Senior Offensive Security Engineer
hace 5 días
The Role:Si desea saber un poco más sobre esta oportunidad, o está considerando presentar su candidatura, por favor, lea la siguiente información del puesto.Openchip is building new RISC‑V chips with security at heart, enabling safer and more privacy‑respectful execution of data processing workloads like AI models. As a Senior Offensive Security Engineer, you will help ensure that our software and systems are designed and implemented to the highest security standards. You will perform technical security assessments, code reviews and vulnerability testing to highlight risk, helping Open Chip teams and partners to improve security, and work on a wide variety of software designs and technology stacks.Key responsibilities:Identify Vulnerabilities: Discover security flaws before they can be exploited, using offensive security techniques across the full software and firmware stack.Threat Modeling: Development of comprehensive threat models covering all targeted usages and deployments of Openchip SW Stack.Security Documentation: create and maintain high‑quality security guidance documentation, including best practices, design recommendations, and threat mitigation strategies.Security Standards Compliance: Drive the alignment of OpenChip products with industry‑recognised security standards (e.g., FIPS 140‑3, NIST SP 800‑193, ISO/IEC 27001).Advanced Security Research: Conduct deep technical investigations in areas such as:Microarchitectural security (e.g., side‑channel attacks)Cryptographic weaknesses – fuzzing and reverse engineeringCode and architecture‑level security reviewsLogic and memory vulnerabilities (e.g., kernel/firmware privilege escalation)Interact with colleagues across projects to unblock issues, or to reach consensus on technical topics. In particular:Collaborate with colleagues through code reviews, bug triaging, design documents,...Contribute to shared team responsibilities (CI failure triaging, documentation, code fixits, rotations...).Work with validation teams on required test cases, coverage, and methodologies to ensure robust security verification.Work with support Quality team by delivering security guidelines and best practices for implementing a secure development lifecycle (SDL).Work with hardware teams, providing requirements for security and influencing hardware/software co‑design.Required qualifications:Bachelor or Master’s degree in a relevant field.Experience in the relevant field (5–10 yr).Experience with standard tools for source control (git), continuous integration, task management (Jira).Solid knowledge about computer architecture (CPU, cache and memory hierarchy, buses,...).Knowledge about at least two of the following areas:Microarchitectural security (side channel attacks, fault injection)Platform security features (kernel/firmware hardening, CHERI, CFI, pointer tagging, virtualization‑based security, IOMMU).Cryptography usage across networks (certificates, signatures, TLS/SSL, PK, remote attestation).Boot integrity technologies (UEFI Secure Boot, measured boot, TPM).Cryptography, including experience with cryptography libraries (OpenSSL, libssl, wolfssl, mbedTLS, libsodium).Soft skills:Team player: communicative and collaborative person who focuses on the outcome of the team above the individual needs.Curious about learning new technologies/stacks.Capable of within‑ and cross‑team collaboration at the technical level.Can‑do attitude, proactive and willing to step up and resolve any obstacle. Self‑aware, self‑starter, and self‑motivated.Preferred qualifications:Experience designing for relevant security standards (TCG, IEEE, NIST, FIPS, PCI, ISO 28000 series).Experience designing for crypto security (e.g. certificate handling and PKI, attestation, TPM/HSM).Expert knowledge of common security‑relevant protocols (e.g. SSH, TLS, DNS, DHCP, NTP, ICMP).Expert knowledge of Linux, and hypervisor security.Experience with open source software development. In particular, engagement with OpenSSF or other Open Source security organizations, and/or history of contributions to Open Source projects.What We Offer?The opportunity to build a cloud AI deployment platform that will power next generation AI systems.A collaborative, innovation‑driven environment with significant autonomy and ownership.Hybrid work model with flexible scheduling.A chance to join one of Europe’s most ambitious companies at the intersection of AI and silicon engineering.Position based in Barcelona, Spain.We’re looking for exceptional engineers ready to shape the future of AI infrastructure. If building scalable, cloud‑native AI deployment platforms excites you, we’d love to meet you.At Openchip & Software Technologies S.L., we believe a diverse and inclusive team is the key to groundbreaking ideas. xsgfvud We foster a work environment where everyone feels valued, respected, and empowered to reach their full potential—regardless of race, gender, ethnicity, sexual orientation, or gender identity.#J-18808-Ljbffr
-
Senior Offensive Security Engineer
hace 5 días
Madrid, España Openchip And Software Technologies SL A tiempo completoA cutting-edge technology firm in Barcelona is seeking a Senior Offensive Security Engineer to enhance software security across RISC-V chip projects.Sea uno de los primeros solicitantes, lea la descripción completa del puesto a continuación y luego envíe su candidatura para que sea considerada.The role involves vulnerability assessments, threat modeling,...
