Jabil

Firmware Security Systems Architect

Jabil$130K — $160K *
Technical Services
11 - 15 years of experience
Job Overview by Ladders

Qualifications

  • Bachelor's Degree in Computer Engineering, Computer Science, or Electrical Engineering
  • 15+ years of experience in firmware design and engineering
  • Capability to research and translate compliance requirements into engineering requirements
  • Working knowledge of the EU Cyber Resilience Act (CRA)
  • Familiarity with CPU/GPU security features (Intel PFR, AMD PSP, ARM TrustZone)
  • Knowledge of source control and CI/CD pipeline integration with security gates
  • Extensive experience with Linux.

Responsibilities

  • Establish and drive the firmware security strategy for Jabil's product lines
  • Develop and champion internal security architecture standards
  • Monitor compliance with evolving regulations and ensure operational processes meet these requirements
  • Mentor and coach team members in security design capabilities
  • Evaluate security designs and oversee remediation during product development
  • Lead firmware design reviews to identify and mitigate security vulnerabilities
  • Communicate security requirements and decisions to development teams.

Benefits

  • Collaborative work environment with diverse teams
  • Opportunity to mentor and train engineers
  • Exposure to cutting-edge technology in firmware security
  • Participation in industry standards bodies and working groups
  • Focus on continuous improvement of architectural methods and processes.
Full Job Description

Firmware Security System Architects at Jabil establish and drive the security strategy for firmware across Jabil's Cloud, Compute, and Networking product lines. This role combines forward-looking security architecture with the operational establishment of compliance processes, ensuring Jabil designs meet evolving regulatory requirements in North America, the EU, and emerging markets.

As a Firmware Security System Architect, you will be expected to

  • Demonstrate a level of expertise in security that matches or exceeds the expertise of customers
  • Define and champion firmware security architecture standards across Jabil’s product portfolio
  • Access current and emerging regulatory and compliance requirements translating them into actionable engineering processes
  • Evaluate security posture of designs during product development and drive remediation
  • Serve as internal authority on firmware security and security processes
  • Monitor the technical direction of designs during product development
  • Mentor others in the organization to build team members design capability

IN YOUR ROLE YOU WILL

  • Advise customers, product planning, and business development on security architecture tradeoffs including cost, schedule, and compliance impact
  • Establish and maintain Jabil’s firmware security compliance roadmap, covering:
    • North America: NIST SP 800-193 (PFR), NIST CSF, FIPS 140-3, and relevant Executive Orders on cybersecurity
    • EU: Cyber Resilience Act, RED delegated acts, and ETSI EN 303 645
    • Leverage, strategy and risk planning
  • Define and operationalize security processes across the firmware development lifecycle, including:
    • Secure development lifecycle (SDLC) practices, tools, and gates
    • Vulnerability disclosure and incident response procedures
    • Supply chain security and firmware signing workflows
    • Security audit and assessment cadences
  • Evaluate and improve security tooling (static analysis, fuzzing, binary analysis, vulnerability scanning) for firmware teams
  • Collaborate with fellow system architects in the electrical, thermal, BIOS, Validation, RAS, and OS domains
  • Communicate security requirements and architectural decisions to Jabil development teams through documentation, training, and design reviews
  • Lead and contribute to firmware design reviews and technical committees to proactively identify, assess, and mitigate security vulnerabilities during the architecture and design phases

  • Stay current on vendor technology capabilities in spaces such as CPUs (PFR, PSP, TrustZone), GPUs, Storage, Memory, FPGAs, MCUs, etc…
  • Stay current on threat landscape, vulnerability disclosures, and evolving standards from organizations such as NIST, DMTF (SPDM/PLDM Security), TCG (DICE, TPM), OCP Security, and MITRE
  • Represent Jabil in industry security working groups and standards bodies as needed
  • Deep dive into new open-ended areas by leveraging previous engineering experiences.
  • Contribute to the improvement of our architecture methods and processes.
  • Train, mentor, and coach new engineers

JOB QUALIFICATIONS & KNOWLEDGE REQUIREMENTS

TECHNICAL KNOWLEDGE & SKILLS

  • Capability to research emerging regulations and translate compliance requirements into falsifiable engineering requirements and test criteria is required
  • Working knowledge of the EU CRA and its implications for product security, including vulnerability handling and reporting obligations is required
  • Familiarity with Intel, AMD, Nvidia, or ARM CPU/GPU security features (ex. Intel PFR, AMD PSP, ARM TrustZone) is required
  • Understanding of supply chain security concerns for firmware is required: signed updates, provenance tracking, SBOM
  • Familiarity with Aspeed BMC products is preferred. Specifically, an understanding of the security capabilities of the processor
  • High-level familiarity and understanding of BMC code architecture is preferred Knowledge of OpenBMC is strongly preferred.
  • Knowledge of AMI (American Megatrends) MegaRAC is beneficial
  • High-level understanding of source control, CI/CD pipelines, and how to integrate security gates (SAST, secrets scanning, and signing) into automated workflows is required
  • Experience working with industry standards for IPMI, Redfish, MCTP, PLDM, SMBUS, i2c, i3c, SPI, is preferred
  • Extensive experience with Linux is required
  • Deep expertise  with Secure Boot, SPDM, Platform Root of Trust, DICE, and NIST SP 800-193 standards as well as cryptographic algorithms and protocols (PKI, Certificates, AES, HMAC, ECC) is strongly preferred.
  • Experience with vulnerability management processes, CVE handling, and coordinated disclosure is required
  • Proven experience in addressing and remediating security issues within sustaining firmware programs, ensuring continued compliance and risk mitigation across deployed systems is required
  • Working knowledge of industry-standard security and code analysis tools, including Coverity, Black Duck, and Eclypsium, is considered a strong advantage
  • Fluent in reading block diagrams and familiarity with system design preferred
  • Fluency in server management (provisioning, deployment, management, service) is preferred

