OUR SECTORS
At Tech Recruit, our sectors cover a wide range of industries within the field of technology.
At European Recruitment, our sectors cover a wide range of industries within the field of technology
At European Recruitment, our sectors cover a wide
range of industries within the field of technology
At European Recruitment, our sectors cover a wide
range of industries within the field of technology
Client services
Learn about the range of client services we offer at Tech Recruit, and browse through our case sudies.
At European Recruitment, our sectors cover a wide range of industries within the field of technology
About us
Learn about Tech Recruit's mission, values, our team, and our commitment to DE&I.
At European Recruitment, our sectors cover a wide range of industries within the field of technology
Staff Software Engineer – AI Accelerator Card Security Engineer
Staff Software Engineer – AI Accelerator Card Security Engineer
General Summary:
Our AI accelerator cards provide the backbone of an enhanced AI experience by shifting the AI workloads away from generic processors and onto specialized NPU cores that provide faster execution times, shorter latencies, and lower power consumption. These accelerators bear the responsibility of processing valuable user and model data – meaning that security is a critical product requirement that must be achieved to guarantee the products’ success in the market.
We are seeking a talented security engineer to join the security team to ensure that the components of the AI accelerator card meet the security requirements and are securely configured and provisioned.
You will determine the appropriate security requirements for the components on an AI accelerator card; evaluate third-party components; determine appropriate strategies for provisioning security information to the devices; and work with our partners to ensure that these strategies are implemented.
Responsibilities:
In this role, you will be responsible for ensuring that the components and software on the AI accelerator cards meet security requirements, and are securely configured and provisioned:
- Define and document the security requirements for components on an AI Accelerator card.
- Define and document the mechanisms used for secure communication between the Board Management Controller (BMC) and the platform-management services, including relevant Redfish, SPDM-based, and PLDM-based interactions.
- Define and document processes to establish the device identity, collect measurements, generate evidence, and verify that evidence that allow a Platform Root of Trust (PRoT) to attest the state of the AI accelerator card to a management service through the BMC.
- Represent the security team in relevant customer, vendor, and standards forums, especially forums related to the use, development, and interoperability of attestation protocols.
- Evaluate components for their ability to meet the security requirements and work with vendors to improve components that do not meet the relevant requirements.
- Design and document services for device-personalization and provisioning of keys, certificates, identities, and configuration data in factory environments.
- Design and document test plans and production-line validation systems to verify that identities, keys, certificates, and secure configuration data have been provisioned correctly to devices in the factory environment.
The role combines security architecture and requirements development with hands-on prototyping, implementation review, automation, and validation.
Critical Skills:
The successful candidate will have the following skills:
- A Bachelor’s degree in Engineering, Information Systems, Computer Science, or related field, and 7+ years of experience in product security or a related field. Work experience gained by successfully completing a Master’s or Doctoral degree will be taken into consideration.
- An understanding of the security relevance of the physical components that exist on an AI accelerator card (such as the BMC, the PRoT, flash devices, and PCIe switches, including the use of ACS).
- An understanding of the principles of key management and certificate management.
- An understanding of the principles of the security lifecycle of devices, root-of-trust security, boot-chain security, and firmware authentication.
- Experience in performing security risk assessments on systems of discrete components.
- Experience in drafting security specifications and reviewing systems to determine if they meet those specifications.
- Proficiency in the security review of firmware and software that executes on the physical components on an AI accelerator card written in the C programming language.
- Proficiency in the use of the Python programming language with experience in developing provisioning utilities, test automation, and protocol-validation tools.
- Excellent written and verbal communication skills.
Preferred Skills:
A preferred candidate will have the following addition skills:
- A Master’s degree with a security specialization in Engineering, Information Systems, Computer Science, or related field.
- Understanding of the principles of secure debug and RMA flows.
- Understanding of the MCTP, SPDM, PLDM, and Redfish protocols.
- Experience in designing security provisioning protocols in a factory setting.
- Experience in designing security systems for attestation of devices, including an understanding of the role of post-quantum cryptography in the security of attestation protocols.
- Experience in implementing the specifications of the Open Compute Project (OCP), the Confidential Computing Consortium (CCC), and the IETF RATS working group (such as the EAT token format).
- Experience in the development of AI accelerator systems.
- Proficiency in the C programming languages with experience in developing systems for provisioning keys, certificates, and secure configuration data.
Apply Now
By applying to this role, you acknowledge that we may collect, store, and process your personal data on our systems.
For more information, please refer to our
Privacy
Notice