Technologist HW/FW Product Security Engineer for SSDs

Milpitas, CA, United States

Western Digital

Western Digital, leaders in digital storage solutions compatible with Mac and PC. FREE shipping, friendly support, and 30-day return policy on storage products.

View all jobs at Western Digital

Company Description

At Western Digital, our vision is to power global innovation and push the boundaries of technology to make what you thought was once impossible, possible.

At our core, Western Digital is a company of problem solvers. People achieve extraordinary things given the right technology. For decades, we’ve been doing just that. Our technology helped people put a man on the moon.

We are a key partner to some of the largest and highest growth organizations in the world. From energizing the most competitive gaming platforms, to enabling systems to make cities safer and cars smarter and more connected, to powering the data centers behind many of the world’s biggest companies and public cloud, Western Digital is fueling a brighter, smarter future.

Binge-watch any shows, use social media or shop online lately? You’ll find Western Digital supporting the storage infrastructure behind many of these platforms. And, that flash memory card that captures and preserves your most precious moments? That’s us, too.

We offer an expansive portfolio of technologies, storage devices and platforms for business and consumers alike. Our data-centric solutions are comprised of the Western Digital®, G-Technology™, SanDisk® and WD® brands.

Today’s exceptional challenges require your unique skills. It’s You & Western Digital. Together, we’re the next BIG thing in data.

Job Description

The Hardware/Firmware Product Security Engineer will be a member of the Product Security Assurance team specializing in security considerations for hardware and firmware components in flash storage devices (SSDs).  This individual will provide crystal-clear technical direction and risk mitigation guidance for diverse engineering and business leaders at all levels. This person will also lead the evolution of secure development practices for hardware and firmware components.   During the product development process, this individual will advise the development team on security requirements and evaluate the architecture with a security lens.  The HW/FW Product Security Engineer will lead security risk assessments, guide threat modeling activities, and participate in validation of security requirements at the component or system level. Our ideal teammate has experience architecting and developing hardware/firmware that meets the highest cybersecurity standards, is highly motivated and passionate about technology.  This ideal candidate is eager to stay up to date with the latest industry trends and technologies and enjoys participating in industry consortiums. If this applies to you – join our collaborative team to develop together the next big thing in data!

ESSENTIAL DUTIES AND RESPONSIBILITIES:

  • Design and implement security architectures and features for hardware and storage devices 
  • Be a key technical contributor to the continuous improvement of the Secure Development Lifecycle 
  • Develop reference threat models for hardware components and devices overall
  • Assist development teams in adapting the reference threat model to the product/component specific threat model 
  • Perform security assessments, code audits and design reviews of embedded platforms throughout the secure development lifecycle 
  • Raise awareness and understanding of security considerations with engineers and leaders at all levels of the organization
  • Collaborate with development teams on security during design/development/testing 
  • Partner with teams to develop robust security validation plans and verify implementations of security controls
  • Research and develop technical solutions to mitigate security risks 
  • Participate in industry consortiums/standards bodies and conduct research to identify new attack vectors and industry trends 

Qualifications

REQUIRED:

  • Bachelor’s degree or greater with focus in Computer Science, Engineering, or relevant field from an accredited college/university 
  • Design and engineering of security requirements and security controls for storage devices 
  • Knowledge of cybersecurity standards and best practices
  • Hardware & Firmware security architecture design and integration 
  • Knowledge of low level hardware-software interactions, such as storage in flash, RAM or cache
  • Working understanding of security threats, security risk assessments, security threat modeling, security risk mitigation, and security incident reporting
  • Experience working with cryptographic protocols/libraries 

Typical Minimum Experience Preferred (Desired Skills/Experience) 

  • 5-7 years of related experience preferred 
  • 3+ years of embedded hardware/software design and development 
  • Familiar with FIPS 140
  • Experience with two or more of the following: real-time software development, vehicle electronics and controls, embedded systems design, application security, penetration testing, incident response 
  • Experience with embedded software development is a plus

Additional Information

Western Digital thrives on the power and potential of diversity. As a global company, we believe the most effective way to embrace the diversity of our customers and communities is to mirror it from within. We believe the fusion of various perspectives results in the best outcomes for our employees, our company, our customers, and the world around us. We are committed to an inclusive environment where every individual can thrive through a sense of belonging, respect and contribution.

Western Digital is committed to offering opportunities to applicants with disabilities and ensuring all candidates can successfully navigate our careers website and our hiring process. Please contact us at staffingsupport@wdc.com to advise us of your accommodation request. In your email, please include a description of the specific accommodation you are requesting as well as the job title and requisition number of the position for which you are applying.

#LI-AS1

#LI-SS1

* Salary range is an estimate based on our InfoSec / Cybersecurity Salary Index 💰

Job stats:  7  0  0

Tags: Application security Audits Cloud Computer Science Incident response Pentesting Product security Risk assessment Security assessment

Region: North America
Country: United States

More jobs like this

Explore more career opportunities

Find even more open roles below ordered by popularity of job title or skills/products/technologies used.