Embedded Systems Security Engineer
$157,000–$235,000 year
On-siteSan Diego, California, United States
Job Summary
Design and harden on-device security systems for Specs, including permissions, access control, secure IPC, sandboxing, and trusted execution boundaries. Develop security and privacy controls for on-device AI features, covering model integrity, sensitive data handling, and inference-time privacy protections. Research, design, and implement security features across Snap OS, firmware, applications, and cloud-connected device surfaces. Improve fuzzing infrastructure, automated security testing, and continuous validation pipelines for OS components, IPC mechanisms, parsers, services, drivers, and AI-related data flows. Work within the Specs Security team at Snap Inc, supporting a default-together office culture of 4+ days per week.
Required Qualifications
- Bachelor's degree in Computer Science, Computer Engineering, Electrical Engineering, a related technical field, or equivalent practical experience
- 5+ years of experience developing production software in one or more programming languages such as C, C++, Rust
- 3+ years of experience building security, privacy, or platform protection features for Linux-based, embedded, mobile, wearable, or connected device systems
- Experience with applied cryptography, authentication, authorization, secure communications, key management, threat modeling, vulnerability assessment, or system security for embedded or Linux-based systems
Desired Qualifications
- Master's degree or PhD in Computer Science, Computer Engineering, Electrical Engineering, or a related technical discipline
- Experience designing or building on-device permission systems, access control frameworks, sandboxing, secure IPC, service isolation, least-privilege architectures, or privacy-preserving controls for sensor-rich devices
- Experience securing on-device AI, ML, or assistant-like systems, including model integrity, sensitive data handling, inference-time privacy, AI feature permissions, local policy enforcement, and protection of model inputs and outputs
- Experience with trusted execution technologies, secure manufacturing, device provisioning, attestation, anti-rollback, secure debug, lifecycle state management, fuzzing, automated security validation, or platform-level vulnerability hardening for Linux-based systems
Hiring someone like this?
Get your role in front of qualified candidates on Sorce.