Product Security Engineer

🕒 vor 4 Tagen

🗣️🇺🇸🇬🇧 Englisch erforderlich

Cyber Security

Linux

RTOS

Jetzt Bewerben
Ähnliche Remote-Jobs finden

📊 Überprüfen Sie Ihre Lebenslauf-Bewertung für diese Stelle

Verbessern Sie Ihre Chancen auf ein Vorstellungsgespräch, indem Sie Ihre Lebenslauf-Bewertung vor der Bewerbung überprüfen.

Logo of OKSI

OKSI

51 - 200 Mitarbeiter

Gegründet 1991

🎖️ Verteidigung

🚀 Luft- und Raumfahrt

🤖 Künstliche Intelligenz

💰 €206.500 Grant - Opto-Knowledge Systems im 2024-01

Defense • Aerospace • Artificial Intelligence

OKSI ist ein auf Verteidigung und Luftfahrt spezialisiertes Unternehmen für Sensorik und Autonomie, das elektro-optische/Infrarot-(EO/IR)-Sucher, Präzisionsleitsysteme, Navigation ohne GPS (z. B. OMNInav) sowie Hardware und Software mit maschinellem Lernen entwickelt. Seit über 35 Jahren produziert das Unternehmen fortschrittliche Lösungen für Computer Vision und KI/ML, Modellierungs- und Simulationswerkzeuge sowie einzigartige Sensorpakete für Hochgeschwindigkeitsereignisse, Hyperschall, Verbrennungsdiagnostik, Raum- und Erdbeobachtung sowie Umweltsensorik. OKSI bedient in erster Linie Regierungs- und Verteidigungskunden, hält über 450 Regierungsverträge und bietet Fähigkeiten für Autonomie, präzise Führung und Umweltüberwachung.

Beschreibung

• Lead threat modeling and security analysis across hardware, firmware, and software throughout the product lifecycle. • Produce threat matrices, risk assessments, and security requirements traceable through design reviews and release gates. • Own CVE tracking, vulnerability management, and security baseline compliance across the product portfolio. • Define and implement hardening standards for embedded Linux, RTOS, and bare-metal environments. • Establish code signing policies, secure boot chain integrity, and validation procedures. • Partner with IT and Engineering to architect and maintain the product signing and key management infrastructure using HSMs, KMS, or equivalent systems. • Own OKSI's anti-tamper posture aligned with DoD policy (DoDI 5200.39) and applicable Program Protection Plan requirements. • Define IP protection strategy spanning software binary protection, hardware design protection, firmware confidentiality, and cryptographically bound license enforcement. • Serve as OKSI's product security authority. • Establish company-wide standards, lead design reviews, provide security sign-off at program milestones, and embed security requirements into the Systems Engineering process. • Provide guidance and training to Engineering, IT, and Operations teams on secure design principles.

🎯 Anforderungen

• 7+ years of product security, embedded security, or cybersecurity systems engineering in a defense, aerospace, or advanced technology environment. • Demonstrated expertise leading threat modeling, security risk assessments, and vulnerability analysis across hardware, firmware, and software domains — including production of threat matrices, attack surface analyses, and traceable mitigation plans. • Hands-on experience defining and implementing security policies and standards (not just executing implementation tasks). You own the policy and architecture. • Working knowledge of secure boot architectures, anti-tamper techniques, and embedded platform security (e.g., UEFI Secure Boot, ARM TrustZone, fuse-based root-of-trust). • Practical experience with embedded Linux hardening: kernel configuration, module signing, RBAC/least-privilege access models, debug interface lockdown, and production credential management. • Experience with key management infrastructure and signing pipelines (HSMs, KMS, or equivalent) for firmware, software releases, and factory provisioning workflows. • Familiarity with DoD program protection and anti-tamper policy frameworks (DoDI 5200.39) and experience producing or reviewing Program Protection Plans (PPPs). • Strong written and verbal communication skills for policy documentation, risk reporting, and cross-functional leadership.

🏖️ Vorteile

• Medical, dental, and vision coverage fully paid by the employer for employees • Three weeks of vacation to start • Automatic company contribution to 401K – 5% of earned wages (no matching required) • Educational assistance and professional development opportunities

Jetzt Bewerben

Ähnliche Jobs

🕒 vor 4 Tagen

Humana

10.000+ Mitarbeiter

🏥 Gesundheitswesen

🛡️ Versicherung

⚕️ Krankenversicherung

Lead of Red Team at Humana responsible for managing red team operations and adversary emulation campaigns. Directing the development of AI-enhanced security practices and establishing red team methodologies.

🗣️🇺🇸🇬🇧 Englisch erforderlich

🕒 vor 4 Tagen

Grow Therapy

201 - 500

🏥 Gesundheitswesen

⚕️ Krankenversicherung

🏪 Marktplatz

Staff Engineer, Security architecting secure infrastructure at Grow Therapy. Leading multi-year roadmap for security initiatives to protect customers and empower engineering organization.

🇺🇸 Vereinigte Staaten – Remote

💵 $182.000 - $288.000 / Jahr

⏰ Vollzeit

🔴 Experte

👮‍♂️ IT-Sicherheitsingenieur

🗣️🇺🇸🇬🇧 Englisch erforderlich

🕒 vor 4 Tagen

Valiant Solutions

201 - 500

💼 Beratung

🎖️ Verteidigung

🔒 Cybersecurity

Security Architect leading the development of security architecture guidance for on-premise and cloud platforms at Valiant Solutions. Supporting cybersecurity design for a large government agency.

🇺🇸 Vereinigte Staaten – Remote

💵 $150.000 - $160.000 / Jahr

⏰ Vollzeit

🟠 Senior

🔴 Experte

👮‍♂️ IT-Sicherheitsingenieur

🗣️🇺🇸🇬🇧 Englisch erforderlich

🕒 vor 4 Tagen

Airtable

501 - 1000

🔌 API

🤝 B2B

⚡ Produktivität

Product Security Engineer at Airtable developing security frameworks for AI-powered offerings. Collaborating with teams to ensure secure code practices and manage security risk mitigation.

🇺🇸 Vereinigte Staaten – Remote

💵 $187.000 - $260.000 / Jahr

💰 Secondary Market im 2022-06

⏰ Vollzeit

🟡 Mittelstufe

🟠 Senior

👮‍♂️ IT-Sicherheitsingenieur

🦅 H1B-Visum-Sponsor

info

🗣️🇺🇸🇬🇧 Englisch erforderlich

🕒 vor 4 Tagen

Lexitas

501 - 1000

⚖️ Rechtswesen

☁️ SaaS

🤝 B2B

Vice President of Information Security building, scaling, and modernizing security programs at Lexitas. Collaborating with teams to leverage AI and improve security operations.

🇺🇸 Vereinigte Staaten – Remote

💵 $200.000 - $230.000 / Jahr

💰 Debt financing im 2016-10

⏰ Vollzeit

🔴 Experte

👮‍♂️ IT-Sicherheitsingenieur

🗣️🇺🇸🇬🇧 Englisch erforderlich