Senior Offensive Security Engineer
hace 5 días
Openchip is building new RISC-V chips with security at heart, enabling safer and more privacy-respectful execution of data processing workloads like AI models. As a Senior Offensive Security Engineer, you will help to ensure that our software and systems are designed and implemented to the highest security standards. You will perform technical security assessments, code reviews and vulnerability testing to highlight risk, helping Open Chip teams and partners to improve security, and work on a wide variety of software designs and technology stacks.Key responsibilities:Identify Vulnerabilities: Discover security flaws before they can be exploited, using offensive security techniques across the full software and firmware stack.Threat Modeling: Development of comprehensive threat models covering all targeted usages and deployments of Open chip SW Stack.Security Documentation: create and maintain high-quality security guidance documentation, including best practices, design recommendations, and threat mitigation strategies.Security Standards Compliance: Drive the alignment of OpenChip products with industry-recognized security standards (FIPS 140-3, NIST SP 800-193, ISO/IEC 27001).Advanced Security Research, Conduct deep technical investigations in areas such as:Microarchitectural security (e.g., side-channel attacks)Cryptographic weaknesses - Fuzzing and reverse engineeringCode and architecture-level security reviewsLogic and memory vulnerabilities (e.g., kernel/firmware privilege escalation)Interact with colleagues across projects to unblock issues, or to reach consensus on technical topics.In particular:Collaborate with colleagues through code reviews, bug triaging, design documents,...Contribute to shared team responsibilities (CI failure triaging, documentation, code fixits, rotations...).Work with validation teams on required test cases, coverage, and methodologies to ensure robust security verification.Work with support Quality team by delivering security guidelines and best practices for implementing a secure development lifecycle (SDL).Work with hardware teams, providing requirements for security and influencing hardware/software co-design.Required qualifications:Bachelor or Master's degree in a relevant field.Experience in the relevant field (5-10yr).Experience with standard tools for source control (git), continuous integration, task management (Jira).Solid knowledge about computer architecture (CPU, cache and memory hierarchy, buses,...).Knowledge about at least two of the following areas:Platform security features (kernel/firmware hardening, CHERI, CFI, pointer tagging, virtualization-based security, IOMMU).Cryptograpy usage across networks (certificates, signatures, TLS/SSL, PK, remote attestation).Boot integrity technologies (UEFI Secure Boot, measured boot, TPM).Cryptography, including experience with cryptography libraries (OpenSSL, libssl, wolfssl, mbedtls, libsodium).Team player: communicative and collaborative person who focuses on the outcome of the team above the individual needs.Curious about learning new technologies/stacks.Capable of within- and cross-team collaboration at the technical level.Can-do attitude, proactive and willing to step up and resolve any obstacle. Self-aware, self-starter, and self-motivated.Preferred qualifications:Experience designing for relevant security standards (TCG, IEEE, NIST, FIPS, PCI, ISO 28000 series)Experience designing for crypto security (e.g. certificate handling and PKI, attestation, TPM/HSM)Expert knowledge of common security-relevant protocols (e.g. SSH, TLS, DNS, DHCP, NTP, ICMP)Expert knowledge of Linux, and hypervisor securityExperience with open source software development. In particular, engagement with OpenSSF or other Open Source security organizations, and/or history of contributions to Open Source projects.What We Offer? The opportunity to build a cloud AI deployment platform that will power next generation AI systems.A collaborative, innovation-driven environment with significant autonomy and ownership.Hybrid work model with flexible scheduling.A chance to join one of Europe’s most ambitious companies at the intersection of AI and silicon engineering.Position based in Barcelona, Spain.We’re looking for exceptional engineers ready to shape the future of AI infrastructure. If building scalable, cloud-native AI deployment platforms excites you, we’d love to meet you.At Openchip & Software Technologies S.L., we believe a diverse and inclusive team is the key to groundbreaking ideas. We foster a work environment where everyone feels valued, respected, and empowered to reach their full potential—regardless of race, gender, ethnicity, sexual orientation, or gender identity.#J-18808-Ljbffr
-
Offensive Security Engineer
hace 6 días
Madrid, España Sporty Group A tiempo completoJoin the Senior Offensive Security Engineer role at Sporty Group .About the RoleIn this role you will be leading high‑impact offensive security on product and platform surfaces (web, mobile backends, APIs) and driving remediation with DevOps and product squads.What You'll Be DoingPlan and execute offensive engagements across web/mobile/API, auth flows, and...
