{"schemaVersion":"jobsearcher.job.v1","id":"ec217d4cc72e0efc7c0e164f","url":"https://jobsearcher.com/jobs/ec217d4cc72e0efc7c0e164f","canonicalUrl":"https://jobsearcher.com/jobs/ec217d4cc72e0efc7c0e164f","title":"Lead SoC Security Software Engineer","description":"Lead SoC Security Software Engineer\nSummary\n\nWe're a well-funded, stealth startup building a new end-to-end personal computing platform based on our own custom silicon. As our Lead SoC Security Software Engineer, you will own the software foundation for our hardware security. You will operate at the intersection of firmware, silicon, and cryptography, architecting the systems that keep our platform private and tamper-proof. You will bridge the gap between hardware primitives and high-level software, ensuring our Root of Trust, secure media pathways, and secrets storage are secure by design.\n\nResponsibilities\nRoot of Trust & Secure Boot: Architect and implement the entire chain of trust from power-on, including TF-A, secure boot sequences, and hardware-backed verification.\nSecure Subsystem & Cryptography: Build the firmware for our Secure Subsystem / TEE to manage sensitive keys, execute cryptographic operations in isolation, and handle secure provisioning.\nEncrypted Media Pipelines: Design and enforce end-to-end encrypted pathways for high-value media, integrating DRM and HDCP frameworks while maintaining memory isolation from the application processor.\nHardware/Software Co-Design: Work directly with the silicon and hardware teams to define security requirements for IP blocks, including OTP/eFuses, PUF, and crypto accelerators.\nVulnerability Hardening: Proactively model threats and implement defenses against physical and logical attacks, including side-channel analysis and fault injection, to ensure our product stays resilient.\n\nMinimum Requirements\n6+ years in SoC/Embedded Security: Deep expertise in silicon-level security, firmware engineering, and building secure platforms.\nARM Architecture Experience: Hands-on experience with ARM v8/v9, ARM TrustZone, and low-level firmware integration (TF-A, OP-TEE).\nCryptography & Key Management: Practical experience implementing PKI, symmetric/asymmetric schemes, and hardware-based secret storage in production environments.\nLow-Level Software Fluency: Expert-level C or Rust programming for constrained environments; comfortable reading datasheets and debugging assembly.\n\nPreferred Qualifications\nExperience implementing secure display/video paths, DRM, or memory isolation primitives.\nExperience hardening firmware against physical side-channel and fault-injection attacks.\nBackground in Linux kernel security (dm-verity, module signing, hypervisors) or TEE development.\nExperience delivering firmware through the full silicon lifecycle, from tape-out and secure manufacturing to field deployment.\nFamiliarity with Linux kernel fundamentals, KVM, eBPF, and security modules.","company":"Anodize","rawCompany":"anodize","city":"Millbrae","state":"CA","isRemote":false,"isActive":false,"createdAt":"2026-09-04T10:33:25.332Z","occupations":[{"code":"15-1299.08","title":"Computer Systems Engineers/Architects","slug":"computer-systems-engineers-architects"},{"code":"15-1299.05","title":"Information Security Engineers","slug":"information-security-engineers"},{"code":"15-1252.00","title":"Software Developers","slug":"software-developers"}],"industries":[{"code":"541512","title":"Computer Systems Design Services","slug":"computer-systems-design-services"},{"code":"541511","title":"Custom Computer Programming Services","slug":"custom-computer-programming-services"},{"code":"513210","title":"Software Publishers","slug":"software-publishers"}],"jobPosting":{"@context":"https://schema.org","@type":"JobPosting","title":"Lead SoC Security Software Engineer","description":"Lead SoC Security Software Engineer\nSummary\n\nWe're a well-funded, stealth startup building a new end-to-end personal computing platform based on our own custom silicon. As our Lead SoC Security Software Engineer, you will own the software foundation for our hardware security. You will operate at the intersection of firmware, silicon, and cryptography, architecting the systems that keep our platform private and tamper-proof. You will bridge the gap between hardware primitives and high-level software, ensuring our Root of Trust, secure media pathways, and secrets storage are secure by design.\n\nResponsibilities\nRoot of Trust & Secure Boot: Architect and implement the entire chain of trust from power-on, including TF-A, secure boot sequences, and hardware-backed verification.\nSecure Subsystem & Cryptography: Build the firmware for our Secure Subsystem / TEE to manage sensitive keys, execute cryptographic operations in isolation, and handle secure provisioning.\nEncrypted Media Pipelines: Design and enforce end-to-end encrypted pathways for high-value media, integrating DRM and HDCP frameworks while maintaining memory isolation from the application processor.\nHardware/Software Co-Design: Work directly with the silicon and hardware teams to define security requirements for IP blocks, including OTP/eFuses, PUF, and crypto accelerators.\nVulnerability Hardening: Proactively model threats and implement defenses against physical and logical attacks, including side-channel analysis and fault injection, to ensure our product stays resilient.\n\nMinimum Requirements\n6+ years in SoC/Embedded Security: Deep expertise in silicon-level security, firmware engineering, and building secure platforms.\nARM Architecture Experience: Hands-on experience with ARM v8/v9, ARM TrustZone, and low-level firmware integration (TF-A, OP-TEE).\nCryptography & Key Management: Practical experience implementing PKI, symmetric/asymmetric schemes, and hardware-based secret storage in production environments.\nLow-Level Software Fluency: Expert-level C or Rust programming for constrained environments; comfortable reading datasheets and debugging assembly.\n\nPreferred Qualifications\nExperience implementing secure display/video paths, DRM, or memory isolation primitives.\nExperience hardening firmware against physical side-channel and fault-injection attacks.\nBackground in Linux kernel security (dm-verity, module signing, hypervisors) or TEE development.\nExperience delivering firmware through the full silicon lifecycle, from tape-out and secure manufacturing to field deployment.\nFamiliarity with Linux kernel fundamentals, KVM, eBPF, and security modules.","datePosted":"2026-09-04T10:33:25.332Z","dateModified":"2026-09-04T10:33:25.332Z","hiringOrganization":{"@type":"Organization","name":"Anodize","sameAs":"https://jobsearcher.com"},"jobLocation":{"@type":"Place","address":{"@type":"PostalAddress","addressLocality":"Millbrae","addressRegion":"CA","addressCountry":"US"}},"identifier":{"@type":"PropertyValue","name":"JobSearcher","value":"ec217d4cc72e0efc7c0e164f"},"url":"https://jobsearcher.com/jobs/ec217d4cc72e0efc7c0e164f"}}