Sr. Principal System Firmware Authentication Engineer
Ampere · Santa Clara, CA · Yesterday
HybridEngineering$226k–$339k/yrFull-time
About The Role
Ampere Computing is seeking a Sr. Principal System Firmware Authentication Engineer to lead the architecture, development, and validation of secure system firmware for ARM®-based server platforms. This role will focus on firmware authentication, secure boot, cryptographic services, certificate management, device attestation, and trusted platform capabilities while collaborating with hardware, firmware, security, validation, ODM, and customer teams throughout the product lifecycle.
What You’ll Achieve
- Deliver robust firmware authentication and secure-boot capabilities across multiple ARM® server platforms.
- Establish scalable certificate, key, signing, and authentication processes that support the complete product lifecycle.
- Bring up and validate System Control Processor firmware across virtual platforms, emulation systems, and silicon.
- Enable secure firmware updates, platform recovery, device identity, and attestation capabilities where required.
- Define and execute comprehensive unit, integration, functional, negative, regression, and security testing strategies.
- Improve the reliability and security of firmware interactions with hardware, BIOS/UEFI, Linux, Windows, and other platform software.
- Identify security and functional risks early through architecture reviews, design analysis, and pre-silicon validation.
- Debug and root-cause issues spanning firmware, software, hardware interfaces, operating systems, and cryptographic services.
- Drive complex issues from initial investigation through root cause, corrective action, validation, and release.
- Maintain alignment with platform architecture and security requirements.
- Deliver high-quality, sustainable code and documentation that can be reused across future platforms.
- Provide technical direction on firmware authentication architecture, implementation standards, and secure development practices.
- Strengthen collaboration among firmware, hardware, validation, product security, RMA, signing, ODM, and customer engineering teams.