freehire launches on Product Hunt on 26 August.

Follow →

Embedded Security Engineer - Remote Work

Summary

Design and implement Secure Boot, hardware root of trust, and trusted execution environments for embedded Linux systems, hardening storage and automating cryptographic signing in CI/CD.

At BairesDev®, we've been leading the way in technology projects for over 15 years. We deliver cutting-edge solutions to giants like Google and the most innovative startups in Silicon Valley.

Our diverse 4,000+ team, composed of the world's Top 1% of tech talent, works remotely on roles that drive significant impact worldwide.

When you apply for this position, you're taking the first step in a process that goes beyond the ordinary. We aim to align your passions and skills with our vacancies, setting you on a path to exceptional career development and success.

Embedded Security Engineer at BairesDev

In this role, you'll architect and implement Secure Boot from the ground up, building a hardware root of trust that carries through the entire boot chain from bootloader to kernel. Hardening storage, standing up a trusted execution environment, and automating cryptographic signing in CI/CD, you'll build security into the deepest layers of an embedded system. This is your opportunity to work on foundational security architecture for connected hardware, where your decisions determine what the entire platform can trust.

What You'll Do:

- Architect and implement Secure Boot from bootloader through kernel, building a hardware root of trust from scratch.
- Harden storage using dm-verity and dm-crypt.
- Stand up a Trusted Execution Environment and author trusted applications.
- Enforce user-space sandboxing and access control mechanisms.
- Automate cryptographic signing pipelines in CI/CD against a signing backend.

What we are looking for:

- 5+ years of experience in embedded systems engineering with a security focus.
- Strong expertise in embedded Linux security, including dm-verity, dm-crypt, and ARM TrustZone EL1-EL3.
- Proven experience designing hardware root of trust and Secure Boot from scratch, including U-Boot Verified Boot from bootloader through kernel.
- Experience with embedded Linux board bring-up and BSP customization using Yocto.
- Background with TEE development and trusted application authoring using OP-TEE.
- Strong C skills with Python or Bash scripting.
- Advanced proficiency in English.

How we do make your work (and your life) easier:

- 100% remote work (from anywhere).
- Excellent compensation in USD or your local currency if preferred
- Hardware and software setup for you to work from home.
- Flexible hours: create your own schedule.
- Paid parental leaves, vacations, and national holidays.
- Innovative and multicultural work environment: collaborate and learn from the global Top 1% of talent.
- Supportive environment with mentorship, promotions, skill development, and diverse growth opportunities.

Join a global team where your unique talents can truly thrive and make a significant impact!

Apply now!

See also

Tailor your CV for this role?

We couldn't check your fit for this role — add a CV to your profile to see it next time.

A new version of freehire is available