Jobs Companies NXP Semiconductors Software Security Analyst (m/f/d)

À propos de ce poste Software Security Analyst (m/f/d) chez NXP Semiconductors

NXP Semiconductors · Sur site · Gratkorn

We are seeking a Senior Embedded Security Vulnerability Analyst to perform deep technical analysis of embedded systems, focusing on identifying and understanding vulnerabilities at the hardware/software boundary.

You will analyze low-level firmware, boot code, and system components to uncover exploitable weaknesses and work closely with development teams to drive secure designs. The role requires a strong systems mindset, curiosity for attack techniques, and the ability to reason about complex execution environments. You will also leverage and help shape modern analysis approaches, including AI-assisted vulnerability discovery workflows, to improve both depth and scalability of analysis.

If you are already exploring how LLMs and agentic workflows can augment deep code and system analysis, this role provides an opportunity to apply and advance these approaches in a real-world embedded security setting.

We welcome both:

  • experienced security researchers

  • strong embedded engineers with a demonstrated interest in transitioning into security

Your Responsibilities

  • Perform in-depth vulnerability analysis of embedded software (bare-metal, RTOS, trusted execution environments)

  • Analyze boot flows, privilege boundaries, and security-critical components (e.g., crypto libraries, key handling, isolation mechanisms)

  • Conduct root cause analysis and assess exploitability and impact of identified weaknesses

  • Support security certifications and evaluations (e.g., PSA, SESIP, Common Criteria)

  • Analyze PSIRT incidents and derive structural improvements

  • Develop and apply analysis methodologies and tooling (static analysis, fuzzing, scripting, automation)

  • Apply and evaluate AI-assisted techniques for code analysis and vulnerability discovery (e.g., LLM-based workflows)

  • Design and refine workflows that combine traditional analysis (static and dynamic) with AI-assisted approaches

  • Research and evaluate emerging attack techniques relevant to embedded systems

  • Collaborate with development teams to translate findings into concrete mitigations

Education & Qualifications

  • Degree in Electrical Engineering, Computer Science, Mathematics, or related field

  • Strong understanding of low-level system behavior (memory layout, interrupts, privilege levels, concurrency)

  • Solid experience in C programming; familiarity with ARM and/or RISC-V architectures

  • Experience with assembly-level debugging and analysis

Strong differentiators:

  • Experience with vulnerability research, reverse engineering, or exploit development

  • Familiarity with static and dynamic analysis tools, fuzzing, or symbolic execution

  • Understanding of common vulnerability classes (memory corruption, logic flaws, side channels)

  • Experience with debugging interfaces (e.g., JTAG, trace, GDB)

  • Experience using or evaluating AI-assisted code analysis or vulnerability discovery tools

  • Experience building or integrating automated analysis workflows (e.g., scripting, pipelines, agent-based approaches)

  • Rust experience or interest in memory-safe system design

Your Profile

  • Strong analytical thinking and curiosity for how systems fail under adversarial conditions

  • Ability to work independently and drive complex technical investigations

  • Interest in combining deep technical analysis with modern AI-assisted techniques

  • Clear communication of technical findings and risks to diverse audiences

  • Collaborative mindset when working with development and architecture teams

Please note: The successful candidate may/will be responsible for security related tasks. The assignment may/will be in scope of security certifications, therefore a conscious and reliable way of working is necessary.

For applications in Gratkorn: NXP provides market competitive compensation according to the benchmarking of the electronic and semiconductor industry. Due to the Austrian Equal Treatment Act we are obligated to state the employment group of our applicable collective bargaining agreement (CBA) “Kollektivvertrag für Angestellte Gewerbe und Handwerk und in der Dienstleistung“, this position (fulltime) is graded in Employment GroupV. Your individual experiences and expectations will be considered in the application process. Moreover, we provide attractive benefits to our employees like home office, flexible working time, meal benefits and more.


More information about NXP in Austria...

