Skip to content
AnthropicAnthropic

Platform Hardware Security Engineer

Design and implement security architectures for bare-metal infrastructure including secure boot chains, attestation systems, and firmware security for AI training hardware. Requires expertise in low-level systems security, cryptographic protocols, and hardware root of trust technologies.

About the job

Key Responsibilities

  • Design and implement secure boot chains from firmware through OS initialization for diverse hardware platforms (CPUs, BMCs, switches, peripherals, and embedded microcontrollers)
  • Architect attestation systems that provide cryptographic proof of system state from hardware root of trust through application layer
  • Develop measured boot implementations and runtime integrity monitoring
  • Create reference architectures and security requirements for bare-metal deployments
  • Integrate security controls with infrastructure teams without impacting training performance
  • Prototype and validate security mechanisms before production deployment
  • Conduct firmware vulnerability assessments and penetration testing
  • Build firmware analysis pipelines for continuous security monitoring
  • Document security architectures and maintain threat models
  • Collaborate with software and hardware vendors to ensure security capabilities meet our requirements

Minimum Qualifications

  • Hands-on experience with secure boot, measured boot, and attestation technologies (TPM, Intel TXT, AMD SEV, ARM TrustZone)
  • Strong understanding of cryptographic protocols and hardware security modules
  • Experience with UEFI/BIOS or embedded firmware security, bootloader hardening, and chain of trust implementation
  • Proficiency in low-level programming (C, Rust, Assembly) and systems programming
  • Knowledge of firmware vulnerability assessment and threat modeling
  • Track record of designing security architectures for complex, distributed systems
  • Experience with supply chain security
  • Ability to work effectively across hardware and software boundaries
  • Knowledge of NIST firmware security guidelines and hardware security frameworks

Preferred Qualifications

  • 8+ years of experience in systems security, with at least 5 years focused on firmware and hardware security (firmware, bootloaders, and OS-level security)
  • Experience with confidential computing technologies and hardware-based TEEs
  • Knowledge of SLSA framework and software supply chain security standards
  • Experience securing large-scale HPC or cloud infrastructure
  • Contributions to open-source security projects (coreboot, CHIPSEC, etc.)
  • Background in formal verification or security proof techniques
  • Experience with silicon root of trust implementations
  • Experience working with building foundational technical designs, operational leadership, and vendor collaboration
  • Previous work with AI/ML infrastructure security

Compensation & Benefits

  • Annual Salary: $405,000—$405,000 USD
  • Visa sponsorship available
  • Competitive compensation and benefits, optional equity donation matching, generous vacation and parental leave, flexible working hours

Skills

Secure Boot, Measured Boot, Attestation, Tpm, Intel Txt, Amd Sev, Arm Trustzone, Uefi/Bios, C, Rust, Assembly, Cryptography, Hardware Security Modules, Firmware Security, Threat Modeling

Anthropic

Anthropic

San Francisco, CA
Lead, Security Controls Assurance - SOX
$410k+/yrHybridSecurity Engineering

Leads technical SOX controls assurance for financially significant systems, translating audit requirements into engineering acceptance criteria and continuous monitoring. Requires ITGC and SOX 404 expertise, strong engineering fluency, programming ability, and cross-functional collaboration with Finance, Engineering, and auditors.

Mercor

Mercor

San Francisco, CA

Security GRC Lead
$350k+/yrOn-site7+ YOESecurity Engineering

Leads the company’s security GRC function, owning SOC 2, ISO 27001, enterprise audits, third-party risk, policy governance, and automated evidence workflows. Requires 7+ years of GRC or audit experience, end-to-end SOC 2 and ISO 27001 ownership, and strong security tooling expertise.

Anthropic

Anthropic

San Francisco, CA
Platform Security Engineer, DRTM / Secure Launch
$320k+/yrHybrid8+ YOESecurity Engineering

Owns DRTM adoption, attestation, and platform hardening across x86 and ARM infrastructure, working across firmware, bootloaders, kernels, hardware, and silicon security. The role requires deep systems-security experience, upstream Linux or firmware contributions, and strong vendor and OEM leadership.

Anthropic

Anthropic

Washington, DC
Safeguards Enforcement Lead, Cyber Harms
$285k+/yrHybridSecurity Engineering

Leads cyber-focused AI misuse enforcement, managing analysts and contractors while developing detection and mitigation strategies for attacks, malware, and exploitation. Requires people management, cybersecurity expertise, high-volume abuse enforcement, data analysis with SQL or Python, and cross-functional risk communication.

OpenAI

OpenAI

San Francisco, CA

Software Security Architect, Operating Systems | Consumer Devices
$268k+/yrOn-site7+ YOESecurity Engineering

Defines the security architecture for a next-generation operating system, spanning trust boundaries, hardware-backed protections, isolation, secure updates, and AI-agent guardrails. The role requires deep privileged-systems expertise, systems programming ability, and experience securing platforms across hardware, firmware, and software.