamless multi-fragment origination

Igor Minar Igor Minar +1 ¡ World Congress 2025

3:01 min

Transitioning into the automotive artificial intelligence safety field

Tillman Radmer +2 ¡ World Congress 2021

2:20 min

Utilizing custom firmware for variable torque manipulation

Daniel Meilak Daniel Meilak +1 ¡ World Congress 2026 Europe

4:19 min

Securing API requests with frontend interceptors and backend middlewares

Bartosz Pietrucha ¡ JS Congress

Videos

See all

Related articles

See all