Senior Offensive Security Engineer
hace 2 semanas
The Role: Openchip is building new RISC-V chips with security at heart, enabling safer and more privacy-respectful execution of data processing workloads like AI models. As a Senior Offensive Security Engineer, you will help to ensure that our software and systems are designed and implemented to the highest security standards. You will perform technical security assessments, code reviews and vulnerability testing to highlight risk, helping Open Chip teams and partners to improve security, and work on a wide variety of software designs and technology stacks.. Key responsibilities: Identify Vulnerabilities: Discover security flaws before they can be exploited, using offensive security techniques across the full software and firmware stack. Threat Modeling: Development of comprehensive threat models covering all targeted usages and deployments of Openchip SW Stack. Security Documentation: create and maintain high-quality security guidance documentation, including best practices, design recommendations, and threat mitigation strategies. Security Standards Compliance: Drive the alignment of OpenChip products with industry-recognized security standards (e.g., FIPS 140-3, NIST SP 800-193, ISO/IEC 27001). Advanced Security Research, Conduct deep technical investigations in areas such as: Microarchitectural security (e.g., side-channel attacks) Cryptographic weaknesses - Fuzzing and reverse engineering Code and architecture-level security reviews Logic and memory vulnerabilities (e.g., kernel/firmware privilege escalation) Interact with colleagues across projects to unblock issues, or to reach consensus on technical topics. In particular: Collaborate with colleagues through code reviews, bug triaging, design documents,... Contribute to shared team responsibilities (CI failure triaging, documentation, code fixits, rotations...). Work with validation teams on required test cases, coverage, and methodologies to ensure robust security verification. Work with support Quality team by delivering security guidelines and best practices for implementing a secure development lifecycle (SDL). Work with hardware teams, providing requirements for security and influencing hardware/software co-design. Required qualifications: Bachelor or Master's degree in a relevant field. Experience in the relevant field (5-10yr). Experience with standard tools for source control (git), continuous integration, task management (Jira). Solid knowledge about computer architecture (CPU, cache and memory hierarchy, buses,...). Knowledge about at least two of the following areas: Microarchitectural security(side channel attacks, fault injection) Platform security features (kernel/firmware hardening, CHERI, CFI, pointer tagging, virtualization-based security, IOMMU). Cryptograpy usage across networks (certificates, signatures, TLS/SSL, PK, remote attestation). Boot integrity technologies (UEFI Secure Boot, measured boot, TPM). - Cryptography, including experience with cryptography libraries (OpenSSL, libssl, wolfssl, mbedtls, libsodium). Soft skills: Team player: communicative and collaborative person who focuses on the outcome of the team above the individual needs. Curious about learning new technologies/stacks. – Capable of within- and cross-team collaboration at the technical level. Can-do attitude, proactive and willing to step up and resolve any obstacle. Self-aware, self-starter, and self-motivated. Preferred qualifications: Experience designing for relevant security standards (TCG, IEEE, NIST, FIPS, PCI, ISO 28000 series) Experience designing for crypto security (e.g. certificate handling and PKI, attestation, TPM/HSM) Expert knowledge of common security-relevant protocols (e.g. SSH, TLS, DNS, DHCP, NTP, ICMP) Expert knowledge of Linux, and hypervisor security Experience with open source software development. In particular, engagement with OpenSSF or other Open Source security organizations, and/or history of contributions to Open Source projects. What We Offer? The opportunity to build a cloud AI deployment platform that will power next generation AI systems. A collaborative, innovation-driven environment with significant autonomy and ownership. Hybrid work model with flexible scheduling. A chance to join one of Europe’s most ambitious companies at the intersection of AI and silicon engineering. Position based in Barcelona, Spain. We’re looking for exceptional engineers ready to shape the future of AI infrastructure. If building scalable, cloud-native AI deployment platforms excites you, we’d love to meet you. At Openchip & Software Technologies S.L., we believe a diverse and inclusive team is the key to groundbreaking ideas. We foster a work environment where everyone feels valued, respected, and empowered to reach their full potential—regardless of race, gender, ethnicity, sexual orientation, or gender identity.
