Senior Offensive Security Engineer
hace 1 semana
The Role: Openchip is building new RISC‑V chips with security at heart, enabling safer and more privacy‑respectful execution of data processing workloads like AI models. As a Senior Offensive Security Engineer, you will help ensure that our software and systems are designed and implemented to the highest security standards. You will perform technical security assessments, code reviews and vulnerability testing to highlight risk, helping Open Chip teams and partners to improve security, and work on a wide variety of software designs and technology stacks. Key responsibilities: Identify Vulnerabilities: Discover security flaws before they can be exploited, using offensive security techniques across the full software and firmware stack. Threat Modeling: Development of comprehensive threat models covering all targeted usages and deployments of Openchip SW Stack. Security Documentation: create and maintain high‑quality security guidance documentation, including best practices, design recommendations, and threat mitigation strategies. Security Standards Compliance: Drive the alignment of OpenChip products with industry‑recognised security standards (e.g., FIPS 140‑3, NIST SP 800‑193, ISO/IEC 27001). Advanced Security Research: Conduct deep technical investigations in areas such as: Microarchitectural security (e.g., side‑channel attacks) Cryptographic weaknesses – fuzzing and reverse engineering Code and architecture‑level security reviews Logic and memory vulnerabilities (e.g., kernel/firmware privilege escalation) Interact with colleagues across projects to unblock issues, or to reach consensus on technical topics. In particular: Collaborate with colleagues through code reviews, bug triaging, design documents,... Contribute to shared team responsibilities (CI failure triaging, documentation, code fixits, rotations...). Work with validation teams on required test cases, coverage, and methodologies to ensure robust security verification. Work with support Quality team by delivering security guidelines and best practices for implementing a secure development lifecycle (SDL). Work with hardware teams, providing requirements for security and influencing hardware/software co‑design. Required qualifications: Bachelor or Master’s degree in a relevant field. Experience in the relevant field (5–10 yr). Experience with standard tools for source control (git), continuous integration, task management (Jira). Solid knowledge about computer architecture (CPU, cache and memory hierarchy, buses,...). Knowledge about at least two of the following areas: Microarchitectural security (side channel attacks, fault injection) Platform security features (kernel/firmware hardening, CHERI, CFI, pointer tagging, virtualization‑based security, IOMMU). Cryptography usage across networks (certificates, signatures, TLS/SSL, PK, remote attestation). Boot integrity technologies (UEFI Secure Boot, measured boot, TPM). Cryptography, including experience with cryptography libraries (OpenSSL, libssl, wolfssl, mbedTLS, libsodium). Soft skills: Team player: communicative and collaborative person who focuses on the outcome of the team above the individual needs. Curious about learning new technologies/stacks. Capable of within‑ and cross‑team collaboration at the technical level. Can‑do attitude, proactive and willing to step up and resolve any obstacle. Self‑aware, self‑starter, and self‑motivated. Preferred qualifications: Experience designing for relevant security standards (TCG, IEEE, NIST, FIPS, PCI, ISO 28000 series). Experience designing for crypto security (e.g. certificate handling and PKI, attestation, TPM/HSM). Expert knowledge of common security‑relevant protocols (e.g. SSH, TLS, DNS, DHCP, NTP, ICMP). Expert knowledge of Linux, and hypervisor security. Experience with open source software development. In particular, engagement with OpenSSF or other Open Source security organizations, and/or history of contributions to Open Source projects. What We Offer? The opportunity to build a cloud AI deployment platform that will power next generation AI systems. A collaborative, innovation‑driven environment with significant autonomy and ownership. Hybrid work model with flexible scheduling. A chance to join one of Europe’s most ambitious companies at the intersection of AI and silicon engineering. Position based in Barcelona, Spain. We’re looking for exceptional engineers ready to shape the future of AI infrastructure. If building scalable, cloud‑native AI deployment platforms excites you, we’d love to meet you. At Openchip & Software Technologies S.L., we believe a diverse and inclusive team is the key to groundbreaking ideas. We foster a work environment where everyone feels valued, respected, and empowered to reach their full potential—regardless of race, gender, ethnicity, sexual orientation, or gender identity. #J-18808-Ljbffr
-
Senior Offensive Security Engineer
hace 7 días
españa Sporty Group A tiempo completoJoin the Senior Offensive Security Engineer role at Sporty Group . About the Role In this role you will be leading high‑impact offensive security on product and platform surfaces (web, mobile backends, APIs) and driving remediation with DevOps and product squads. What You'll Be Doing Plan and execute offensive engagements across web/mobile/API, auth flows,...
