Embedded Product Security Architect
Listed on 2026-02-06
-
IT/Tech
Cybersecurity, Systems Engineer
Overview
San Disk’s Security Platform team is looking for an enthusiastic product security architect to lead the security architecture function for the Flash business unit’s product portfolio. The security architecture team will be responsible for specifying the security solutions for Flash’s various product lines including enterprise, client, retail, mobile and automotive.
Responsibilities- Interface with ecosystem, product security assurance (PSA) and product teams to gather security requirements from customers, regulatory, compliance, risk, and industry trends.
- Define the roadmap for security architecture for Flash products, including firmware and hardware, and secure manufacturing infrastructure.
- Drive threat modeling and reference embedded security architectures for product lines and drive BU wide adoption.
- Architect interactions between various system components and peripherals.
- Contribute to requirements and strategy for verification and validation of security features.
- Lead internal security reviews of developed products (HW and/or embedded SW), and guide external evaluations and compliance activities.
- Collaborate with multi-functional teams, including hardware design, firmware development, and product security assurance, to ensure that security requirements are incorporated into product design and development processes.
- Follow and promote a secure design mindset from conception to productization across multiple projects and product lines.
- Keep abreast of emerging industry security standards and best practices to guide the team to raise the bar on security.
REQUIRED:
- Master/PhD degree in electrical engineering, computer science, or a related field, preferably with a specialization in embedded security (HW and/or SW)
- 10+ years of experience in embedded product security.
- Expert understanding of practical modern cryptography
- Proficient in security protocols, cryptography, authentication, attestation, authorization, secure boot, secure communication, digital signatures, certificates and post-quantum cryptography. Solid understanding of creating and validating threat models.
- Experience providing technical leadership and mentoring to other architects and/or development teams.
- Experience in driving FIPS, Common Criteria certification is an asset.
PREFERRED:
- Knowledge of data storage controllers' architectures is strongly preferred.
- Strong analytical, problem solving and creative thinking skills.
- Strong commitment to technical quality and proper documentation during all phases of design and development.
- Excellent communication skills; interact with suppliers, senior management, and other team members professionally, in writing, in person, and virtually, as necessary.
Sandisk is committed to providing equal opportunities to all applicants and employees and will not discriminate against any applicant or employee based on their race, color, ancestry, religion (including religious dress and grooming standards), sex (including pregnancy, childbirth or related medical conditions, breastfeeding or related medical conditions), gender (including a person’s gender identity, gender expression, and gender-related appearance and behavior, whether or not stereotypically associated with the person’s assigned sex at birth), age, national origin, sexual orientation, medical condition, marital status (including domestic partnership status), physical disability, mental disability, medical condition, genetic information, protected medical and family care leave, Civil Air Patrol status, military and veteran status, or other legally protected characteristics.
We also prohibit harassment of any individual on any of the characteristics listed above. Our non-discrimination policy applies to all aspects of employment. We comply with the laws and regulations set forth in the Know Your Rights:
Workplace Discrimination is Illegal poster. Our pay transparency policy is available here.
Sandisk thrives on the power and potential of diversity. As a global company, we believe the most effective way to embrace the diversity of our customers and communities is to mirror it from within. We believe the fusion…
(If this job is in fact in your jurisdiction, then you may be using a Proxy or VPN to access this site, and to progress further, you should change your connectivity to another mobile device or PC).