-
Senior Offensive Security Engineer
hace 13 horas
Barcelona, España Openchip & Software Technologies A tiempo completoA technology firm specializing in AI and silicon engineering in Barcelona is looking for a Senior Offensive Security Engineer. You will identify vulnerabilities, develop threat models, and ensure compliance with industry-recognized security standards. Ideal candidates should have extensive experience in security engineering and knowledge of cryptography and...
-
Senior Staff Offensive Security Engineer
hace 2 semanas
Barcelona, España Werfen A tiempo completo**Job Overview**: - Post Date - November 28, 2024 - Number - WEBWW-2024-000075 - Job Function - IT - Location - Barcelona - Country - Spain **About the Position**: This position is part of the Security Group with worldwide responsibility for cybersecurity for IT, business systems, the network which extends to affiliates as well as security of products and...
-
Senior Offensive Security Engineer
hace 2 semanas
barcelona, España Openchip & Software Technologies A tiempo completoOpenchip is building new RISC-V chips with security at heart, enabling safer and more privacy-respectful execution of data processing workloads like AI models. As a Senior Offensive Security Engineer, you will help to ensure that our software and systems are designed and implemented to the highest security standards. You will perform technical security...
-
Senior Offensive Security Engineer
hace 1 día
Barcelona, España OPENCHIP & SOFTWARE TECHNOLOGIES A tiempo completoOpenchip is building new RISC-V chips with security at heart, enabling safer and more privacy-respectful execution of data processing workloads like AI models. As a Senior Offensive Security Engineer, you will help to ensure that our software and systems are designed and implemented to the highest security standards. You will perform technical security...
-
Senior Offensive Security Engineer
hace 1 día
Barcelona, España OPENCHIP & SOFTWARE TECHNOLOGIES A tiempo completoA technology firm specializing in AI and silicon engineering in Barcelona is looking for a Senior Offensive Security Engineer.Consulte la descripción del puesto a continuación. Si confía en que tiene las habilidades y la experiencia adecuadas, envíe su solicitud hoy mismo.You will identify vulnerabilities, develop threat models, and ensure compliance...
-
Barcelona, España Next-Link A tiempo completoA leading cybersecurity firm in Spain is seeking a Senior Red Team Operator to execute full-spectrum Red Team operations in a highly regulated and security-focused environment. The ideal candidate has at least 4 years of experience in Red Team engagements, mastery of offensive frameworks, and strong scripting skills. This role demands high autonomy and a...
-
Offensive Security Analyst
hace 2 días
Barcelona, España Wise Security Global A tiempo completoSerás responsable de identificar y explotar vulnerabilidades en sistemas, aplicaciones (especialmente móviles) e infraestructuras, con el objetivo de reforzar la postura de seguridad de la organización. Contribuirás directamente a la detección temprana de riesgos y a la mejora continua de las defensas tecnológicas. Nos encontramos en la búsqueda de...
-
Senior Security Engineer
hace 2 días
Barcelona, España Workato A tiempo completo**About Workato**: **Why join us?**: Ultimately, Workato believes in fostering a **flexible, trust-oriented culture that empowers everyone to take full ownership of their roles**. We are driven by **innovation**and looking for** team players**who want to actively build our company. But, we also believe in **balancing productivity with self-care**. That's why...
-
Senior Product Security Engineer
hace 1 semana
Barcelona, España Mirantis A tiempo completo**Company Description** **About Mirantis** Mirantis is seeking a **Senior Product Security Engineer** to help secure our portfolio of products and services, including enterprise software and critical infrastructure. This role is part of our growing** Product Security program** and will play a key role in implementing security controls, driving remediation...
-
Lead Offensive AI Security
hace 10 horas
Barcelona, Barcelona, España Plain Concepts A tiempo completoAre you passionate about applying the latest advances in offensive security and DevSecOps to real-world challenges? At Plain Security Studios, we're reshaping how organizations test, secure, and evolve their cyber defense strategies using AI. As Lead Defensive AI Security, you'll lead the transformation of red teaming, adversarial testing, and secure...