Job Description
Top skills/Must haves:
****Embedded Hardware Security
****Reverse Engineering
****Linux
Preferred skills/Pluses:
· Experience with Reverse Engineering
· Experience with Binary Analysis methods and tools (e.g., IDA Pro, Ghidra)
· Experience working with various operating systems such as MacOS, Windows and Android operating systems
Embedded Security Testing Engineer
In this role you will play a pivotal role in shaping the overall cybersecurity posture for Toyota. As an embedded security testing engineer, you will be responsible for leading and performing advanced security testing engagements for current and forward-model systems throughout Toyota’s Connected Car ecosystem.
Responsibilities:
Qualifications:
* Bachelor’s degree (or higher) in Electrical Engineering, Computer Science, Cybersecurity or related is strongly desired
* Demonstrate a good working knowledge of core security concepts, embedded security best practices (e.g. secure boot, secure debug, secure storage, secure communications) and the secure development lifecycle activities
* Hands-on experience with designing and testing of the core embedded security concepts above
* Experience with reverse engineering and binary analysis methods and tools (e.g. IDA Pro, Ghidra)
* Experience with vulnerability analysis using CVSS scoring and CWE types
* Knowledge of Linux and other embedded operating systems is preferred
* Proficient in C, C++, Python (specifically for writing tools to help tasks)
* Hands-on experience securing Linux, MacOS, Windows and Android operating systems
* Ability to handle tasks with significant complexity under minimal supervision requiring a high degree of technical competence
* Experience with on-board communication interfaces such JTAG, SPI, UART, and SWD
Additional Valued Attributes:
* Experience in designing, developing and debugging embedded security applications is a plus
* Familiarity with Automotive and Industry standards and best practices such at ISO-SAE 21434, SAE J3101
* Knowledge of common communication protocols found in the automotive ecosystem such as TCP/IP, Automotive Ethernet, CAN, LIN, MOST, 3G/4G/LTE, Bluetooth, BLE, Wi-Fi
* Knowledge of cryptography and applied cryptography for provisioning secure hardware is desirable
* Knowledge of ARM (including Trust Zone architecture) and other embedded microprocessors
* Practical experience with security controls for POSIX type operating systems
* Understanding of SoC security technologies (e.g. eFuses, HAB)
* Experience designing small PCBs for testing purposes
* Hands-on experience with soldering and “chip-off” equipment
* Familiarity with reading wiring schematics and component datasheets
* Experience with vulnerability management process (from proof-of-concept to remediation)
Company Description
K & K Technical Group, Inc. is a customer driven technical solutions company. We provide innovative solutions, focused on meeting our customers technical requirements through engineering, maintenance, and project management services. We are committed to delivering the highest quality of service for the mutual benefit of our customers and K & K.
K & K Technical Group, Inc. is a customer driven technical solutions company. We provide innovative solutions, focused on meeting our customers technical requirements through engineering, maintenance, and project management services. We are committed to delivering the highest quality of service for the mutual benefit of our customers and K & K.