Your browser does not support javascript! Please enable it, otherwise web will not work for you.

Lead Hardware Product Security Engineer @ Emerson Innovation

Home > General / Other Software

 Lead Hardware Product Security Engineer

Job Description

Description

Looking for a candidate with strong experience in Hardware Security assessment (secure design and security testing) and is keen on exploring new techniques to secure Emerson products.

Principal Functional Responsibilities:
  • Exploring vulnerabilities and attacks in top of the line SoC (System-on-Chip).
  • Execute physical attacks (invasive attacks, side-channel attacks, fault attacks, in Side Channel Analysis, Fault Injection -and Perturbation -attacks) and Reverse Engineering.
  • Provide the Development teams with effective security inputs on vulnerabilities root-causes, suggest mitigations and preventions, guide for fixes and defense.
  • Embedded security research: SCADA/ICS, IIoT hardware security, security mitigations.
  • Evaluate and tests new cybersecurity tools and capabilities.
  • Manage Test environment setup, configuration, process, procedure definition and documentation.
  • Develop security assessment scripts and specify tools relative to specific requirements.
  • Perform security assessments and deliver comprehensive reports with specific recommendations.
  • Security audits of the architecture, hardware blocks.
  • Mentor and coach colleagues in your area of expertise.
, * Requirements

Experience / Skills:

Strong knowledge of embedded system: Micro controller and its peripherals, real time operating system (QNX), memory, Trusted Platform Module, Root of Trust / Immutable Identity and HSM (Hardware Security Module).

Experience verifying security hardware Crypto, DES / AES.

Experience working with UART, SPI, I2C , JTAG, Chip-Whisperer interface. Deep understanding of various hardware security principles, security attacks and associated defense dynamics. Experience in reverse engineering PCBs and components and mitigation techniques. Ability to track the latest security vulnerabilities, Failure isolation or failure analysis in modern chips & processes. Experience with performing physical attacks (power analysis, invasive attacks, side-channel attacks, fault attacks, Side Channel Analysis, Fault Injection -and Perturbation -attacks). Knowledge to utilize hardware-aided security functions.
    • Hacker mind-set, learning new knowledge domains quickly, deep technological understanding, ability to identify flaws and vulnerabilities in complex secure systems, suggest mitigations and security guidelines for design and implementation.
    • Strong analytical skills and decision-making capabilities.
    • Proven verbal and written communications skills to work effectively at all levels of an organization.

Secondary Qualifications:

Experience with hardware design and driver/OS integration beneficial.

Experience with embedded systems, low-level board development.

Experience with cryptographic libraries (e.g. OpenSSL, LibreSSL, mbed TLS).

  • Experience with isolation technologies, such as secure containers / sandboxing at both the system and application levels beneficial.
  • Comprehensive understanding of PLC, RTU, IED, PID, HMI, DCS and relevant protocols like HART/ FF/ PROFIBUS/ WiFi / BLE / WirelessHART / PROFINET/ MODBUS / Ethernet IP / OPC UA.
  • Deep understanding of industrial automation, hardware security, applied cryptography, threat modeling, vulnerability research.
  • Ability to quickly analyze and grasp key concepts in hardware specification documents, academic publications and industry white papers.
  • Practical cryptoanalysis, evaluation of weaknesses in crypto-primitives implementation.
  • Experience incorporating hardware-based security techniques (Hardware Security modules, TrustZone, Secure Boot, UEFI/BIOS and TPM, etc) into a robust hardware/software system design.
  • Working knowledge of IEC 61850.
  • Possess collaboration skills and experience of working with internal/external partners.

o Education:

      • Bachelors or Masters degree in Computer / Electronics Engineering or related field with 6-10 years of relevant experience.
      • Cybersecurity Certification is preferred.

WHY EMERSON Our Commitment to Our People We invest in our employees to ensure they have the marketplace knowledge, skills and competencies to compete and lead in a global economy. Our training programs focus on end-to-end development from onboarding through senior leadership. Flexible and competitive benefits plans offer you the right options to meet your individual/family needs Our success is measured by the positive impact we make on people, our communities and the world in which we live. Learn more about us . Our Commitment to Diversity & Inclusion At Emerson, we are committed to fostering a culture where every employee is valued and respected for their experiences and perspectives. We believe a diverse and inclusive work environment contributes to the rich exchange of ideas that inspires innovation and brings the best solutions to our customers. This philosophy is fundamental to living our company s values and our responsibility to leave the world in a better place. Diversity and Inclusion at Emerson is about welcoming, respecting, and valuing the differences each employee possesses. Inclusion is creating a real sense of engagement, belonging and connection for all employees. Learn more about our Culture & Values and about Diversity & Inclusion at Emerson .

If you have a disability and are having difficulty accessing or using this website to apply for a position, you can request help by sending an email to id**********************r@em****n.com .

Employement Category:

Employement Type: Full time
Industry: Manufacturing
Role Category: General / Other Software
Functional Area: Not Applicable
Role/Responsibilies: Lead Hardware Product Security Engineer

Contact Details:

Company: Emerson Innovation
Location(s): Pune

+ View Contactajax loader


Keyskills:   firewall networking customer relations ids penetration testing test environment setup environmental impact assessment ethernet ip diversity inclusion

 Job seems aged, it may have been expired!
 Fraud Alert to job seekers!

₹ Not Specified

Similar positions

Inno Protech - Data Engineer - SQL/Python

  • Alois Technologies
  • 5 to 9 Yrs
  • Other Karnataka
  • 1 month ago
₹ Not Specified

Software Engineer III - Quality Engineer

  • CareerXperts
  • 3 to 7 Yrs
  • Hyderabad
  • 1 month ago
₹ Not Specified

Senior QA Engineer

  • Bajaj Finserv
  • 4 to 8 Yrs
  • Indore+1 Other Madhya Pradesh
  • 1 month ago
₹ Not Specified

Lead Java Developer

  • Bajaj Finserv
  • 4 to 8 Yrs
  • Other Karnataka
  • 1 month ago
₹ Not Specified

Emerson Innovation