Aon is looking for a Principal Hardware Security Consultant . The Proactive Security Testing team seeks intelligent, energetic, and motivated individuals to join its dynamic environment. We offer a challenging work setting that balances autonomy with senior-level support, along with opportunities to publish books and blogs, speak at conferences, contribute to open-source projects, and engage in ongoing security research. Aon is in the business of better decisions. Our mission is to shape decisions for the better to protect and enrich lives globally. We foster a culture of trust, inclusivity, and diversity, dedicated to the success of our colleagues and clients. What the day will look like As a Principal Hardware Security Consultant (internally known as "Product Security Testing Manager"), you will be a senior member of the hardware testing team. Your responsibilities include: Performing penetration testing focused on product security across various verticals. Conducting complex assessments involving hardware, firmware, and code review. Creating test harnesses to identify and demonstrate security vulnerabilities. Communicating vulnerabilities clearly to client development teams during and after assessments. Documenting technical issues, outlining risks, and providing remediation recommendations. Assisting in pre-sales scoping for penetration testing engagements. Mentoring junior engineers and guiding their career development. Engaging in vulnerability research, producing blogs, conference talks, and whitepapers. Contributing to process improvements within the organization. Developing and enhancing internal tooling for reporting and testing. Participating in the recruitment process for new talent, including resume reviews and interviews. Note: We do not offer visa sponsorship for this role. Skills and experience that will lead to success 5+ years of hands-on hardware/product security testing or proven bug bounty experience with IoT/Mobile products. Hardware Security Experience in reverse engineering hardware (JTAG, SPI, UART, PCB analysis). Proficient with oscilloscopes, logic analyzers, and debuggers. Expertise in vulnerabilities of embedded systems and architectures like ARM, RISC-V, MIPS, x86. Understanding of hardware root of trust and secure key storage. Skills in low-level programming languages (C, C++, Assembly) and scripting (Python, Ruby). Experience analyzing bootloaders, secure boot, and firmware images. Knowledge of firmware extraction techniques. Firmware Security Experience with static/dynamic firmware analysis using tools like Ghidra, IDA Pro. Ability to find vulnerabilities such as buffer overflows, memory corruption. Expertise in encryption/authentication mechanisms, firmware unpacking, bypassing secure boot, and firmware modification. Skills in detecting access control misconfigurations and OTA vulnerabilities. Knowledge of TEE, ARM TrustZone, and related vulnerabilities. Additional desirable skills Experience at a consulting firm or security research background. Exploit development and reverse engineering skills. Relevant degree or equivalent experience. Public research or conference presentation experience. High-level vulnerability exploitation skills (fault injection, side-channel, glitching). Supply chain security knowledge, hardware design principles, and TEE vulnerabilities. Our support for colleagues We promote inclusivity, work/life balance, and continuous learning. Our benefits include wellbeing days, flexible work styles, and comprehensive health and wellness programs. We are an equal opportunity employer, committed to diversity and inclusion. We consider applicants regardless of background, including those with criminal histories, and provide reasonable accommodations for individuals with disabilities. For positions in San Francisco and Los Angeles, we adhere to local Fair Chance ordinances. Salary range: $130,000 - $180,000 annually, based on experience, skills, and location. Benefits include a 401(k), stock purchase plan, health insurance, paid time off, and more. #J-18808-Ljbffr Aon
...the companys motto is Any Language, Anytime, Anywhere! Reference number:1050360 We might have a job opportunity for you as a Arabic teacher. One of our clients in Alexandria would like to have one-to-one GENERAL Arabic classes. This student wishes to have...
...Job Title: Office Manager Job Status: Salaried, Exempt Reports to: Chief Operating Officer Location: CSC Richmond Office Who We Are Company Overview At CSC, we equip innovators with the tools they need to accelerate progress and build a better future...
Plant-wide cleaners are primarily responsible for creating and maintaining a safe, clean and hygienic environment within the premises at which they work including office and manufacturing shop floor areas.Responsible for cleaning buildings, equipment and machinery including...
...Anchorage Digital , and other offerings. The company is funded by leading institutions including Andreessen Horowitz, GIC, Goldman Sachs, KKR, and Visa, with its Series D valuation over $3 billion. Founded in 2017 in San Francisco, California, Anchorage Digital has...
...clients you see through Headway, so that you can set the hours that work for you. Grow your caseload by providing marketing support and... ...patients in-person or remotely via telehealth while working from home. We accept the following licenses on a state by state basis:...