# Platform Security Engineer, DRTM / Secure Launch

**Company:** [Anthropic](https://hotfix.jobs/companies/anthropic)
**Location:** San Francisco, CA, New York, NY, Seattle, WA
**Role:** Security Engineering
**Salary:** $320k – $405k/yr
**Experience:** 8+ years
**Skills:** Drtm, Intel Txt, Amd Skinit, Srtm, Tpm, C, Assembly, Linux Kernel, Uefi, Acpi, Smm, Jtag, Tdx, Sev-Snp, Rust
**Posted:** 2026-08-25

> Owns DRTM adoption, attestation, and platform hardening across x86 and ARM infrastructure, working across firmware, bootloaders, kernels, hardware, and silicon security. The role requires deep systems-security experience, upstream Linux or firmware contributions, and strong vendor and OEM leadership.

## Job Description

## Responsibilities

### DRTM adoption and integration
- Own adoption and integration of Dynamic Root of Trust for Measurement (DRTM) hardware security features across infrastructure on x86 and ARM platforms.
- Implement attestation services and related security and privacy capabilities enabled by DRTM.
- Design and implement a bootloader-agnostic solution for initiating and relaunching DRTM sessions.
- Harden existing DRTM solutions, including PPAM isolation of SMM on x86, VMM isolation of UEFI runtime services, and ACPI handling in DRTM environments.

### Vendors and upstream
- Interface with vendor and OEM partners on DRTM solutions, jointly refining requirements and assessing feasible changes.
- Publish DRTM work upstream and help maintain Linux Secure Launch as tboot is retired.
- Lead architecture and design efforts and communicate results through technical papers, conference talks, and community engagement.
- Assist other teams with open-source efforts and upstream interactions.

### Broader low-level platform security
- Build and harden platform security features, including confidential computing solutions such as TDX and SEV.
- Support custom operating system artifacts, implement device drivers, and perform firmware diagnosis and enhancement.
- Debug kernel and system-level issues on production hardware.
- Investigate new and unresolved technical areas, including security problems in dTPMs and fTPMs.

## Requirements
- 8+ years of systems security experience, including at least 5 years focused on firmware, bootloader, and OS-level security.
- Hands-on experience with measured boot and roots of trust, including DRTM, Intel TXT, AMD SKINIT, ARM equivalents, SRTM, TPM 1.2/2.0, and measurement chains.
- Strong C and assembly skills with deep Linux kernel and early-boot fundamentals, including bootloaders, UEFI, ACPI, and SMM.
- Record of landing substantial work upstream in Linux, TianoCore, GRUB, or a comparable community.
- Experience at the hardware/firmware boundary, including JTAG, serial debugging, platform bring-up, and silicon errata.
- Strong technical cross-functional leadership and direction setting with vendors and OEMs.
- Clear written communication skills for specifications, design documents, and public technical writing.
- Working knowledge of NIST firmware security guidance, particularly SP 800-193 and SP 800-147/155.
- Bachelor’s degree or equivalent combination of education, training, and experience in a relevant field.

## Nice-to-haves
- Linux maintainership or subsystem ownership, or standing in the TCG, UEFI Forum, or OCP communities.
- Confidential computing experience with TDX, SEV-SNP, ARM CCA, and attestation flows.
- Experience with hardware roots of trust and attestation beyond TPM, including Caliptra, OCP S.A.F.E., and SPDM.
- Memory-safe systems programming in Rust.
- Firmware vulnerability research, reverse engineering, or fuzzing.
- AI/ML infrastructure security experience.

## Compensation and benefits
- Annual salary: **$320,000–$405,000 USD**.
- Competitive compensation and benefits, optional equity donation matching, generous vacation and parental leave, flexible working hours, and office collaboration space.

## Similar jobs

- [Security GRC Lead](https://hotfix.jobs/jobs/2eb261b0-5ff9-435d-b0fb-eaf5933051d1) - Mercor - San Francisco, CA - $350k – $425k/yr
- [Safeguards Enforcement Lead, Cyber Harms](https://hotfix.jobs/jobs/c042fb99-fa5c-4740-9908-e14324222bde) - Anthropic - Washington, DC - $285k – $330k/yr
- [Software Security Architect, Operating Systems | Consumer Devices](https://hotfix.jobs/jobs/eae7f6bf-7cf9-495a-9c46-fb88a4620a0f) - OpenAI - San Francisco, CA - $268k – $342k/yr
- [Cyber Operations Lead, Critical Harm Operations](https://hotfix.jobs/jobs/aece8b0b-4900-4762-87e1-025b2cbe75c9) - OpenAI - San Francisco, CA - $252k – $335k/yr
- [Lead, Security Controls Assurance - SOX](https://hotfix.jobs/jobs/a1c11627-c920-4e31-abc6-2e170042a626) - Anthropic - San Francisco, CA - $410k – $510k/yr

**Apply:** https://hotfix.jobs/jobs/52321fb7-76c2-4b9b-b900-53a63bb68154
**Canonical:** https://hotfix.jobs/jobs/52321fb7-76c2-4b9b-b900-53a63bb68154