> Markdown version of [/jobs/ext/559191-senior-embedded-security-test-engineer](https://www.wearedevelopers.com/jobs/ext/559191-senior-embedded-security-test-engineer). Every page supports `.md` or `Accept: text/markdown`. Links point to the HTML versions so they work for humans too. Agent guide: [/agents.md](https://www.wearedevelopers.com/agents.md). --- # Senior Embedded Security Test Engineer - **Company:** Sigma Inc. - **Location:** United States (Remote available) - **Experience:** Expert - **Contract:** Permanent contract - **Skills:** Cyber Security, Dynamic Program Analysis, Firmware, Fuzz Testing, Hardware Interface Design, Software Security - **Published:** June 14, 2026 - **Apply:** https://www.indeed.com/viewjob?jk=c4e196b7961b86c6 ## About the Role Do you have experience in Test scanning software?, Security Testing / expert TARA Methodology / good Firmware Security Analysis / strong Cybersecurity Compliance / strong Communication Skills / strong, * Minimum 4 years of experience in cybersecurity testing * Hands-on experience in embedded/firmware security testing (fuzzing, static/dynamic analysis, hardware interfaces) * Practical knowledge of TARA methodology * Familiarity with CRA requirements and credible self-assessment processes * Ability to communicate security findings clearly and translate risks into actionable tasks * Upper-Intermediate or higher English proficiency * Willingness to travel for occasional customer visits 3-4 times per year WILL BE A PLUS: * Experience with industrial embedded platforms * Prior involvement in regulatory or certification audits (IEC 62443, ISO 21434, EN 303 645) * Ability to advise development teams on IEC 62443 control applicability, * Comfortable working in cross-functional teams * Effective communicator with customers and internal stakeholders ## Description If you are passionate about embedded systems and want to work on real products with a strong focus on security and compliance, this opportunity is for you. We are looking for Embedded Security Test Engineer to join our team and contribute to projects that demand high safety and reliability standards. Why join us? You will work on cutting-edge embedded solutions, gain expertise in EU Cyber Resilience Act compliance, and be part of a supportive international team. Customer Our customer is one of the leading manufacturers of industrial valves and pumps worldwide. They are currently focusing on enhancing product security to meet upcoming EU Cyber Resilience Act requirements, ensuring their solutions remain reliable and compliant in demanding industrial environments. Project The project centers on securing embedded products, with a primary goal of achieving compliance with the EU Cyber Resilience Act (CRA). You will be involved in firmware and software security testing, threat analysis, risk assessment, gap analysis, evidence collection, and preparing audit-ready documentation. The embedded solutions target applications involving the transportation of liquids, which demands robust safety and security measures. Key Technologies: TARA methodology, static/dynamic analysis tools, hardware interface testing., * Execute security testing of embedded firmware and software components * Lead and support the team in conducting TARA (Threat Analysis and Risk Assessment) for embedded products * Drive internal CRA self-assessment: gap analysis, evidence collection, and remediation guidance * Document test results, risk findings, and audit-ready artefacts * Build effective communication with the customer * Contribute to developing future cybersecurity competency within the company * Diversity of Domains & Businesses * Variety of technology * Health & Legal support * Active professional community * Continuous education and growing * Flexible schedule * Remote work * Outstanding offices (if you choose it) * Sports and community activities ## Related Videos - [Security Pitfalls for Software Engineers](https://www.wearedevelopers.com/videos/726-security-pitfalls-for-software-engineers) - [Thinking Differently - How to Make Money from Cyber Attacks & Cheats](https://www.wearedevelopers.com/videos/745-thinking-differently-how-to-make-money-from-cyber-attacks-cheats) - [How will artificial intelligence change the future of software testing?](https://www.wearedevelopers.com/videos/85-how-will-artificial-intelligence-change-the-future-of-software-testing) - [Playing Pong on a shoulder press machine](https://www.wearedevelopers.com/videos/100140-playing-pong-on-a-shoulder-press-machine) - [Cyber Security: Small, and Large!](https://www.wearedevelopers.com/videos/259-cyber-security-small-and-large) - [One Pipeline, Three Regulator - SBOM Compliance for the Developer](https://www.wearedevelopers.com/videos/100169-one-pipeline-three-regulator-sbom-compliance-for-the-developer) ## Related Articles - [Dev Digest 134 - Where pixels sing?](https://www.wearedevelopers.com/magazine/477-dev-digest-134-where-pixels-sing) - [Events like RSAC Get You CISOs. Developers Decide What Actually Gets Deployed.](https://www.wearedevelopers.com/magazine/693-events-like-rsac-get-you-cisos-developers-decide-what-actually-gets-deployed) - [Fully Remote Software Engineer Jobs](https://www.wearedevelopers.com/magazine/447-fully-remote-software-engineer-jobs) - [The 8 Best Code Testing Tools](https://www.wearedevelopers.com/magazine/402-the-8-best-code-testing-tools) - [9 Ways to Make Money Hacking](https://www.wearedevelopers.com/magazine/333-9-ways-to-make-money-hacking) - [Dev Digest 191: Malware interviews, EU ❤️ Open Source and Skilled Agents](https://www.wearedevelopers.com/magazine/645-dev-digest-191-malware-interviews-eu-open-source-and-skilled-agents)