SGS

Senior Security Evaluator – Crypto code review

SGS
Apply
3 months ago
Delft, NetherlandsSenior

Responsibilities

  • Thoroughly review cryptographic library code to identify implementation weaknesses and vulnerabilities.
  • Define sophisticated attack scenarios using side-channel analysis, fault injection, and other state-of-the-art methods.
  • Assess secure cryptographic implementations and provide argumentation supporting product certification.
  • Communicate findings and recommendations convincingly to product developers, internal experts, and approval bodies.
  • Document security findings and assessment rationale for developers and certification authorities.
  • Guide and support experts conducting side-channel and fault-injection attacks in laboratory settings.
  • Collaborate with multidisciplinary evaluation teams and participate in technical domain groups and training programs.

Requirements

  • BSc, MSc, or PhD in a technical field such as Information Security, Computer Science, Electronics, or Mathematics.
  • Experience with cryptographic implementations and testing for embedded systems.
  • Knowledge of cryptographic algorithms including DES, AES, RSA, ECC, and HMAC.
  • Experience with secure implementations and understanding of side-channel analysis and fault-injection attack methods.
  • Ability to explain technical weaknesses clearly and communicate knowledge effectively in oral and written English.
  • Demonstrable understanding of Post-Quantum Cryptography is preferred.

Benefits

  • Brightsight training program ranging from basic to expert level.
  • Supportive environment focused on professional growth and development.
  • Competitive salary package based on the candidate.
  • Work with a multicultural, international team and major developers on current innovations.
  • Informal and intellectually challenging work environment.
  • Opportunity to learn from secure implementations across global vendor solutions.

Categories

SGS

About SGS

10,000+ employees
Contact me