Building a future where transportation is shared, affordable and carbon-free. Join us! www.li.me/careers
Senior Hardware Security Engineer
Location
United Kingdom
Posted
71 days ago
Salary
0
Seniority
Senior
Job Description
Senior Hardware Security Engineer
Lime
• Security Architecture & Design: Contribute to hardware security architecture reviews for product platforms, providing security input on secure boot chains, hardware roots of trust, trusted execution environments (TEEs), and cryptographic implementations. • Threat Modeling & Risk Assessment: Conduct threat modeling exercises for hardware and firmware components, identifying attack surfaces across the product stack. • Security Assessment & Testing: Perform hands-on security assessments of hardware platforms, including side-channel analysis, fault injection testing, firmware reverse engineering, and debug interface evaluation. • Firmware & Platform Security: Develop firmware hardening recommendations and work with firmware engineering teams to implement secure boot, firmware update integrity, tamper detection and runtime protection mechanisms across product platforms. • Incident Response & Forensics: Participate in incident response efforts for hardware and firmware security incidents, contributing to investigation, root-cause analysis, and corrective action to prevent recurrence. • Tooling & Automation: Develop and maintain automated security tooling for hardware and firmware analysis, vulnerability scanning, and compliance validation. • Standards, Policy & Compliance: Contribute to hardware security standards, policies, and procedures that align with industry frameworks. • Collaboration & Mentorship: Serve as a subject matter expert on hardware security within the product security team, providing technical guidance to engineering peers. • Stay Ahead of Threats: Continuously research and evaluate emerging hardware security threats, technologies, and best practices to recommend new approaches and solutions. • Travel: This role requires up to 10% of travel within EMEA and North America
Job Requirements
- 5+ years of experience in a dedicated hardware or firmware security engineering role, with a strong focus on embedded systems, platform security, or product security.
- Demonstrated expertise across hardware security domains, with strong proficiency in at least one or two specialized sub-disciplines:
- Firmware security: Secure boot, trusted execution environments (TEEs), firmware integrity, secure update mechanisms
- Platform security: Hardware root of trust, TPM/secure enclaves, cryptographic implementations, SoC security properties
- Physical attack assessment: Fault injection, side-channel analysis, hardware reverse engineering, debug interface security
- Embedded systems security: Microcontroller hardening, RTOS security, hardware-software interface security
- Working familiarity across other hardware security domains and eagerness to grow breadth over time
- Practical experience with hardware security testing methodologies, tools, and lab equipment. Ability to perform black-box security characterization, vulnerability assessment, and security validation of hardware components and firmware.
- Excellent analytical and problem-solving skills with a proven ability to troubleshoot complex hardware security issues and propose effective, practical solutions that balance security with product requirements.
- Strong written and verbal communication skills, with the ability to articulate complex technical hardware security concepts to both technical and non-technical audiences, including engineering peers and product stakeholders.
- Ability to work independently and as part of a lean, highly collaborative team, comfortable with remote work environments and cross-functional collaboration with firmware, hardware, and platform engineering teams.
- Experience or comfort working in a dynamic, fast-paced startup or high-growth environment where you'll need to build processes and programs from the ground up.
- Passion for hardware security and a commitment to staying current with the latest hardware security trends, attack techniques, and defensive technologies.
- Bachelor's degree in Computer Engineering, Electrical Engineering, Computer Science, Cybersecurity, or a related field is preferred but not required. Relevant industry certifications such as GIAC Reverse Engineering Malware (GREM), Offensive Security Certified Professional (OSCP), or hardware-focused security certifications are a plus.
Benefits
- Security Architecture & Design: Contribute to hardware security architecture reviews for product platforms, providing security input on secure boot chains, hardware roots of trust, trusted execution environments (TEEs), and cryptographic implementations. Evaluate silicon and SoC security properties through vendor assessment, datasheet review, black-box testing, and security characterization of off-the-shelf and custom components. Research and evaluate emerging hardware security technologies (e.g., confidential computing, post-quantum cryptographic hardware, hardware-backed attestation) and provide recommendations to the team.
- Threat Modeling & Risk Assessment: Conduct threat modeling exercises for hardware and firmware components, identifying attack surfaces across the product stack. Perform security risk assessments for new and existing hardware designs, quantifying risk and recommending mitigations with clear priority and business context. Communicate hardware security tradeoffs clearly to engineering peers and product stakeholders.
- Security Assessment & Testing: Perform hands-on security assessments of hardware platforms, including side-channel analysis, fault injection testing, firmware reverse engineering, and debug interface evaluation. Contribute to building and maintaining a hardware security testing methodology and lab environment, including tooling for automated and repeatable assessments. Participate in vulnerability management for hardware and firmware components, including coordinating disclosure, remediation tracking, and validation of fixes.
- Firmware & Platform Security: Develop firmware hardening recommendations and work with firmware engineering teams to implement secure boot, firmware update integrity, tamper detection and runtime protection mechanisms across product platforms. Contribute to security standards for embedded systems, microcontrollers, and platform firmware across the product portfolio. Work with platform teams to review hardware-software interfaces (e.g., UEFI, BMC, TPM interactions) for security concerns.
- Incident Response & Forensics: Participate in incident response efforts for hardware and firmware security incidents, contributing to investigation, root-cause analysis, and corrective action to prevent recurrence.
- Tooling & Automation: Develop and maintain automated security tooling for hardware and firmware analysis, vulnerability scanning, and compliance validation. Contribute to defining security gates within CI/CD and build pipelines for firmware, working with DevOps and firmware teams to support automated enforcement before production release.
- Standards, Policy & Compliance: Contribute to hardware security standards, policies, and procedures that align with industry frameworks (e.g., NIST SP 800-193, Common Criteria, FIPS 140, IEC 62443). Support product security certifications and compliance efforts where hardware security attestation is required. Stay current with the evolving hardware threat landscape, supply chain security concerns, and regulatory requirements.
- Collaboration & Mentorship: Serve as a subject matter expert on hardware security within the product security team, providing technical guidance to engineering peers. Share knowledge and help develop junior team members' hardware security skills through assessment reviews and design reviews. Help drive adoption of hardware security best practices within your project scope through clear documentation and hands-on support.
- Stay Ahead of Threats: Continuously research and evaluate emerging hardware security threats, technologies, and best practices to recommend new approaches and solutions.
- Travel: This role requires up to 10% of travel within EMEA and North America
Related Guides
Related Categories
Related Job Pages
More Security Engineer Jobs
Branded Service Technician- Miami, FL
Electrolux GroupAs part of Electrolux, we will continuously invest in you and your development. There are no barriers to where your career could take you. Find more on: Electrolux APAC & MEA
Join us to create change and have an impact in homes around the world. At Electrolux Group, a leading global appliance company, we strive every day to shape living for the better for our consumers, our people and our planet. We share ideas and collaborate so that together, we can develop solutions that deliver enjoyable and sustainable living. Come, join us as you are. We believe diverse perspectives make us stronger and more innovative. In our global community of people from 100+ countries, we listen to each other, actively contribute and grow together. Join us in our exciting quest to build the future home! Where you’ll be: This position will be fully remote within the Miami, FL area. About the Role: The Branded Service Technician is a key member of Electrolux’s Consumer Direct Interaction team, providing in‑home appliance repair and maintenance for Electrolux and Frigidaire products. In this role, you’ll serve as a brand ambassador—traveling to customers’ homes to troubleshoot, diagnose, and repair appliances using company‑provided tools and mobile systems. Success requires strong mechanical aptitude, clear communication, customer‑focused service, and the ability to work independently while upholding high quality and safety standards. Key Responsibilities: - Diagnose and repair Electrolux and Frigidaire appliances, including cooking, refrigeration, dish care, and laundry products - Aim to complete repairs in a single visit while providing a positive consumer experience - Use company systems and mobile applications to manage service tickets, order parts, document repairs, and complete required training - Maintain accurate inventory of parts on the assigned service vehicle and support cost‑efficient parts usage - Perform preventive maintenance and repair work in accordance with company procedures and technical standards - Ensure the service vehicle and company‑provided tools remain clean, organized, and properly maintained - Follow safety guidelines, company policies, and industry best practices during all service interactions - Represent the Electrolux brand professionally, including proper use and care of company uniforms Minimum Qualifications: - 2+ years of experience in electro‑mechanical repair or equivalent technical education - High school diploma or GED - Valid driver’s license with a driving record that meets Electrolux policy requirements - Strong mechanical aptitude with the ability to troubleshoot and repair complex systems - Professional communication skills and the ability to interact effectively with consumers - Ability to work independently and manage daily service schedules - Experience with appliance repair (preferred); EPA refrigeration license for sealed‑system repair is a plus Physical Requirements: - The employee frequently is required to drive, walk, sit, and stand. The employee must occasionally lift up to 50 lbs. and/or move up to 100 lbs. Specific vision abilities required by this job include close vision and the ability to adjust focus. Reasonable accommodations may be made to enable individuals with disabilities to perform the essential functions of the job. Benefits include: - Medical benefits start day one (including vision, dental, life) - This position offers compensation starting from the moment you depart your home for your first customer appointment until the time you get back home at the end of the day - Company provided van, iPad, iPhone, tools, and uniforms - Retirement Savings Plan (401(k)) with relevant company contribution - 3 Weeks’ Vacation - Discounts on our award-winning Electrolux products and services - Extensive learning opportunities and flexible career path Please be advised that we are unable to offer visa sponsorship or relocation for this position at this time. Find more on: Electrolux Group North America: https://www.linkedin.com/company/electrolux/life/northamerica/ Electrolux Group Careers: https://career.electroluxgroup.com/global/en Electrolux Consumer Products, Inc. is an Equal Opportunity Employer (EOE). Qualified applicants are considered for employment without regard to age, race, color, religion, sex, national origin, sexual orientation, disability, or veteran status. If you need assistance or an accommodation during the application process because of a disability, it is available upon request through hrsnorthamerica@electrolux.com. The company is pleased to provide such assistance, and no applicant will be penalized as a result of such a request.
Security Engineer
Zoom Video CommunicationsZoom Video Communications was founded in 2011 to revolutionize the way teams communicate with its software-based conference room solution. Across all devices an
What you can expect The Security Engineer is responsible for security design and reviews across our products and services. The ideal candidate brings broad technical expertise and hands-on experience in end-to-end product security. In this role, you’ll collaborate with engineering teams to design, implement, and validate secure solutions. You’ll serve as a trusted security advisor, guiding architecture and reviewing implementation, particularly for new features or security enhancements. This is a unique opportunity to work with cutting-edge cloud and security technologies while making a direct impact on Zoom’s platform. About the Team The Security Architecture team is dedicated to ensuring Zoom releases and deploys secure products. We work with diverse engineering, compliance and DevOps teams across the organization to meet security goals and maintain compliance with established SLAs. Responsibilities - Being a security subject-matter expert, guide engineering teams in end-to-end secure system design and implementation. - Conducting threat modeling, architecture review, security code review, security assessment, and security testing (web application, native application, web services, cloud-based services, and infrastructure assessments). - Performing cloud infrastructure reviews from a security perspective; the primary focus will be on AWS permissions and configuration issues within components like IAM and S3. - Performing an in-depth security review of new Zoom features and functionalities. This includes identifying security vulnerabilities such as those in the OWASP Top Ten, common issues from the NVD, and risks like RCE. It also involves reviewing Java or Python code and verifying security posture through manual and automated testing using tools like Burp Suite and Coverity. - Identifying gaps in existing cloud security architecture design/configuration, recommend changes or enhancements (authentication, authorization, network segmentation, container configuration, bastion host setup, etc.). - Providing hands on security training and secure coding best practices to engineering teams. What we’re looking for - Have obtained a Bachelor's degree in Computer Science, Information Science, Cyber Security, Computer or Electrical Engineering (or similar field), and 5+ years in security. - Have extensive experience in security testing in various environments, including assessing the security posture of web applications, native applications, distributed systems, and cloud infrastructure such as AWS. Focus on securing web services, infrastructure, deployment, and platform core services. - Possess a solid understanding of software security architecture, design, threat modeling, secure code review, cryptography, and the SDLC. Ability to clearly communicate best practices and effective mitigations for application security, particularly SDLC exceptions. - Have hands on security experience working with AWS and common service components within AWS. Ability to identify security gaps in the overall design as well as configuration issues in individual components. - Have in-depth knowledge of network based, system level, and application layer attacks and mitigation methods. - Have good knowledge of technology and security topics including network and application security (OWASP), infrastructure hardening, security baselines, web server, database security and applied cryptography. - Have good development experience in one or more of the programming languages and platforms such as Java is required. Salary Range or On Target Earnings: Minimum: $98 900,00 Maximum: $228 700,00 In addition to the base salary and/or OTE listed Zoom has a Total Direct Compensation philosophy that takes into consideration; base salary, bonus and equity value. Note: Starting pay will be based on a number of factors and commensurate with qualifications & experience. We also have a location based compensation structure; there may be a different range for candidates in this and other locations At Zoom, we offer a window of at least 5 days for you to apply because we believe in giving you every opportunity. Below is the potential closing date, just in case you want to mark it on your calendar. We look forward to receiving your application! Anticipated Position Close Date: 04/13/26 Ways of Working Our structured hybrid approach is centered around our offices and remote work environments. The work style of each role, Hybrid, Remote, or In-Person is indicated in the job description/posting. Benefits As part of our award-winning workplace culture and commitment to delivering happiness, our benefits program offers a variety of perks, benefits, and options to help employees maintain their physical, mental, emotional, and financial health; support work-life balance; and contribute to their community in meaningful ways. Click Learn for more information. About Us Zoomies help people stay connected so they can get more done together. We set out to build the best collaboration platform for the enterprise, and today help people communicate better with products like Zoom Contact Center, Zoom Phone, Zoom Events, Zoom Apps, Zoom Rooms, and Zoom Webinars. We’re problem-solvers, working at a fast pace to design solutions with our customers and users in mind. Find room to grow with opportunities to stretch your skills and advance your career in a collaborative, growth-focused environment. Our Commitment At Zoom, we believe great work happens when people feel supported and empowered. We’re committed to fair hiring practices that ensure every candidate is evaluated based on skills, experience, and potential. If you require an accommodation during the hiring process, let us know—we’re here to support you at every step. If you need assistance navigating the interview process due to a medical disability, please submit an Accommodations Request Form and someone from our team will reach out soon. This form is solely for applicants who require an accommodation due to a qualifying medical disability. Non-accommodation-related requests, such as application follow-ups or technical issues, will not be addressed. #LI-Remote
Data Privacy and Cybersecurity Lawyer
AxiomWhere legal teams can find the right talent for everything from routine in-house tasks to complex outside counsel work.
