NeurophosVerified Source

Principal Platform Security Architect, Silicon Root of Trust

250K–300K
Onsite · Austin, Texas
Posted August 13, 2026
full-time

Overview

You will own platform security for the T100 system and its electronic integrated circuit (EIC), from fab through field deployment. This is a product security role, not IT: your work makes the silicon verifiable to hyperscale customers. You will architect the silicon root of trust, secure boot, device attestation, and security telemetry. You will own the outsourced root-of-trust subsystem engagement and drive compliance with OCP and DMTF specs. You will define the security narrative in customer reviews. This role shapes the security foundation of a photonics-based AI compute platform backed by Gates Frontier and M12.

What You'll Do10

  • 1Own the platform threat model and security architecture from fab through field deployment.
  • 2Architect the silicon root of trust: RoT IP integration, key provisioning, fuse and OTP strategy, and debug authorization.
  • 3Define secure and measured boot chain and firmware resiliency behavior.
  • 4Own device attestation using SPDM with DICE identity.
  • 5Define signed over-the-air firmware update with anti-rollback protection.
  • 6Specify security telemetry and its exposure to datacenter operators.
  • 7Drive compliance against OCP security profiles and DMTF specifications.
  • 8Own the key management lifecycle and manufacturing and field processes.
  • 9Serve as technical owner for outsourced root-of-trust subsystem engagement.
  • 10Support customer and hyperscaler security reviews and own the security narrative.

Requirements8

  • 110+ years in hardware and firmware security architecture on silicon that shipped.
  • 2Hands-on experience integrating root-of-trust IP, including provisioning and fuse/OTP planning.
  • 3Secure boot chain design and firmware resiliency to NIST SP 800-193 class requirements.
  • 4Working knowledge of SPDM, DICE, MCTP, and PLDM.
  • 5Practical understanding of cryptographic primitives, key hierarchies, and secure key storage in silicon.
  • 6Demonstrated ability to write security specifications that digital design and firmware teams implement against.
  • 7Excellent communication skills and comfort defending architectural decisions to external reviewers.
  • 8BS/MS/PhD in Computer Science, Electrical Engineering, or related field.

Salary Insight

$250 - $300k per year

Location

Typeonsite
LocationAustin, Texas

Required Skills

spdmdicemctppldmocp
Share:

Similar open positions

Explore active roles that match your skills and interests.

ALTEN Technology USA

7h agoSan Francisco, Californiafull-time

Embedded Systems Security Engineer, Embedded Linux & Hardware Security

Own the security strategy for a next generation embedded Linux platform at scale. Build hardware root of trust, secure boot, and trusted execution environments across devices. Collaborate with manufacturing to provision devices securely while automating security pipelines in CI/CD. Join a team that blends low level hardware security with software containment and DevSecOps to drive secure product delivery. Primary tech: ARM TrustZone, OP-TEE, dm-verity

Competitive salary
Embedded LinuxU-BootBarebox+18 more
Palo Alto Networks

Palo Alto Networks

20d agoSan Jose, Californiafull-time

Principal Network Security Architect | Palo Alto Networks

You will own the architectural blueprint and governance for a global network security footprint spanning hybrid cloud and on-prem. As Principal Enterprise Network Security Architect, you will drive Zero Trust adoption, security automation, and AI/ML integration. You will collaborate with security, infrastructure, and IT teams to embed security into every layer. This role stands out for its automation-first approach and ultimate escalation authority during critical events.

154K–250K
Zero TrustNetwork SegmentationHybrid Cloud+12 more
Target

Target

2d agoMinneapolis, Minnesotafull-time

Lead Engineer, Cloud Security & CSPM

As Lead Engineer on the Cloud Security team, you own Target's Cloud Security Platform and CSPM capability across public and private clouds. You set the technical direction for a team of engineers, translating security requirements into automated controls developers rely on. You operate the platform as a production system, managing availability, performance, and policy tuning. You extend ownership into adjacent CNAPP capabilities, partnering with detection and response to turn findings into detections. This role offers the chance to build paved roads for cloud security at retail scale, with a builder's mindset and bias for action.

132K–238K
cspmcnappcloud security platform+2 more

greenlight

2d agoAtlanta, Georgiafull-time

Staff Product Security Engineer, AI & Cloud Security

You will own end-to-end security for consumer products, a digital platform, and an emerging hardware line at Greenlight, a fintech serving 6.5 million family members. You will drive threat modeling, lead penetration testing, manage PSIRT operations, and champion secure AI adoption across the company. Collaborating with architects, product managers, and engineering, you will define security guardrails for AI-powered products and development workflows. This role offers a rare blend of hands-on technical work and strategic influence in a highly regulated financial environment.

Competitive salary
Burp SuiteMetasploitKali Linux+12 more

David Joseph & Company

2d agoSan Francisco, Californiafull-time

Senior Staff Security Engineer

Lead the end-to-end security posture of an AI coworker product for enterprise IT teams. Own application cloud network and agent security while defining a novel category. Drive secure design reviews build security primitives and manage incident response. This is a full-time role in San Francisco with equity compensation.

200K–300K
PythonGoRust+4 more
Northrop Grumman

Northrop Grumman

2d agoSan Diego, Californiafull-time

Staff C2E Software Architect Northrop Grumman

Design and field deploy multi level systems spanning cloud edge and government furnished hardware/software. Own end to end architecture for cross domain and multi level security solutions. Guide cloud migration to Microsoft Azure. Lead technical teams through concept development integration and operational sustainment.

177K–266K
Cross Domain SolutionsMulti Level SecurityMicrosoft Azure+5 more