NON-TECHNICAL KNOWLEDGE & SKILLS

  • Influence engineering teams and leadership to prioritize security investments with clear risk articulation
  • Effectively communicate with excellent understanding of English.
  • Work as part of a global team
  • Assess a project and articulate risk in terms of business impact, regulatory exposure, and remediation effort
  • Mentor less experienced engineers in secure development practices and build a security-aware culture

Lead cross-functional security initiatives involving firmware, hardware, and validation teams Develop and maintain relationships with customers’ security teams to align on requirements 

EDUCATION & EXPERIENCE REQUIREMENTS

  • Bachelor's Degree in Computer Engineering, Computer Science, or Electrical Engineering required
  • 15+ years’ experience in firmware design and engineering
  • Relevant certifications (CISSP, CSSLP, or equivalent) are a plus but not required

 

 

About Jabil

Jabil is a product solutions company providing comprehensive design, manufacturing, supply chain and product management services. At Jabil, they are a product solutions company focused on empowering brands that have their sights set on empowering the world – it’s their reason for being, and the guiding force driving them to become the most technologically advanced and most trusted in their field. Whether they are serving one of the world’s biggest and best-known brands or the coolest tech startups, their resolve never wavers. They share common desires and values with these brands: to make a difference by empowering a better, healthier, safer, and cleaner world, in all they do.

Jabil Careers

Join Jabil's dynamic team today and be part of a global leader in manufacturing solutions, where innovation meets purposeful design. At Jabil, we offer more than just job opportunities; we provide a platform for professional growth and leadership development in an environment that values diversity and inclusion.

Work You’ll Do

At Jabil, every position plays a critical role in our success. You’ll collaborate with a global team of professionals dedicated to pioneering solutions in various industries. Our culture thrives on innovation and leadership, empowering you to explore new paths and push boundaries.

Why Choose Jabil?

- **Innovative Culture**: Dive into a workplace where innovation is at the core of everything we do. At Jabil, creativity and new ideas lead the way to groundbreaking achievements. - **Diversity and Inclusion**: Join a team where diversity is celebrated. Jabil's commitment to diversity training ensures an inclusive environment where everyone’s voice is heard. - **Career Growth**: With Jabil, your career trajectory is limitless. We offer extensive opportunities for career advancement, from professional development workshops to leadership training programs.

Explore Job Opportunities

Whether you’re looking for an entry-level position or a more experienced role, Jabil has a variety of job opportunities to fit your skills and ambitions. We are continuously hiring talented individuals who are passionate about making a difference.

Internship Programs

Kickstart your career with a Jabil internship. Gain hands-on experience, enhance your skills, and network with industry leaders. Our internships provide a solid foundation for future employment and are a stepping stone to a full-time position at Jabil.

Benefits of Working at Jabil

- **Competitive Benefits**: Enjoy a comprehensive benefits package that supports both your professional and personal life. - **Global Networking**: Connect with colleagues around the world and expand your professional network within the industry. - **Employee Training**: Engage in ongoing training programs designed to hone your skills and enhance your career prospects.

Join Our Team

Ready to advance your career at Jabil? Explore open positions that match your skills and interests. We are looking for curious, creative, and solution-driven team players who are ready to make an impact.

Stay Connected

- **Career Insights**: Stay ahead with career tips, insider perspectives, and industry-leading insights you can put to use today—all from the people who work here. - **Job Alert Emails**: Personalize your subscription to receive job alerts, latest news, and insider tips tailored to your preferences. Discover the exciting and rewarding opportunities that await at Jabil.

Interview and Resume Tips

Prepare for your interview at Jabil with our helpful tips that can make your resume stand out. Learn what we look for in potential hires and how you can effectively showcase your skills and experiences. At Jabil, we are more than just a company; we are a community driven by innovation and committed to fostering a culture of growth and leadership. Join us and transform your career with a world leader in manufacturing solutions.
Learn more about Jabil
Size
238,000 employees
Market Cap
$9.3 billion
Industry
Net Income
$213.9 million
Founded
1966
5 Year Trend
+11.9%
Revenue
$27.5 billion
NASDAQ

Similar Jobs

More Jobs at Jabil

More Technical Services Jobs

Find similar Firmware Security Systems Architect jobs: