Hardware Security and Vulnerability Analyst - Remote

Remote Full-time
EOE Statement
We are an equal employment opportunity employer. All qualified applicants will receive consideration for employment without regard to race, color, religion, sex, national origin, disability status, protected veteran status or any other characteristic protected by law.

Description

Hardware Security and Vulnerability Analyst - Remote
• EndoSec LLC,
• Remote
• Preferred Skills: C/C++, Python, assembly, IDA Pro, Ghidra, FPGA, cryptography, hardware, embedded software, hardware security, reverse engineering, side channel attacks, fault injection
• Travel required up to 20%.

Full Time

Must be able to apply for and maintain a U.S. Government Security Clearance

Job Description

The EndoSec Hardware Security and Vulnerability Analyst is responsible for extracting and analyzing firmware and data at rest, identifying vulnerabilities in software, firmware, and hardware, as well as developing proof of concept exploits. The candidate will collaborate with other engineers and security experts to find and exploit security flaws and vulnerabilities within devices and designs as well as to build secure and efficient systems, contributing to our products and services' ongoing security and privacy. This is a remote position.

Key Responsibilities
• System Analysis: Analyze systems to understand functionality, failure points, and consequences of failure.
• Security Measure Circumvention: Bypass implemented security measures to gain access to sensitive data, including enabling debugging, forging or bypassing signatures, gaining elevated privileges, and simulating environmental and working conditions.
• Binary Code Extraction and Analysis: Extract firmware, executables, and other sensitive data from embedded systems and analyze the extracted code for possible vulnerabilities and sensitive data, e.g. passwords, cryptographic keys, etc.
• Side-Channel Analysis and Fault Injection: Setup and perform side-channel analysis to recover sensitive data, e.g. cryptographic keys, sensitive plaintext, etc. Setup and perform fault injection attacks to bypass security measures and/or recover sensitive data.
• Exploit Development: Develop custom and novel exploits to bypass security measures, recover sensitive data, or gain elevated privileges in embedded systems.
• Documentation: Prepare detailed documentation, including physical setups, testing procedures, and user guides, for reproducibility of found results and maintenance.
• Continuous Learning: Stay current with the latest advancements in reverse engineering and hardware security to continually refine and enhance skills.

Position Requirements

Position Requirements
• Ability to obtain and maintain a US government security clearance.
• Bachelor's degree in Electrical Engineering, Computer Engineering, or a related field.
• Experience reverse engineering embedded systems including using standard tools such as IDA Pro, Ghidra, etc.
• Experience working with FPGAs, hardware description languages (VHDL, Verilog), microcontrollers, SoCs, and related hardware (Flash, SRAM, DRAM, etc.).
• Strong programming skills in scripting languages (Python, JavaScript, bash) and C/C++ for hardware/software integration.
• Experience standard interfaces (AXI, SPI, UART, JTAG).
• Strong analytical and problem-solving skills, with the ability to understand complex software and hardware designs.
• Strong documentation skills and the ability to convey complex information clearly and effectively.
• Collaborative mindset and excellent communication skills to work effectively with cross-functional teams.
• Experience in hardware security and reverse engineering techniques.

Preferred Qualifications
• Advanced degree (M.S. or Ph.D.) in Electrical Engineering, Computer Engineering, or a related field.
• Knowledge of cryptographic algorithms and experience implementing mathematical algorithms in hardware or software.
• Experience in tamper detection and anti-reverse engineering techniques.

Full-Time/Part-Time
Full-Time

This position is currently accepting applications.

Apply tot his job

Apply To this Job

Apply tot his job

Apply To this Job
Apply Now →

Similar Jobs

Experienced Registered Behavior Technician for In-Home ABA Therapy - Atlanta, GA

Remote

Immediate Hiring: Experienced Registered Behavioral Technician (RBT) for Clinic-Based ABA Therapy Services

Remote

Experienced Registered Behavioral Technician (RBT) - ABA Therapy for Children with Autism Spectrum Disorder

Remote

Experienced Registered Nurse - Telehealth: Providing Remote Care Coordination and Patient Support

Remote

Experienced Substitute Teacher for Riverside County Schools - Join Scoot Education's Innovative Team

Remote

Experienced Substitute Teacher for San Bernardino County - Flexible Schedules & Competitive Pay

Remote

Experienced School Year Instructional Coach for High-Dosage Tutoring Programs in Edgewater Park, NJ

Remote

Experienced School Year Tutor for K-8 Students in Math and Literacy - Mickleton, NJ

Remote

Experienced Secondary Social Studies Teacher for Kansas - Flexible Hybrid Remote Arrangement

Remote

USPS Office Helper

Remote

Part-Time Sales Representative - Flexible Work Arrangements - Remote Work Opportunity with Comprehensive Training and Competitive Compensation

Remote

Sales Manager Gesundheitswesen (Leistungserbringer) (all genders)

Remote

Remote Certified English Language Tutor – Flexible Scheduling, Competitive Compensation, Join a Global Online Learning Marketplace

Remote

Field Enrollment Manager (Consumer Benefits Solutions) - Virtual

Remote

Enterprise Project Manager

Remote

Experienced Part-Time Amazon Fulfillment Center Associate - Remote Work Opportunity in Warehouse Operations and Customer Service

Remote

**Experienced Customer Service Representative (Remote) - arenaflex - Work From Home Opportunity**

Remote

Junior Open Source Intelligence Analyst

Remote

Security Engineer L4, Application Security [Remote]

Remote

Remote Medical Records (EMR) Clerk- HIS

Remote
← Back