Remote Remote (Global)

EndoSec LLC is hiring a Hardware Security and Vulnerability Analyst

About the Role

Role Overview

As a Hardware Security and Vulnerability Analyst, you will conduct in-depth evaluations of hardware and embedded systems to uncover security flaws. Your work will involve extracting and analyzing firmware, reverse engineering code, and developing proof-of-concept exploits to demonstrate potential risks. You'll collaborate with engineering teams to enhance product resilience and ensure robust security controls are effectively implemented.

Key Responsibilities

  • Examine hardware systems to determine operational behavior, failure modes, and the impact of potential breaches.
  • Defeat existing security protections by enabling debug interfaces, forging or circumventing digital signatures, escalating privileges, and replicating real-world operating environments.
  • Retrieve firmware and executable data from embedded devices and analyze them for exploitable flaws or exposed secrets such as passwords and cryptographic keys.
  • Conduct side-channel analysis to extract confidential information like encryption keys or plaintext data.
  • Implement fault injection methods to disrupt normal operation and bypass security mechanisms.
  • Create custom exploits that demonstrate how attackers could compromise system integrity or access protected resources.
  • Document test setups, procedures, and results thoroughly to ensure reproducibility and support long-term maintenance.
  • Keep pace with emerging techniques in hardware reverse engineering and embedded security to continuously improve assessment methods.

Qualifications

Applicant must be eligible to obtain and retain a U.S. Government Security Clearance.

Preferred skills include: C/C++, Python, assembly language, IDA Pro, Ghidra, FPGA development, cryptography, embedded software, hardware security, reverse engineering, side-channel analysis, and fault injection techniques.

Work Environment

This position supports remote work and may require travel of up to 20% for on-site testing or team collaboration.

Required Skills
C/C++PythonassemblyIDA ProGhidraFPGAcryptographyhardwareembedded softwarehardware securityreverse engineeringside channel attacksfault injection C/C++PythonassemblyIDA ProGhidraFPGAcryptographyhardwareembedded softwarehardware securityreverse engineeringside channel attacksfault injection
Looking for a remote dev community?

200+ professionals, 37 countries, one network

Working remotely doesn't mean working alone. Iglu connects you with developers, designers, and digital experts worldwide. Collaborate, learn, and grow together.

Global professional network
Knowledge sharing & collaboration
Regular community events
Cross-project opportunities
Join the community
37 countries represented
Job Details
Department Engineering
Category security
Posted 3 months ago