Spyrosoft is seeking an experienced Embedded Penetration Tester to join our team and help secure complex IoT and embedded ecosystems. You will play a critical role in identifying vulnerabilities, designing robust security architectures, and ensuring our products meet the highest standards of cybersecurity throughout their entire lifecycle.
Key responsibilities
- Design and implement security architectures for embedded and IoT solutions.
- Conduct threat modeling, security risk assessments, and security reviews throughout the product lifecycle.
- Perform penetration testing, fuzz testing, and vulnerability assessments on embedded targets and IoT ecosystems.
- Collaborate with development and cloud teams to integrate security into CI/CD pipelines.
- Manage SBOM creation and software supply chain security activities.
Requirements
- Proven experience in embedded systems, IoT security, or product cybersecurity.
- Hands-on knowledge of secure boot, firmware protection, and code signing mechanisms.
- Deep understanding of cryptography and key management in embedded environments.
- Experience conducting penetration testing on embedded targets using interfaces such as JTAG, UART, SPI, and I2C.
- Ability to perform security risk assessments aligned with standards like ISO 21434 or IEC 62443.
What we offer
- Opportunity to work on cutting-edge projects in automotive, industrial, and medical sectors.
- A fully remote work environment that supports professional growth and technical excellence.
- Collaboration with a team of experts in a culture that values security-first engineering.