NVIDIA has been transforming computer graphics, PC gaming, and accelerated computing for more than 25 years. It’s a unique legacy of innovation that’s fueled by great technology—and amazing people. Today, we’re tapping into the unlimited potential of AI to define the next era of computing. An era in which our GPU acts as the brains of computers, robots, and self-driving cars that can understand the world. Doing what’s never been done before takes vision, innovation, and the world’s best talent. As an NVIDIAN, you’ll be immersed in a diverse, supportive environment where everyone is inspired to do their best work. Come join the team and see how you can make a lasting impact on the world.
Join NVIDIA, where innovation opens doors! We need a Senior Product Security Lead to direct product-security strategy and delivery for NVIDIA Jetson, Linux for Tegra (L4T), and the JetPack software platform. Jetson drives next-generation robotics, autonomous machines, and edge-AI products. This role plays an important part in making sure these products stay secure, maintainable, and production-ready throughout their lifecycles. You will lead full product security for Jetson, covering architecture, development, release, vulnerability response, and customer productization. The position brings together security efforts across NVIDIA's silicon, firmware, OS, platform, and application teams and partners with key customers to set security responsibilities and guarantee production readiness.
What you'll be doing:
Oversee and guide the entire product security strategy and roadmap for Jetson, L4T, and JetPack—from initial architecture and development through rollout and post-launch support—while establishing well-defined product-level security mandates, structural principles, release benchmarks, and lifecycle methodologies.
Embed secure-by-design principles across firmware, boot software, the Linux kernel, device drivers, system software, containers, and platform services by providing hands-on security engineering mentorship and partnering with silicon, firmware, manufacturing, and platform-security teams on core capabilities (e.g., secure boot, hardware roots of trust, key provisioning, device identity, debug security, trusted execution, rollback protection, and secure update).
Lead threat analysis and vulnerability assessments—including TAVA, threat modeling, risk analysis, attack-surface analysis, and security architecture reviews—while coordinating the triage and resolution of security findings with NVIDIA PSIRT and engineering teams to assess impact, prioritize risk, and drive mitigations to closure.
Support NVIDIA and customer readiness for cybersecurity regulations, such as the EU CRA, by identifying technical gaps and coordinating evidence. Clarify shared responsibilities and work closely with legal, compliance, and cybersecurity teams on regulatory interpretation.
Coordinate the creation and upkeep of product-security materials, including SBOMs, security white papers, secure-deployment mentorship, vulnerability-management documentation, and customer-facing security collateral.
Serve as the primary product-security contact for Jetson engineering teams, program management, NVIDIA PSIRT, internal application teams, and selected strategic customers and partners.
Develop scalable processes, reusable mentorship, and foundational security standards to align multiple development teams.
Define and track operational metrics covering vulnerability response, security-requirement coverage, remediation progress, security collateral generation, and overall product-release readiness.
What we need to see:
Bachelor’s or Master’s degree, or equivalent experience, in Computer Science, Electrical/Computer Engineering, Cybersecurity, or a related field. Applicants must have 12+ years in security engineering. At least 3 years should be in product-security, platform-security, security-architecture, or technical leadership.
Experience securing complex embedded, Linux, robotics, edge-computing, automotive, or system-on-chip platforms, with a strong understanding of low-level systems software such as firmware, bootloaders, kernels, device drivers, system services, and containers.
Solid platform-security fundamentals, including secure boot, roots of trust, trusted execution, key management, cryptography, secure provisioning, debug protection, and secure software update.
Practical experience with threat modeling, security architecture reviews, vulnerability assessments, risk analysis, and security-requirement development.
Experience integrating security practices into the software development lifecycle, encompassing code analysis, dependency management, vulnerability scanning, SBOM generation, and remediation workflows.
Lead and influence across organizations without direct authority. Growing in a global engineering environment with competing product and release priorities.
Excellent written and verbal communication skills, with the ability to explain complex security risks across engineers, executives, customers, and non-security partners.
Ways to stand out from the crowd:
Hands-on experience with NVIDIA Jetson, Tegra, L4T, JetPack, or similar ARM-based embedded platforms within robotics, industrial systems, autonomous machines, automotive, or edge AI.
