Senior Hardware Security Engineer

Lime Lime · Consumer · United Kingdom · Engineering

Senior Hardware Security Engineer role focused on the security architecture, threat modeling, testing, and hardening of hardware and firmware platforms for micromobility products. The role involves evaluating silicon, assessing risks, performing hands-on security assessments, developing firmware hardening recommendations, and contributing to security standards and compliance efforts.

What you'd actually do

  1. Contribute to hardware security architecture reviews for product platforms, providing security input on secure boot chains, hardware roots of trust, trusted execution environments (TEEs), and cryptographic implementations.
  2. Conduct threat modeling exercises for hardware and firmware components, identifying attack surfaces across the product stack.
  3. Perform hands-on security assessments of hardware platforms, including side-channel analysis, fault injection testing, firmware reverse engineering, and debug interface evaluation.
  4. Develop firmware hardening recommendations and work with firmware engineering teams to implement secure boot, firmware update integrity, tamper detection and runtime protection mechanisms across product platforms.
  5. Participate in incident response efforts for hardware and firmware security incidents, contributing to investigation, root-cause analysis, and corrective action to prevent recurrence.

Skills

Required

  • hardware security engineering
  • firmware security engineering
  • embedded systems security
  • secure boot
  • trusted execution environments (TEEs)
  • cryptographic implementations
  • threat modeling
  • risk assessment
  • side-channel analysis
  • fault injection testing
  • firmware reverse engineering
  • debug interface evaluation
  • firmware hardening
  • secure update mechanisms
  • tamper detection
  • runtime protection
  • hardware-software interfaces
  • incident response
  • root-cause analysis
  • automated security tooling
  • compliance validation
  • CI/CD
  • DevOps
  • industry frameworks (NIST SP 800-193, Common Criteria, FIPS 140, IEC 62443)
  • product security certifications

Nice to have

  • confidential computing
  • post-quantum cryptographic hardware
  • hardware-backed attestation
  • UEFI
  • BMC
  • TPM interactions

What the JD emphasized

  • hardware security
  • firmware security
  • embedded systems