Back to search
BairesDev Linkedin · Posted 7d ago

Embedded Security Engineer - Remote Work | REF#302386

Veracruz

Linkedin
Continue to application Add your email once, then Caio opens the original posting.

Indexed description

At BairesDev®, we've been leading the way in technology projects for over 15 years. We deliver cutting-edge solutions to giants like Google and the most innovative startups in Silicon Valley.

Our diverse 4,000+ team, composed of the world's Top 1% of tech talent, works remotely on roles that drive significant impact worldwide.

When you apply for this position, you're taking the first step in a process that goes beyond the ordinary. We aim to align your passions and skills with our vacancies, setting you on a path to exceptional career development and success.

Embedded Security Engineer at BairesDev

In this role, you'll architect and implement Secure Boot from the ground up, building a hardware root of trust that carries through the entire boot chain from bootloader to kernel. Hardening storage, standing up a trusted execution environment, and automating cryptographic signing in CI/CD, you'll build security into the deepest layers of an embedded system. This is your opportunity to work on foundational security architecture for connected hardware, where your decisions determine what the entire platform can trust.

What You'll Do

  • Architect and implement Secure Boot from bootloader through kernel, building a hardware root of trust from scratch.
  • Harden storage using dm-verity and dm-crypt.
  • Stand up a Trusted Execution Environment and author trusted applications.
  • Enforce user-space sandboxing and access control mechanisms.
  • Automate cryptographic signing pipelines in CI/CD against a signing backend.

What We Are Looking For

  • 5+ years of experience in embedded systems engineering with a security focus.
  • Strong expertise in embedded Linux security, including dm-verity, dm-crypt, and ARM TrustZone EL1-EL3.
  • Proven experience designing hardware root of trust and Secure Boot from scratch, including U-Boot Verified Boot from bootloader through kernel.
  • Experience with embedded Linux board bring-up and BSP customization using Yocto.
  • Background with TEE development and trusted application authoring using OP-TEE.
  • Strong C skills with Python or Bash scripting.
  • Advanced proficiency in English.

How we do make your work (and your life) easier:

  • 100% remote work (from anywhere).
  • Excellent compensation in USD or your local currency if preferred
  • Hardware and software setup for you to work from home.
  • Flexible hours: create your own schedule.
  • Paid parental leaves, vacations, and national holidays.
  • Innovative and multicultural work environment: collaborate and learn from the global Top 1% of talent.
  • Supportive environment with mentorship, promotions, skill development, and diverse growth opportunities.

Join a global team where your unique talents can truly thrive and make a significant impact!

Apply now!

#BD-PRIO-2026

Free. 20 seconds. No password. See every match in this search.

Create a free Caio profile to unlock more results and save your role and location preferences.

Unlock free search
Want help applying to roles like this? Search Caio for free. If repetitive applications get heavy, Managed Job Search adds supervised execution for $99/month.
View Managed Job Search