Worked with CRA and security frameworks like NIST SSDF, IEC 62443, ISO/SAE 21434, ISO/IEC 27001, or ETSI EN 303 645. These covered lifecycle documentation, vulnerability handling, and regulatory evidence.
Experience handling coordinated vulnerability disclosures, CVEs, embargoed responses, software-supply-chain security, open-source dependencies, container security, signing, attestation, and build provenance.
Experience in C, C++, Python, or related programming languages for embedded systems and security analysis, accompanied by a background in developing customer-facing security white papers, guides, and threat assessments.
Demonstrated ability to balance strong security principles alongside platform performance, power, and lifecycle requirements. You identify urgent findings and systemic risks to promote durable improvements across organizational boundaries and customer production deployments.
You will also be eligible for equity and benefits.
This posting is for an existing vacancy.
NVIDIA uses AI tools in its recruiting processes.
NVIDIA is committed to fostering an inclusive work environment and proud to be an equal opportunity employer. As we highly value diversity in our current and future employees, we do not discriminate (including in our hiring and promotion practices) on the basis of race, religion, color, national origin, gender, gender expression, sexual orientation, age, marital status, veteran status, disability status or any other characteristic protected by law.Skills Required
- Bachelor's or Master's degree, or equivalent experience, in Computer Science, Electrical or Computer Engineering, Cybersecurity, or a related field
- 12+ years of experience in security engineering
- At least 3 years of experience in product security, platform security, security architecture, or technical leadership
- Experience securing complex embedded, Linux, robotics, edge-computing, automotive, or system-on-chip platforms
- Strong understanding of firmware, bootloaders, kernels, device drivers, system services, and containers
- Knowledge of secure boot, roots of trust, trusted execution, key management, cryptography, secure provisioning, debug protection, and secure software updates
- Practical experience with threat modeling, security architecture reviews, vulnerability assessments, risk analysis, and security-requirement development
- Experience integrating security practices into the software development lifecycle, including code analysis, dependency management, vulnerability scanning, SBOM generation, and remediation workflows
- Ability to lead and influence across organizations without direct authority
- Excellent written and verbal communication skills for explaining security risks to engineers, executives, customers, and non-security partners
- Experience with NVIDIA Jetson, Tegra, L4T, JetPack, or similar ARM-based embedded platforms
- Experience with CRA, NIST SSDF, IEC 62443, ISO/SAE 21434, ISO/IEC 27001, or ETSI EN 303 645
- Experience with coordinated vulnerability disclosures, CVEs, software supply-chain security, open-source dependencies, container security, signing, attestation, and build provenance
- Experience with C, C++, Python, or related programming languages for embedded systems and security analysis
- Experience developing customer-facing security white papers, guides, and threat assessments
NVIDIA Compensation & Benefits Highlights
The following summarizes recurring compensation and benefits themes identified from responses generated by popular LLMs to common candidate questions about NVIDIA and has not been reviewed or approved by NVIDIA.
-
Equity Value & Accessibility — Equity awards and a discounted ESPP are highlighted as core parts of total compensation, enabling employees to share in the company’s success. Stock-based compensation and the two-year lookback ESPP are consistently described as especially valuable.
-
Healthcare Strength — Health coverage is portrayed as robust, with comprehensive medical, dental, and vision options alongside mental health support and on-site care resources. Employer HSA contributions and wellness perks reinforce the depth of the offering.
-
Retirement Support — Retirement programs are depicted as strong, featuring a meaningful 401(k) match with Roth options and support for Mega Backdoor Roth contributions. These elements position long-term savings as a notable advantage of the total rewards package.
NVIDIA Insights
What We Do
NVIDIA’s invention of the GPU in 1999 sparked the growth of the PC gaming market, redefined modern computer graphics, and revolutionized parallel computing. More recently, GPU deep learning ignited modern AI — the next era of computing — with the GPU acting as the brain of computers, robots, and self-driving cars that can perceive and understand the world. Today, NVIDIA is increasingly known as “the AI computing company.”