-
Senior Offensive Security Engineer
hace 5 días
Madrid, España Openchip & Software Technologies A tiempo completoA technology firm specializing in AI and silicon engineering in Barcelona is looking for a Senior Offensive Security Engineer. You will identify vulnerabilities, develop threat models, and ensure compliance with industry-recognized security standards. Ideal candidates should have extensive experience in security engineering and knowledge of cryptography and...
-
Offensive Security Engineer
hace 5 días
Madrid, España Sporty Group A tiempo completoJoin theSenior Offensive Security Engineerrole atSporty Group .About the Role In this role you will be leading high‑impact offensive security on product and platform surfaces (web, mobile backends, APIs) and driving remediation with DevOps and product squads.What You'll Be DoingPlan and execute offensive engagements across web/mobile/API, auth flows, and...
-
Offensive Security Engineer
hace 3 días
Madrid, España Sporty Group A tiempo completoJoin theSenior Offensive Security Engineerrole atSporty Group .About the Role In this role you will be leading high‑impact offensive security on product and platform surfaces (web, mobile backends, APIs) and driving remediation with DevOps and product squads.What You'll Be DoingPlan and execute offensive engagements across web/mobile/API, auth flows, and...
-
Offensive Security Engineer
hace 4 días
Madrid, España Sporty Group A tiempo completoJoin theLea el resumen de esta oportunidad para comprender qué habilidades, incluidas las habilidades interpersonales relevantes y el dominio de paquetes de software, se requieren.Senior Offensive Security Engineerrole atSporty Group .About the RoleIn this role you will be leading high‑impact offensive security on product and platform surfaces (web,...
-
Madrid, España ING Group A tiempo completoA leading financial services provider in Madrid is seeking a talented Senior Pentester to join their Offensive Security Center. As part of a strategic initiative, you will proactively identify and mitigate security risks through advanced penetration testing. The ideal candidate should have extensive experience in penetration testing tools, strong analytical...
-
Offensive Security
hace 4 días
Madrid, España Capgemini A tiempo completoHello! We are **CAPGEMINI, We are very lucky to work in a sector that is leading the evolution towards a sustainable and inclusive future. **The technology **. The catalyst for so many solutions that we need now more than ever. **We are 350,000 PEOPLE **around the world moving forward together and driven by the same passion. No matter where we are, we can...
-
Senior Offensive Cybersecurity Expert
hace 24 horas
Madrid, España SIX A tiempo completoBME belongs to SIX, the third largest exchange group in Europe. We drive the transformation of the financial markets. That’s why we invest in bright minds, in their ideas, knowledge and development. We do that by combining our best sides. **Senior Offensive Cybersecurity Expert****: Madrid | working from home up to 60% | Reference 5902 Attention all...
-
Offensive Security Consultant
hace 3 días
Madrid, España aizoOn Technology Consulting A tiempo completoaizoOn, società di consulenza tecnologica di innovazione, indipendente, che opera a livello globale ricerca un / una Offensive Security Consultant . Por favor, asegúrese de leer atentamente los siguientes detalles antes de enviar cualquier solicitud.Siamo alla ricerca di un Esperto in Vulnerabilità altamente qualificato da inserire nel nostro team di...
-
Madrid, España Datadog A tiempo completoA leading software company is seeking a Security Researcher to focus on Generative AI and lead initiatives identifying vulnerabilities. The role involves developing proof-of-concept attacks and collaborating with teams to enhance the security platform. Ideal candidates should possess experience in Generative AI, offensive security, and proficient programming...