NextRaiseNextRaiseFind jobs
Sign inSign up free
Jobs
1 month ago
Apply with autofill
Apply with autofill
Connect·1 month ago
1 month ago

Principal Security Firmware Architect

Taipei City, Taiwan, Province of ChinaSenior · 10-15 yearsArchitect

Sign up free to see how well your resume matches this role.

Boost your chances at connect

How you compare FREE

?
Your scoreYour score: not yet known

Must-have skills for this role

  • embedded firmware
  • cryptography
  • security microarchitecture
  • secure boot

PDF or DOCX · no account needed

Apply faster with autofill FREEThe NextRaise extension autofills your application in one click.careers.example.com/applyAutofillingFull namePriya SharmaEmailpriya.sharma@example.comPhone+49 30 1234567LocationBerlGet the extension

What you'll do

  • Lead the architecture and design of secure embedded firmware solutions, ensuring robust protection against vulnerabilities and threats.
  • Develop and implement security microarchitectures, leveraging advanced cryptographic techniques and protocols.
  • Collaborate with cross-functional teams to integrate security features into embedded systems, ensuring compliance with industry standards and best practices.
  • Conduct thorough security assessments and threat modeling to identify and mitigate potential vulnerabilities in firmware designs.
  • Mentor and guide junior engineers in best practices for secure firmware development and cryptographic implementations.
  • Stay abreast of emerging security technologies and trends, and evaluate their applicability to our products and solutions.
  • Drive the adoption of secure coding practices and tools, including static and dynamic code analysis, to enhance the security posture of our firmware.
  • Work closely with hardware teams to interpret board schematics and data sheets, ensuring seamless integration of security features.
  • Lead initiatives to enhance systems management and security in data center environments, focusing on server components and management protocols.
  • Champion the implementation of Secure Boot, SPDM, Root of Trust, TCG DICE, and NIST 800-193 standards across our product lines.
  • Collaborate with industry partners and stakeholders to advance security features in Baseboard Management Controllers (BMC) and associated protocols.

What they're looking for

  • Bachelor's in Electrical Engineering , Computer Science, Computer Engineering, or related technical discipline
  • 12 + years of experience in BMC development including developing industry standard security practices , secure architecture and tools (alternatively 10+ years with an MS degree)
  • Extensive experience in embedded firmware development, with a focus on security and cryptography.
  • Deep knowledge of embedded protocols such as I2C, I3C, SPI, USB, PCIe, and others.
  • Proven experience in both bare metal and OS-based embedded firmware development, including RTOS, embedded Linux, and Uboot .
  • Strong expertise in security microarchitecture and design, with a focus on cryptographic algorithms and protocols (CIA, Certificates, PKI, SHA, ECC, HMAC, AES).
  • Demonstrated ability to identify and address security vulnerabilities in embedded systems.
  • Familiarity with industry-standard static and dynamic code analysis tools such as Coverity.
  • Ability to read and interpret complex board schematics and data sheets.
  • Experience with systems management in data center environments, including server components and management protocols.
  • Familiarity with Secure Boot, SPDM, Root of Trust, TCG DICE, and NIST 800-193 standards.
  • Experience with Baseboard Management Controllers (BMC), Redfish, PLDM, Yocto , and OpenBMC software stack.

Nice to have

  • Experience with OCP S.A.F.E. audits is preferred.
  • Knowledge of code composition tools such as Black duck or equivalent is plus.
  • Knowledge of any specific FPGAs security features is a plus.

Summarised by NextRaise from the employer’s description, which follows in full below.

Full description from employer

About the Role 

As a leader/team member in Security Firmware Architecture, you will drive balanced, scalable, and automated solutions. In this high visibility position, your software systems engineering expertise will be necessary towards product development, definition, and root cause resolution.   

   

What You Will Do 

  • Lead the architecture and design of secure embedded firmware solutions, ensuring robust protection against vulnerabilities and threats. 

  • Develop and implement security microarchitectures, leveraging advanced cryptographic techniques and protocols. 

  • Collaborate with cross-functional teams to integrate security features into embedded systems, ensuring compliance with industry standards and best practices. 

  • Conduct thorough security assessments and threat modeling to identify and mitigate potential vulnerabilities in firmware designs. 

  • Mentor and guide junior engineers in best practices for secure firmware development and cryptographic implementations. 

  • Stay abreast of emerging security technologies and trends, and evaluate their applicability to our products and solutions. 

  • Drive the adoption of secure coding practices and tools, including static and dynamic code analysis, to enhance the security posture of our firmware. 

  • Work closely with hardware teams to interpret board schematics and data sheets, ensuring seamless integration of security features. 

  • Lead initiatives to enhance systems management and security in data center environments, focusing on server components and management protocols. 

  • Champion the implementation of Secure Boot, SPDM, Root of Trust, TCG DICE, and NIST 800-193 standards across our product lines. 

  • Collaborate with industry partners and stakeholders to advance security features in Baseboard Management Controllers (BMC) and associated protocols. 

  • Experience with OCP S.A.F.E. audits is preferred. 

