Anthropic logo
AnthropicPosted 2 months ago

Platform Security Engineer, OpenBMC

$405,000–$405,000 year

HybridNew York City, New York, United States or San Francisco, California, United States

Full TimeSenior LevelLargeAI Services

Job Summary

Design, build, and ship OpenBMC firmware and manageability features for x86 and Arm platforms from bring-up through production using Yocto/OpenEmbedded. Implement BMC-to-BIOS/host communications, thermal management, and secure boot, signing, and attestation protocols. Lead threat modeling, run coordinated vulnerability disclosures, and build verification tooling including static analysis and fuzzing. Own the BMC security posture with rollback protection and attack-surface reduction while partnering with firmware and hardware engineers.

Required Qualifications

  • Strong technical cross-functional leadership skills, direction setting
  • Hands-on OpenBMC/BMC firmware experience on x86 and/or Arm, from bring-up through production with hands-on D-Bus/sdbusplus
  • Strong C/C++ and Python, deep Linux user-space/kernel fundamentals, and Yocto/OpenEmbedded proficiency
  • A security mindset applied to firmware, not bolted on afterward
  • Upstream contributions to OpenBMC, U-Boot, DMTF, or OCP
  • Working knowledge of out-of-band and in-band management, the relevant DMTF specs, and the device interfaces they run over
  • Strong debugging and a track record of shipping reliable, well-tested code
  • Clear communication across internal teams and external vendors
  • Ability to work effectively across hardware and software boundaries
  • Knowledge of NIST firmware security guidelines and hardware security frameworks, specifically SP 800-193 and 800-147/155
  • Minimum education: Bachelor's degree or an equivalent combination of education, training, and/or experience
  • Required field of study: A field relevant to the role as demonstrated through coursework, training, or professional experience
  • Location-based hybrid policy: Currently, we expect all staff to be in one of our offices at least 25% of the time

Desired Qualifications

  • 8+ years of experience in systems security, with at least 5 years focused on firmware and hardware security (firmware, bootloaders, and OS-level security)
  • Hardware roots of trust and attestation: Caliptra, OCP S.A.F.E., TPM/HRoT, SPDM
  • Memory-safe systems code in Rust or Zig
  • Firmware vulnerability research, reverse-engineering, or fuzzing
  • Previous work with AI/ML infrastructure security

Hiring someone like this?

Get your role in front of qualified candidates on Sorce.

Get started

Apply to this job in one click with Sorce

Apply on Sorce