Security Firmware Engineer

Posted 4 Days Ago
Be an Early Applicant
Hiring Remotely in India
Remote
Mid level
Hardware • Software • Analytics
The Role
Investigate and remediate firmware vulnerabilities, perform security analysis of firmware and update mechanisms, support secure boot and signing, conduct threat modeling and risk assessments, maintain SBOMs and supplier security documentation, ensure alignment with product cybersecurity standards, and collaborate with firmware, QA, and compliance teams to embed security-by-design.
Summary Generated by Built In

Role : Security Firmware Engineer Job Description: Vertiv Thermal business unit is seeking an Embedded Product Security Engineer to help protect the security and integrity of our embedded thermal firmware platforms and exposed system interfaces across mission-critical infrastructure products. This role is responsible for investigating, analyzing, and resolving security vulnerabilities, supporting regulatory and standards compliance, and partnering with firmware and platform engineering teams to embed security-by-design practices throughout the product lifecycle. The successful candidate will play a key role in ensuring Vertiv products meet evolving cybersecurity expectations while maintaining reliability and performance in critical customer environments. This role offers the opportunity to:

· Influence product-level cybersecurity across thermal embedded platforms.

· Work closely with firmware, controls, and platform engineering teams.

· Contribute directly to security-by-design practices in mission-critical systems. Required Experience

· Bachelor’s degree in Computer Engineering, Computer Science, Electrical Engineering, or a related technical field.

· Experience working with embedded firmware or embedded Linux-based platforms.

· Working knowledge of embedded security concepts, including secure boot, firmware signing, cryptography, and secure update mechanisms.

· Experience investigating or mitigating software vulnerabilities in embedded or product environments.

· Familiarity with networked embedded systems and common protocols (e.g., TCP/IP, TLS, diagnostics interfaces).

· Ability to collaborate effectively with cross-functional engineering, quality, and compliance teams.

· Preferred Experience

· Experience with product cybersecurity standards such as IEC 62443, ISO/SAE 21434, or similar industrial/OT security frameworks.

· Familiarity with SBOM formats and tooling (e.g., CycloneDX, SPDX). Responsibilities

· Investigate reported and internally discovered firmware vulnerabilities across embedded and gateway platforms.

· Perform security analysis of embedded firmware packages, update mechanisms, and exposed interfaces (network, diagnostic, field service).

· Support secure boot, firmware signing, and update validation implementations in collaboration with firmware engineering teams.

· Conduct threat modeling and risk assessments for embedded platforms and interface exposure.

· Drive vulnerability response workflows, including root cause analysis, remediation tracking, and verification.

· Ensure alignment with product cybersecurity standards and regulations, including IEC 62443, ISO 27001, NIS2, and CRA-related obligations.

· Review and maintain SBOMs and supplier security documentation to support compliance and supply-chain security requirements.

· Partner with QA and firmware teams on security testing, validation, and release readiness.

· Contribute to internal security requirements, checklists, and conformance matrices for embedded platforms. Education & Certifications:

Bachelor’s degree or foreign equivalent with strong emphasis on software: Computer Science, Software Engineering, Mechanical Engineering, Electrical Engineering, or Computer Engineering

Requirements 3+ years of experience resolving security issues in embedded firmware 3+ years of experience with Linux-based secure firmware development and testing 3+ years of experience using the C/C++ programming language

Skills Required

  • Bachelor's degree in Computer Engineering, Computer Science, Electrical Engineering, or related technical field
  • 3+ years resolving security issues in embedded firmware
  • 3+ years with Linux-based secure firmware development and testing
  • 3+ years using the C/C++ programming language
  • Experience working with embedded firmware or embedded Linux-based platforms
  • Working knowledge of embedded security concepts (secure boot, firmware signing, cryptography, secure update mechanisms)
  • Experience investigating or mitigating software vulnerabilities in embedded or product environments
  • Familiarity with networked embedded systems and common protocols (TCP/IP, TLS, diagnostics interfaces)
  • Ability to collaborate effectively with cross-functional engineering, quality, and compliance teams
  • Experience with product cybersecurity standards such as IEC 62443, ISO/SAE 21434, or similar industrial/OT security frameworks
  • Familiarity with SBOM formats and tooling (CycloneDX, SPDX)
Am I A Good Fit?
beta
Get Personalized Job Insights.
Our AI-powered fit analysis compares your resume with a job listing so you know if your skills & experience align.

The Company
HQ: Columbus, OH
8,435 Employees
Year Founded: 2016

What We Do

Vertiv (NYSE: VRT) brings together hardware, software, analytics and ongoing services to ensure its customers’ vital applications run continuously, perform optimally and grow with their business needs. Vertiv solves the most important challenges facing today’s data centers, communication networks and commercial and industrial facilities with a portfolio of power, cooling and IT infrastructure solutions and services that extends from the cloud to the edge of the network. Headquartered in Columbus, Ohio, USA, Vertiv employs approximately 20,000 people and does business in more than 130 countries. For more information, and for the latest news and content from Vertiv, visit Vertiv.com.

Similar Jobs

Mondelēz International Logo Mondelēz International

Platform Engineer

Big Data • Food • Hardware • Machine Learning • Retail • Automation • Manufacturing
Remote or Hybrid
India
90000 Employees

JPMorganChase Logo JPMorganChase

Data Scientist

Financial Services
Remote or Hybrid
2 Locations
289097 Employees

Capco Logo Capco

Alteryx Developer

Fintech • Professional Services • Consulting • Energy • Financial Services • Cybersecurity • Generative AI
Remote or Hybrid
India
6000 Employees
Remote or Hybrid
3 Locations
289097 Employees

Similar Companies Hiring

Hanover Park Thumbnail
Artificial Intelligence • Fintech • Software • Financial Services
New York, New York
42 Employees
Kepler  Thumbnail
Fintech • Software
New York, New York
6 Employees
Onshore Thumbnail
Artificial Intelligence • Fintech • Software • Financial Services
New York, New York
60 Employees

Sign up now Access later

Create Free Account

Please log in or sign up to report this job.

Create Free Account