Product Security Engineer
Listed on 2026-06-26
-
IT/Tech
Cybersecurity, Systems Engineer
About 1X
We’re building humanoid robots that work in home - doing the chores, handling the tasks, and giving people their time back. Simple, but it’s not.
To do this right, we have to solve robotics, AI, manufacturing - at the same time, at scale, in a form factor that has to be safe enough to live with your family. If you’re inspired by this, you’ll thrive here. We’ve been at this since 2014 and we’re at the point where the hard problems are behind us and the hard work is in front of us.
NEO is our flagship - a home robot designed to move, learn, and operate in the real world alongside real people. We’re not demoing it - we’re shipping it. We’re excited to meet you, if this excites you.
If you’ve spent your career working on problems that matter and want to see them actually reach the world - this is that moment. We’re scaling, we’re hiring with intention, and we need people who want to build something that will genuinely change how humans spend their time - safely creating abundance for all.
About the TeamThe Security Engineering team is responsible for protecting our robots, infrastructure, cloud environments, and internal platforms that power 1X. We partner closely with Robotics, AI, Infrastructure, Manufacturing, and Enterprise Engineering teams to embed security directly into how we build and operate humanoid robotics systems.
The Product Security team focuses on the end-to-end security of NEO itself, the operating system, the cryptographic systems that establish trust, the cloud services NEO talks to, and the pipelines that build and sign everything in between.
Your CharterSecure NEO end-to-end. You will analyze the system services, operating systems, cryptographic infrastructure, networks, and cloud services that power 1X humanoid robots, identify weaknesses before adversaries do, and partner with engineering teams to design and ship the fixes. This role is critical to ensuring that a robot operating inside someone’s home can be trusted by its owner, by its operators, and by us.
KeyOutcomes
Audit code and systems across NEO’s stack from boot loader and Linux userspace to cloud services and CI/CD pipelines to identify and drive remediation of security vulnerabilities
Lead security initiatives end-to-end, serving as the technical point of contact and partnering with Robotics, AI, Infrastructure, and Manufacturing teams to design secure-by-default systems
Conduct penetration tests, threat models, and risk assessments against NEO and its supporting infrastructure, prioritizing the issues that matter most
Design and contribute production code for security-critical components such as secure boot chains, code-signing pipelines, attestation flows, and hardened system services
Help define the security architecture for how humanoid robots are provisioned, deployed, updated, and operated at scale
Strong investigative and analytical problem-solving skills; the ability to look at an unfamiliar system and find the weak point
Hands-on experience with secure architecture design across at least one of:
Linux/embedded systems
cryptography and PKI
cloud and CI/CD infrastructure
Strong programming and code-auditing skills in C, C++, Rust, Go, or Python
Excellent systems-thinking across hardware, firmware, software, and cloud boundaries
Strong written and spoken communication, and the ability to drive remediation across team and vendor boundaries
5+ years of experience in product security, offensive security, or a closely related engineering role
Strong experience with Linux operating system internals and security mechanisms (name spaces, syscall filtering, Linux systems hardening, least-privilege service design)
Proficiency in software development and code auditing, with shipping experience in C, C++, Rust, Go or Python
Penetration testing experience against real production systems
Security expertise in one or more of:
Offensive security against Linux-based devices vulnerability research, exploit development, and end-to-end attack chains against embedded or production systems
Secure boot, verified boot, and Trusted Execution Environments (e.g., OP-TEE, fTPM)
Cryptography, PKI design, key…
(If this job is in fact in your jurisdiction, then you may be using a Proxy or VPN to access this site, and to progress further, you should change your connectivity to another mobile device or PC).