#LI-a8a1
Prêt à postuler chez NXP Semiconductors ?
Postuler chez NXP Semiconductors

À propos de NXP Semiconductors

Thank you for your interest in supporting our recruitment efforts. Please note that NXP operates under a strict Preferred Supplier List (PSL) for all recruitment activities. Any candidate profiles or resume submitted without a prior written agreement or explicit request from our Talent Acquisition team will be considered unsolicited. Such submissions will be deemed free of any obligations, and no fees will be paid by NXP or any of its affiliates, subsidiaries, or divisions - regardless of whether the candidate is hired, either coincidentally or otherwise. Thank you for your understanding.

Voir tous les emplois chez NXP Semiconductors →

Emplois similaires

NXP Semiconductors
Senior Embedded Security Vulnerability Analyst (m/f/d)
NXP Semiconductors
⚡ Postuler tôt Gratkorn Sur site
● Nouveau 👁 Vu ✓ Postulé il y a 2 mois
NXP Semiconductors
Principal Embedded Security Vulnerability Analyst (m/f/d)
NXP Semiconductors
⚡ Postuler tôt Gratkorn Sur site
● Nouveau 👁 Vu ✓ Postulé il y a 2 mois
DEFEND Limited
Senior Cybersecurity Operations Analyst
DEFEND Limited
⚡ Postuler tôt Wellington, Wellington Region,... Hybride
● Nouveau 👁 Vu ✓ Postulé il y a 7 h
NA
Senior Analyst, DevOps Engineer (Security Mainframe Identity Services)
NAB
⚡ Postuler tôt 15 Tran Bach Dang An Khanh War... Sur site
● Nouveau 👁 Vu ✓ Postulé il y a 13 h
GDIT
Cybersecurity Systems Engineer
GDIT
⚡ Postuler tôt Any Location / Remote · lieu restreint $97,968–$126,500
● Nouveau 👁 Vu ✓ Postulé il y a 13 h
Circles
Engineer II, Cybersecurity Governance, Assurance & Data Protection
Circles
⚡ Postuler tôt Singapore Sur site
● Nouveau 👁 Vu ✓ Postulé il y a 13 h
Deutsche Bank
Information Security Problem Manager – Information Security Analyst (AVP) - (f/m/x)
Deutsche Bank
⚡ Postuler tôt Bucharest, 6A Dimitrie Pompeiu... Sur site
● Nouveau 👁 Vu ✓ Postulé il y a 13 h
OMERS
Student Analyst, OT Cybersecurity (Winter 2027, 4 Months)
OMERS
⚡ Postuler tôt Toronto, Ontario Sur site $50,700–$70,200
● Nouveau 👁 Vu ✓ Postulé il y a 13 h
FirstRand
Security Operations Centre Analyst
FirstRand
⚡ Postuler tôt Randburg Sur site
● Nouveau 👁 Vu ✓ Postulé il y a 13 h

Inscrivez-vous pour des suggestions adaptées aux emplois que vous ouvrez et aux recherches que vous enregistrez.

Plus d’emplois chez NXP Semiconductors

Voir tous les emplois chez NXP Semiconductors →

Postuler maintenant
🤖

Doucement — un instant

JobsRadar a été conçu pour de vraies personnes qui traversent une période difficile dans leur recherche d’emploi — pas pour des requêtes automatisées. Vous cliquez beaucoup trop vite et vous êtes maintenant temporairement bloqué.

Revenez plus tard. Si vous cherchez réellement un emploi, nous sommes de votre côté — agissez simplement comme un être humain.

Catch your next role the second it’s posted.

Create a free account and we’ll watch the boards for you — the instant a job matches your search, it lands in your inbox or Telegram. No digging, no refreshing.

Create free account

Free forever · takes 30 seconds · already have one?

Prenez une longueur d’avance dans votre recherche d’emploi.

Rejoignez notre canal Telegram pour ce qui vous aide à décrocher le poste — références salariales, le pouls hebdomadaire du marché et les annonces de nouveautés. Pas de spam, que du signal.

Rejoindre le canal — c’est gratuit