3 days ago
Cork, IrelandStaff+
Responsibilities
- Define and document security requirements for components on Dragonfly AI accelerator cards.
- Define secure communication mechanisms between the BMC and platform-management services using Redfish, SPDM, and PLDM interactions.
- Design device identity, measurement, evidence-generation, and verification processes for Platform Root of Trust attestation through the BMC.
- Represent the Dragonfly security team in customer, vendor, standards, and attestation-protocol interoperability forums.
- Evaluate third-party components and work with vendors to address security gaps.
- Design device-personalization and factory provisioning services for keys, certificates, identities, and configuration data.
- Design test plans and production-line validation systems for factory provisioning.
- Perform security architecture, prototyping, implementation review, automation, firmware and software review, and validation.
Requirements
- Bachelor’s degree in Engineering, Information Systems, Computer Science, or a related field, or a Master’s or PhD in a related field, with the stated software engineering or related experience.
- At least 7 years of product security or related experience is cited in the critical skills section; the minimum qualifications list degree-based alternatives requiring 2–4 years of software engineering or related experience.
- Understanding of the security relevance of BMCs, Platform Roots of Trust, flash devices, PCIe switches, and ACS on AI accelerator cards.
- Understanding of key management, certificate management, device security lifecycles, root-of-trust security, boot-chain security, and firmware authentication.
- Experience conducting security risk assessments, drafting security specifications, and reviewing systems against those specifications.
- Proficiency reviewing C-based firmware and software executing on physical accelerator-card components.
- Proficiency with Python for provisioning utilities, test automation, and protocol-validation tools.
- Preferred: Master’s degree with a security specialization, secure debug and RMA knowledge, MCTP/SPDM/PLDM/Redfish experience, factory security provisioning, device attestation, post-quantum cryptography, AI accelerator systems, and C-based provisioning systems.
- Excellent written and verbal communication skills.
Benefits
- Salary, stock, and performance-related bonus are offered, with no specific compensation amount stated.
- Maternity and paternity leave, employee stock purchase scheme, matching pension scheme, education assistance, and relocation and immigration support are offered.
- Life, medical, income, and travel insurance are provided.
- Subsidized physical and mental well-being memberships, a bicycle purchase scheme, and employee-run clubs are available.
- The role is based in Cork, Ireland, in an open, relaxed, and collaborative workplace.
About Qualcomm
Qualcomm is a public semiconductor company headquartered in San Diego, founded in 1985, that designs and sells wireless chipsets and platforms for mobile devices, automotive, IoT, and networking, notably the Snapdragon application processors and 5G modems. It also licenses a large portfolio of cellular patents to device makers, generating revenue alongside chip sales; its technology underpins many Android smartphones and emerging automotive and edge-compute systems, and it trades on NASDAQ as QCOM.