-
Senior Security Engineer Spain
hace 1 día
españa Chronos Consulting A tiempo completoOur client is a world-renowned US startup in the field of automation. This California unicorn is still a private enterprise experiencing hypergrowth. They are looking for an exceptional Senior Security Engineer to join their team as they build their defensive security capabilities. This is a full-time, permanent role. Hybrid or Remote. Requirements At least...
-
Senior Product Security Engineer
hace 2 días
españa Mirantis A tiempo completoAbout Mirantis Mirantis is the Kubernetes-native AI infrastructure company, enabling organizations to build and operate scalable, secure, and sovereign infrastructure for modern AI, machine learning, and data-intensive applications. By combining open source innovation with deep expertise in Kubernetes orchestration, Mirantis empowers platform engineering...
-
Security Engineer
hace 2 semanas
españa Coberon Chronos A tiempo completoOur client is a global leader in enterprise orchestration, helping over 400,000 businesses worldwide streamline their operations with its AI‑powered platform. They are looking for a highly accomplished Security Engineer, Red Team. This is a full‑time, permanent, remote position ideally based in Spain or Portugal. Requirements Bachelor's degree in...
-
Offensive Security Analyst
hace 2 semanas
España Var Group España A tiempo completoNos encontramos en la búsqueda de un/a Offensive Security Analyst para que se sume a nuestro equipo de Ethical Hacking. Cual será tu misión? Serás responsable de identificar y explotar vulnerabilidades en sistemas, aplicaciones e infraestructuras, con el objetivo de reforzar la postura de seguridad de la organización. Contribuirás directamente a la...
-
Security Engineer
hace 2 semanas
españa Workato A tiempo completoAbout Workato Workato transforms technology complexity into business opportunity. As the leader in enterprise orchestration, Workato helps businesses globally streamline operations by connecting data, processes, applications, and experiences. Its AI-powered platform enables teams to navigate complex workflows in real-time, driving efficiency and agility....
-
Senior Cloud Security Engineer — Data Security
hace 2 semanas
españa N26 A tiempo completoA leading fintech company is searching for a Senior Cloud Security Engineer to enhance and implement robust cloud data security practices. The role involves deploying DLP solutions, monitoring vulnerabilities, and collaborating with cross-functional teams to align security strategies. Ideal candidates should possess a deep understanding of cloud data...
-
Senior Security Engineer — Lead Cloud
hace 1 semana
españa Welltech A tiempo completoA leading health technology firm in Spain seeks a Senior Security Engineer to enhance security measures across its systems. This role involves leading vulnerability management and collaborating with various teams to ensure compliance with security standards. The ideal candidate will have a background in computer science, 2+ years of experience, and strong...
-
Senior Security Solutions Engineer
hace 7 días
españa Medium A tiempo completoAn HR technology firm is seeking a Senior Security Solutions Engineer in Spain. In this role, you will bridge security strategy and technical execution in a cloud-native environment. Responsibilities include analyzing security requirements, evaluating vendors, and executing Proof-of-Concepts. The ideal candidate has over 6 years of experience in security...
-
Senior Security Engineer
hace 2 días
españa Volkswagen AG A tiempo completoVolkswagen Group Services is excited to present a fantastic opportunity to join our Volkswagen Digital:Hub in Spain. As part of the global Software Development Centre network in the Volkswagen Group, we constantly seek talented individuals ready to bring their unique skills to our projects. Our start-up environment is collaborative, innovative, and open to...