Product Security Engineer (Hardware)
We are looking for a hardware-focused Product Security Engineer to join our Security and Certification team. Working closely with the hardware development team, you will analyze the security architecture of our RISC-V cores, hardware Root of Trust (RoT), firmware and SoC platform to support compliance with relevant security regulations and certifications, track the latest hardware attacks and turn that knowledge into concrete security tests and improvements for our designs.
This role focuses on security analysis of hardware architectures and their implementations. It suits someone who enjoys challenging hardware designs to make them stronger, enjoys going from a published attack to a working test against a real implementation and wants to grow in a technical and collaborative environment.
Key Responsibilities:
Security Documentation: Document our platform's hardware security specification and support regulatory and certification compliance efforts.
Vulnerability Analysis: Analyze the architecture, specifications, and implementation of our RISC-V cores, RoT, firmware and SoC platform to identify security weaknesses.
Threat Research: Stay current with RISC-V security, hardware and platform attacks and emerging threats.
Security Testing: Turn published attacks into security tests that validate our designs, and go beyond the state of the art by developing new attacks.
Collaboration with Hardware Teams: Report findings, propose mitigations and work with the development teams to fix vulnerabilities and strengthen the platform's security.
Requirements
Must-Have
Education: Master's degree in Electrical/Electronic Engineering, Computer Engineering, Computer Science, Cybersecurity or a related field.
Experience: 2–5 years of industry or research experience in hardware security, computer architecture or low-level systems security.
Computer Architecture: Solid understanding of RISC-V processor microarchitecture, ISA and SoC platform architecture.
Hardware Attacks: Good knowledge of hardware attack vectors, including microarchitectural, physical and memory-based attacks, and of how they exploit weaknesses in processor and SoC designs.
Low-Level Software: Experience with C and working knowledge of assembly, ideally RISC-V, to write attack proofs-of-concept and security tests.
Technical Communication: Ability to write clear, well-structured security specifications, technical reports and vulnerability findings.
Teamwork: Ability to work both independently and collaboratively within a diverse, inclusive team.
Highly Desirable
Experience with open-source hardware security projects such as Caliptra or OpenTitan.
Hands-on experience with side-channel analysis or fault injection tools and setups.
Experience reproducing published hardware attacks or taking part in CTFs and security research.
Experience with classical and Post-Quantum Cryptography (PQC) and implementation-level countermeasures.
Knowledge of confidential computing, trusted execution environments, remote attestation or memory isolation.
Awareness of hardware security standards and certification schemes (e.g., EU CRA, Common Criteria, FIPS 140-3) and their vulnerability analysis methods.
Scripting skills (e.g., Python) for test automation and data analysis.
Why Semidynamics
Work at one of Europe's most promising deep-tech semiconductor scale-ups
Accelerated development path, with room to grow into confidential computing, memory isolation and software security
4 days per week in the Barcelona office (city center), 1 day working from home
1 week of work from anywhere in the world
Competitive package
A collaborative, technical, growth-oriented environment that values direct ownership and clear thinking
- Department
- Silicon Engineering
- Location
- Barcelona
- Employment type
- Full-time