-
Offensive Security Consultant
hace 4 semanas
Madrid, España aizoOn Technology Consulting A tiempo completoaizoOn, società di consulenza tecnologica di innovazione, indipendente, che opera a livello globale ricerca un / una Offensive Security Consultant . Siamo alla ricerca di un Esperto in Vulnerabilità altamente qualificato da inserire nel nostro team di cybersecurity presso la sede di Barcellona o Madrid. La persona selezionata sarà responsabile...
-
Senior Offensive Cybersecurity Expert
hace 2 semanas
Madrid, España SIX A tiempo completoBME belongs to SIX, the third largest exchange group in Europe. We drive the transformation of the financial markets. That’s why we invest in bright minds, in their ideas, knowledge and development. We do that by combining our best sides. **Senior Offensive Cybersecurity Expert****: Madrid | working from home up to 60% | Reference 5902 Attention all...
-
Offensive Security Consultant
hace 3 semanas
Madrid, España aizoOn Technology Consulting A tiempo completoaizoOn, società di consulenza tecnologica di innovazione, indipendente, che opera a livello globale ricerca un / una Offensive Security Consultant . Por favor, asegúrese de leer atentamente los siguientes detalles antes de enviar cualquier solicitud.Siamo alla ricerca di un Esperto in Vulnerabilità altamente qualificato da inserire nel nostro team di...
-
Offensive Security Consultant
hace 3 días
Madrid, España aizoOn Technology Consulting A tiempo completoaizoOn, società di consulenza tecnologica di innovazione, indipendente, che opera a livello globale ricerca un / una Offensive Security Consultant . Por favor, asegúrese de leer atentamente los siguientes detalles antes de enviar cualquier solicitud.Siamo alla ricerca di un Esperto in Vulnerabilità altamente qualificato da inserire nel nostro team di...
-
Offensive Security Engineer L1
hace 4 horas
Madrid, España Devoteam A tiempo completoDevoteam es una consultora líder en Europa centrada en estrategia digital, plataformas tecnológicas, ciberseguridad y transformación empresarial a través de la tecnología. La tecnología está en nuestro ADN y creemos en ella como una palanca capaz de impulsar el cambio a mejor, manteniendo un equilibrio que nos permite ofrecer a nuestra cartera de...
-
Senior Offensive Cybersecurity Expert
hace 4 días
Madrid, España SIX A tiempo completoWe drive the transformation of the financial markets. That’s why we invest in bright minds, in their ideas, knowledge and development. We do that by combining our best sides. ***Senior Offensive Cybersecurity Expert****: Madrid | working from home up to 60% | Reference 4946 BME is the infrastructure of all the securities markets and financial systems in...
-
Golang Offensive Security Engineer
hace 4 días
Madrid, España Halborn A tiempo completo**Halborn** 2022 was the biggest year yet for crypto hacking with $3.8 Billion stolen. Founded in 2019, Halborn was born to solve the always evolving slew of adversarial problems unique to the cryptocurrency industry including but not limited to breaches, social engineering, stolen private keys, and economic hacks. Halborn's clientele are the top tier of...
-
Offensive Security Engineer
hace 3 semanas
Madrid, España Omega CRM, A Merkle Company A tiempo completoOmega CRM Consulting is looking for a Senior Red Team Operator that would like to collaborate with one of the top global pharmaceutical companies.Dé el siguiente paso en su carrera profesional ahora: desplácese hacia abajo para leer la descripción completa del puesto y envíe su solicitud.Join a top-tier Red Team in one of the world’s most regulated,...
-
Offensive security engineer
hace 1 semana
Madrid, España Omega CRM, A Merkle Company A tiempo completoOmega CRM Consulting is looking for a Senior Red Team Operator that would like to collaborate with one of the top global pharmaceutical companies.¿No sabe con seguridad qué habilidades necesitará para esta oportunidad? Simplemente lea la descripción completa a continuación para obtener una idea clara de los requisitos del candidato.Join a top-tier Red...