# Hardware / Low Level Security Engineer

**Company:** [Cerebras Systems](https://hotfix.jobs/companies/cerebras-systems)
**Location:** Unspecified
**Role:** Security Engineering
**Skills:** linux kernel, C, Rust, Go, firmware, uefi, secure boot, tpm, ebpf, linux security modules, iommu, sr-iov, confidential computing, kernel modules, attestation
**Posted:** 2026-06-23

> Hardens Cerebras compute platforms across the Linux kernel, firmware, secure boot, and hardware roots of trust. The role requires deep systems security expertise, strong C and systems-language skills, and experience with low-level isolation, monitoring, and attestation.

## Job Description

## Responsibilities
- Partner with platform, infrastructure, and hardware teams to embed security controls from physical hardware through runtime.
- Design and implement security hardening across the Linux kernel, bootloader, firmware, and host OS layers of compute platforms.
- Drive secure boot, measured boot, and attestation strategies across infrastructure, from wafer-scale systems to supporting host nodes.
- Conduct deep security reviews of kernel modules, drivers, and low-level system components, identifying and remediating memory safety, privilege escalation, and isolation issues.
- Develop kernel-level monitoring and telemetry, such as eBPF, to enable detection of low-level attacker behavior.
- Monitor emerging kernel CVEs, supply chain risks, and hardware-level threats, driving response and remediation across the fleet.
- Document low-level security posture, threat models, and remediation playbooks in clear, accessible language.

## Requirements
- Background in Mechanical and/or Electrical Engineering with a career focus in cybersecurity.
- Deep familiarity with the Linux kernel, including kernel modules, syscall interfaces, namespaces, cgroups, eBPF, and LSM.
- Hands-on experience with firmware, UEFI, secure boot, TPM, and platform integrity tooling.
- Strong proficiency in C and a modern systems language such as Rust or Go, with the ability to read and write production kernel code.
- Familiarity with hardware-level isolation primitives such as IOMMU, SR-IOV, and confidential computing.
- Strong written communication skills, with the ability to make low-level security concepts approachable for non-specialists.

## Nice to Have
- Exposure to non-standard compute architectures.

## Similar roles

- [Offensive Security Engineer](https://hotfix.jobs/jobs/6767105b-558a-4ede-a843-af431cb19f26) - Palantir - Washington, DC
- [Security Engineer](https://hotfix.jobs/jobs/1e77fe13-74e5-4087-ba99-691ee95d0e2a) - AlertMedia - Remote
- [Security Analyst, Third-Party Ecosystem Risk Management](https://hotfix.jobs/jobs/04d279a2-cca0-4b85-9c84-c8fb7b794013) - Plaid - New York, NY - $119k – $176k/yr
- [Manager, Security Operations](https://hotfix.jobs/jobs/0a4637da-6072-4ec3-a0a9-8b6d4a412d45) - Vanta - Remote - $178k – $209k/yr
- [Governance, Risk, and Compliance Manager](https://hotfix.jobs/jobs/5e407075-824a-4639-96f7-821772a6f497) - Decagon - San Francisco, CA - $190k – $275k/yr

**Apply:** https://hotfix.jobs/jobs/080883c2-de8e-4bde-ae2a-5ec5ff9b8e2d
**Canonical:** https://hotfix.jobs/jobs/080883c2-de8e-4bde-ae2a-5ec5ff9b8e2d