Sign up for our
weekly
newsletter
of fresh jobs
Job Title: Product Security Engineer
Location: Remote (US)
Divisions: Multiple/Enterprise...
Are you a self-motivated and versatile Product Security Engineer? Join our global Cyber Security Team and take your career to the next level.
What You Will Do
You will be a visible member and thought leader of our cyber security engineering team and will help us advance cybersecurity requirements, processes, and technology solutions across multiple products. The role requires someone who has a “builder mentality”, who is able to collaborate with engineering teams to help architect and shape next gen devices with security at their core.
Conduct hardware penetration testing on a wide range of devices.
Collaborate with engineering teams on how best to remediate penetration test findings.
Perform threat modeling exercises with various product and engineering teams
Work with product and engineering teams to architect next gen devices with security at their core.
Develop hardware security best practice guidance to help guide engineering teams during new product design phases.
What Skills and Experience You Should Bring
Minimum of 2 years of experience working with hardware pen testing and firmware analysis.
Bachelor's degree in electrical engineering, mechanical engineering or equivalent practical experience is beneficial, but not required.
Experience in one or more of the following languages: Java, C/C++, Ruby, Python.
Technical knowledge of computer architecture and device design.
Strong understanding of systems/network security, secure protocol design, secure build and supply chain management, encryption, authentication, key management and applied cryptography.
Ability to work independently and in a team-oriented, collaborative environment with both internal and external customers is essential.
About Trimble Dedicated to the world’s tomorrow, Trimble is a technology company delivering solutions that enable our customers to work in new ways to measure, build, grow and move goods for a better quality of life. Core technologies in positioning, modeling, connectivity and data analytics connect the digital and physical worlds to improve productivity, quality, safety, transparency and sustainability. From purpose-built products and enterprise lifecycle solutions to industry cloud services, Trimble is transforming critical industries such as construction, geospatial, agriculture and transportation to power an interconnected world of work. For more information about Trimble (NASDAQ: TRMB), visit:
Trimble’s Inclusiveness Commitment
We believe in celebrating our differences. That is why our diversity is our strength. To us, that means actively participating in opportunities to be inclusive. Diversity, Equity, and Inclusion have guided our current success while also moving our desire to improve. We actively seek to add members to our community who represent our customers and the places we live and work.
We have programs in place to make sure our people are seen, heard, and welcomed and most importantly that they know they belong, no matter who they are or where they are coming from.
Trimble’s Privacy Policy
Trimble is an exciting, entrepreneurial company, with a history of exceptional growth coupled with a disciplined and strategic focus on being the best. While GPS is at our core, we have grown beyond this technology to embrace other sophisticated positioning technologies and, in doing so; we are changing the way the world works. Our solutions are used in over 140 countries and we have incredibly diverse lines of business.
Our employees represent this diversity and can be found in over 30 countries, working closely with their colleagues around the world. Due to our geographic, product and customer reach, there is plenty of room at Trimble for exceptional people to grow. Come position yourself with an innovative industry leader and position yourself for success.
Trimble is recruiting a Product Security Engineer to be the main security tester and architect for the hardware products that Trimble sells.
Job Summary
You are a self-motivated and versatile Product Security Engineer ready to join the global Trimble Cyber Security Team, and are responsible for securing Trimble’s hardware products. You will be a visible member of our security team and will help us advance cyber security security testing and requirements processes across our hardware products and embedded systems.
The role requires someone who can use their initiative and work well independently as well as part of a global team. This role entails conducting thorough hardware testing and collaborating closely with business engineering teams to address and resolve vulnerabilities. Additionally, the role will involve leveraging lessons learned from previous findings to enhance the security of future products through the design and implementation of additional security measures. Effective partnership and collaboration with the business engineering teams will be crucial in both remediating hardware security findings and architecting secure devices for the future.
Key Responsibilities
Act as the primary hardware security tester for Trimble hardware.
Expertise in embedded systems security, and system architecture is critical.
Supporting the Engineering and Development teams by coming up with secure design and architecture requirements.
Act as a security guide when working with engineering and development teams to show them how to successfully implement security controls within their existing products.
Provide remediation guidance to teams as a part of the development lifecycle.
Perform and communicate risk assessments across a wide variety of technologies
Experience with secure communication protocols, cryptography, and key management
Required Skills and Experience
Deep understanding of Hardware Security and the various attack vectors
2 years of experience assisting in the development of secure hardware devices
Hands on experience in Hardware Penetration Testing
Experience with Hardware Security Architecture
Desirable Skills and Experience
Security certifications (CEH, GSEC, GPEN, etc.)
Technical cyber security experience in a large software company
Scripting experience with various languages is a plus
Bachelor's degree in Computer Science, Electrical Engineering, or a related field a plus
Familiarity with automotive cyber security standards, such as SAE J3061 and UNECE WP.29
Experience with secure boot and firmware update mechanisms for embedded systems
Trimble is transforming the way the world works by delivering products and services that connect the physical and digital worlds. Core technologies in positioning, modeling, connectivity and data analytics enable customers to improve productivity, quality, safety and sustainability.
From purpose-built products to enterprise lifecycle solutions, Trimble software, hardware and services are transforming a broad range of industries such as agriculture, construction, geospatial and transportation and logistics.
#security