Security Firmware Engineer
Listed on 2026-05-20
-
Software Development
Embedded Software Engineer
Job Description
We are seeking a Security Firmware Engineer to join the Sandisk Security Platform team and contribute to the development of firmware‑level security features across our product lines.
This role requires hands‑on experience with security firmware and/or applied cryptography. It is suitable for early‑career engineers with direct security firmware exposure as well as mid‑level engineers who have already delivered security or crypto‑related features in production firmware.
The engineer will work closely with firmware, silicon, and security architecture teams on secure boot, secure update, and device attestation mechanisms, contributing across design, implementation, debug, and validation.
Essential Duties and Responsibilities- Design, implement, and integrate cryptographic functionality and security‑critical firmware features, such as secure boot, secure update, encryption, attestation, and key management.
- Collaborate with firmware, hardware, and system security architects to define and implement trust boundaries and root‑of‑trust designs.
- Debug, optimize, and validate security firmware on Simulation/ ASIC / FPGA platforms.
- Investigate security‑related firmware issues, perform root‑cause analysis, and drive fixes to closure.
- Support security validation, vulnerability testing, and certification or audit activities as required.
- Participate in secure development lifecycle activities, including threat modeling, security design reviews, and secure code reviews.
- Bachelor’s or Master’s degree in Computer Engineering, Electrical Engineering, Computer Science
, or related field. - 2–6 years of embedded firmware experience
, with demonstrated hands‑on experience in at least one of the following
: Security firmware features (e.g., secure boot, authentication, secure update, device identity, key management), or Implementation or integration of cryptographic functionality in embedded or firmware environments. - Strong proficiency in C and/or C++ and/or RUST for low‑level firmware development.
- Experience debugging firmware using JTAG, logs, hardware bring‑up tools, or simulators
. - Practical understanding of security fundamentals
:- Roots of trust and boot chains
- Cryptographic primitives (hashes, symmetric/asymmetric crypto, certificates)
- Firmware trust boundaries and privilege levels
- Ability to reason about security impact, correctness, and failure modes in low‑level systems.
- Experience with secure boot, measured boot, or attestation implementations.
- Familiarity with key provisioning, secure storage, or certificate chains.
- Experience with SoC architecture, ROM/FW interaction, or storage firmware.
Exposure to security vulnerabilities and mitigations in embedded systems. - Experience with Python or scripting for security testing, validation, or tooling.
- Familiarity with secure coding guidelines and industry best practices.
Sandisk is committed to providing equal opportunities to all applicants and employees and will not discriminate against any applicant or employee based on race, color, ancestry, religion (including religious dress and grooming standards), sex (including pregnancy, childbirth or related medical conditions, breastfeeding or related medical conditions), gender (including a person’s gender identity, gender expression, and gender‑related appearance and behavior, whether or not stereotypically associated with the person’s assigned sex at birth), age, national origin, sexual orientation, medical condition, marital status (including domestic partnership status), physical disability, mental disability, medical condition, genetic information, protected medical and family care leave, Civil Air Patrol status, military and veteran status, or other legally protected characteristics.
We also prohibit harassment of any individual on any of the characteristics listed above. Our non‑discrimination policy applies to all aspects of employment. We comply with the laws and regulations set forth in the Know Your Rights:
Workplace Discrimination is Illegal poster. Our pay transparency policy is available here.
Sandisk is committed to offering…
(If this job is in fact in your jurisdiction, then you may be using a Proxy or VPN to access this site, and to progress further, you should change your connectivity to another mobile device or PC).