• Provide legal advice and counsel on privacy compliance requirements and opportunities for improvement of privacy policies • Work with and advise business and compliance clients directly, as well as providing guidance and practical solution • Maintain strong, collaborative relationships with internal business partners and stakeholders. • Experience providing legal advice regarding privacy, privacy impact assessments, data-sharing, and related issues
Contract Specialist - 100% Remote!
Converge Technology SolutionsConverge Technology Solutions provides specialized IT services tailored to meet customers' individual needs. The company offers a wide range of services, including advanced analyti
Practice: Legal Position Title: Contract Specialist Position Location: Remote Reports to: Director or Manager We are seeking a detail-oriented and proactive Contract Specialist to support our legal team with information technology contract review and negotiation. This role is responsible for reviewing and negotiating a variety of IT professional services agreements, including Master Services Agreements (MSAs), Statements of Work (SOWs), Master Subcontractor Agreements, and Non-Disclosure Agreements (NDAs), as well as assisting with completion of information security due diligence requests. The ideal candidate will have prior experience in contract review and negotiation, possess strong analytical skills, and be comfortable working independently in a fast-paced environment. Essential Duties and Responsibilities - Review, draft and negotiate master agreements and transactional contracts involving equipment sales and IT professional services, software licenses, and subscription-based offerings. Contracts may include reseller agreements, master services agreements, statements of work, proposals, nondisclosure agreements, referral agreements, government contracts, and other contracts supporting the legal team as needed. - Ensure contractual terms and conditions are consistent with established company policy and risk profile. Ensure compliance obligations are managed across the contract chain, documented, and communicated to appropriate stakeholders. - Provide legal/risk summaries, draft corporate policies and governance documents, and participate in other projects as directed. - Prepare responses to information security due diligence requests. - Maintain organized records of contract versions, approvals, and correspondence. - Assist the legal team with tasks supporting mergers and acquisitions activity. - Perform legal review and risk assessments of competitive solicitations. - The candidate must show flexibility and resilience, including ability to adapt to changing/uncertain business surroundings, and ability to manage workload in a remote environment while coordinating with multiple stakeholders. - Handle general corporate legal duties as assigned and the ability to prioritize and work under tight deadlines. - Additional duties as assigned. Knowledge, Skills, and Abilities - Strong understanding of contracting and negotiation concepts, practices, procedures and risk mitigation strategies. - Ability to communicate clearly verbally and in writing with Pellera personnel as well as third parties and to effectively coordinate with the sales team. - Must be well organized, self-motivated with excellent attention to detail. - A positive and professional acumen is also of critical importance. - Demonstrate strong leadership and negotiation skills. - Effectively identify, manage, and complete projects. Education and/or Experience - Minimum 5 years of experience reviewing and negotiating information technology contracts. - Experience in information technology or government contracting and competitive procurements is strongly preferred. - Familiarity with data privacy, intellectual property, and indemnification clauses. - Bachelor’s degree in Business, Legal Studies, or a related field (JD not required). Environmental Factors and Physical Requirements: This is a work-from-home position anywhere in the US supporting CT & ET times zones. - Physical environmental factors of this position include those found in typical business office environment or home office environment. - Requires use of general office equipment and personal computer equipment. - Ability to travel. Various means of travel may be required, including auto and air travel. This position requires travel: Rarely - May be required to work irregular schedules including but not limited to as applicable: Nights, weekends, holidays, on-call, and/or overtime. Pellera provides equal employment opportunities to all employees and applicants for employment and prohibits discrimination and harassment of any type without regard to race, color, religion, age, sex, national origin, disability status, genetics, protected veteran status, sexual orientation, gender identity or expression, or any other characteristic protected by federal, state or local laws. This policy applies to all terms and conditions of employment, including recruiting, hiring, placement, promotion, termination, layoff, recall, transfer, leaves of absence, compensation and training.



