← Back to job listings
AN
Offensive Hardware Security Engineer (Platform Security)
Anthropic · New York, United States
About The Role
Join Anthropic, a leading AI safety and research company, as an Offensive Hardware Security Engineer. In this role, you will assess security features in hardware, firmware, bootloaders, operating systems, and attestation systems to identify and eliminate vulnerabilities. You will work cross-functionally with teams across Anthropic and our partners, taking ownership of the security of our platform from the ground up. This position requires expertise in low-level systems security and the ability to audit the most security-critical platform elements.
- Conduct thorough audits of secure boot chains, attestation systems, and measured boot implementations to identify and eliminate vulnerabilities.
- Collaborate cross-functionally with teams to integrate security controls and validate security mechanisms before production deployment.
- Take ownership of the vulnerability assessment process, ensuring that all identified vulnerabilities are fully addressed and mitigated in production.
- Proficiency in low-level programming languages (C, Assembly) and systems programming
- Experience with UEFI/BIOS or embedded firmware security, bootloader hardening, and chain of trust implementation
- Hands-on experience with secure boot, measured boot, and attestation technologies (TPM, Intel TXT, AMD SEV, ARM TrustZone)
- Knowledge of firmware vulnerability assessment and threat modeling
- Strong communication and cross functional collaboration skills
- Strong understanding of cryptographic protocols and hardware security modules
- Ability to work effectively across hardware and software boundaries
- Track record of assessing security architectures for complex, distributed systems
- Proven track record of conducting hands-on vulnerability auditing on complex, security-critical systems
- 8+ years of experience in systems security, with at least 5 years focused on low-level security (firmware, bootloaders, and OS kernel-level security)
- Capacity to audit for logic bugs in code written in Rust or Go
- Experience performing fault injection & side-channel analysis attacks on hardware
- Ability to find vulnerabilities via reverse engineering in software that is provided only in binary form
- Experience auditing silicon root of trust implementations
- Experience auditing confidential computing technologies and hardware-based TEEs
- Background in formal verification or security proof techniques
- 5 or more talks at top-tier security conferences with candidate listed as first author
- Experience using LLMs to automate security assessment (including tooling creation)
- Experience securing large-scale HPC or cloud infrastructure
- Previous work with AI/ML infrastructure security
- Minimum education: Bachelor’s degree or an equivalent combination of education, training, and/or experience
- Minimum years of experience: Years of experience required will correlate with the internal job level requirements for the position
- Required field of study: A field relevant to the role as demonstrated through coursework, training, or professional experience
- We encourage you to apply even if you do not believe you meet every single qualification
This is an external listing. JobSpring does not represent or verify the employer. Report this listing
JobSpring