   

What You Bring 

  • Bachelor's in Electrical Engineering, Computer Science, Computer Engineering, or related technical discipline 

  • 12+ years of experience in BMC development  including developing industry standard security practices , secure architecture and tools (alternatively 10+ years with an MS degree) 

  •  Extensive experience in embedded firmware development, with a focus on security and cryptography. 

  • Deep knowledge of embedded protocols such as I2C, I3C, SPI, USB, PCIe, and others. 

  • Proven experience in both bare metal and OS-based embedded firmware development, including RTOS, embedded Linux, and Uboot. 

  • Strong expertise in security microarchitecture and design, with a focus on cryptographic algorithms and protocols (CIA, Certificates, PKI, SHA, ECC, HMAC, AES). 

  • Demonstrated ability to identify and address security vulnerabilities in embedded systems. 

  • Familiarity with industry-standard static and dynamic code analysis tools such as Coverity. 

  • Knowledge of code composition tools such as Black duck or equivalent is plus. 

  • Ability to read and interpret complex board schematics and data sheets. 

  • Experience with systems management in data center environments, including server components and management protocols. 

  • Familiarity with Secure Boot, SPDM, Root of Trust, TCG DICE, and NIST 800-193 standards. 

  • Experience with Baseboard Management Controllers (BMC), Redfish, PLDM, Yocto, and OpenBMC software stack. 

  • Knowledge of any specific FPGAs security features is a plus. 

  • Excellent communication and leadership skills, with the ability to work effectively in a dynamic and collaborative environment. 

  • Self-starter with the ability to work independently and drive projects to completion. 

#ZTSANENG2025!

About ZT Systems

At ZT Systems, a Sanmina Company, you’ll get to do work you are proud of alongside smart, passionate people. Every day, there are opportunities to collaborate with the best in the industry to design, build, and deliver impactful solutions to world-class customers. Along the way, you will gain hands-on experience in a fast-paced environment that���s challenging, rewarding, and career-defining.

A culture built around our values we work hard and think fast. We view challenges as opportunities—to do better, push harder, and be faster than we were the day before. When we fail, we learn from it and move on together. And when we succeed, we use the momentum to go even further. We create value with everything we do, building the foundation of today—and transforming the future of tomorrow.


Join ZT Systems and help us build technology infrastructure that connects the world.

What We Offer
At ZT Systems, a Sanmina Company, we believe that investing in our people is key to our continued growth and innovation. When you join our team, you’ll gain access to a comprehensive and inclusive benefits package designed to support your well-being, financial security, and professional development—both now and in the future.

Compensation & Financial Security

-Competitive base salary

-Performance-based annual bonus eligibility

-401(k) retirement savings plan

-Tuition reimbursement for eligible education programs

Health & Wellness

-Comprehensive medical, dental, and vision coverage with access to leading providers

-Mental health resources and employee wellness support programs-

-Company-paid life and disability insurance

Time Away & Work-Life Balance

-Paid time off (PTO) and company-paid holidays

-Parental leave and family care support programs

Growth & Purpose

-Structured training programs and on-the-job learning opportunities

-Matching gifts and volunteer programs to support causes you care about

These benefits are available to eligible employees and are designed to grow with you as your career evolves. Full benefits and eligibility varies by work location. Learn more about our benefits here.

ZT Group Int’l. is an Equal Opportunity Employer and prohibits discrimination and harassment of any kind. ZT Systems provides equal employment opportunities to all employees and applicants for employment and prohibits discrimination and harassment of any type without regard to race, color, religion, age, sex, national origin, disability status, genetics, protected veteran status, sexual orientation, gender identity or expression, or any other characteristic protected by federal, state, or local laws.

Please be aware that certain positions may require the applicant to either 1) be a (i) U.S. citizen or national, (ii) U.S. lawful, permanent resident (aka green card holder), (iii) Refugee under 8 U.S.C. § 1157, or (iv) Asylee under 8 U.S.C. § 1158, or 2) be eligible to obtain an export control license or license exception from the Bureau of Industry and Science & U.S. Department of Commerce. All offers of employment will be conditional subject to the foregoing.

Company

Connect
Taipei City, Taiwan, Province of China

Company facts come from this company's own listings. We only show what the postings themselves carry.

Sourced from Connect's careers site·first seen 22 Jun 2026·last verified 8 Sept 2026·How we source jobs

Similar jobs

  • CPU Architecture and Performance Architect at GoogleNew Taipei, Taiwan, Province of China–match not yet calculated
  • SoC Power Architect, Pixel Power at GoogleNew Taipei, Taiwan, Province of China–match not yet calculated
  • DRAM Architect – Principal Engineer | MTS - TPG at Micron TechnologyHsinchu, Taiwan, Province of China–match not yet calculated
  • Principal BIOS / Firmware Architect at connectTaipei City, Taiwan, Province of China–match not yet calculated
  • Design Architecture, Principal Engineer at Micron TechnologyHsinchu, Taiwan, Province of China–match not yet calculated

Browse more jobs

  • Architect jobs in United States
  • Architect jobs in India
  • Architect jobs in United Kingdom
  • Retail Sales Associate jobs in United States