368,530open jobs
9,432companies
50,439added this week
Browse all
Salary
$58k – $143k per year (Estimated)
Location
In office (Austria, Leuven)
Seniority
Principal
Employment
Full-Time
Overview
Company
Impact
Profile match
NXP Semiconductors is a Dutch semiconductor manufacturer headquartered in Eindhoven and founded in 2006 as a spin-off from Philips. The company designs and produces a wide range of products including microcontrollers, application processors, communication processors, analog and power management devices, and connectivity solutions. It operates globally with manufacturing facilities and research centers across Europe, Asia, and the Americas, primarily serving the automotive, industrial, IoT, and mobile markets.

We are seeking a Principal Embedded Security Vulnerability Analyst to lead deep technical analysis of embedded systems, focusing on identifying and understanding vulnerabilities at the hardware/software boundary.

You will drive the discovery and analysis of complex vulnerabilities in low-level firmware, boot code, and system components, and influence the security architecture of next-generation products. This role requires expert-level systems thinking, a deep understanding of attack techniques, and the ability to reason about complex execution environments.

You will also define and advance modern vulnerability analysis approaches, including the integration of AI-assisted and agentic workflows, to significantly improve the depth, scalability, and effectiveness of security assessments.

If you are already exploring how LLMs and agentic workflows can augment deep code and system analysis, this role provides an opportunity to apply, scale, and shape these approaches across an organization.

We welcome both:

  • experienced security researchers

  • highly experienced embedded engineers with a demonstrated transition into security

Your Responsibilities

  • Lead in-depth vulnerability analysis of embedded software (bare-metal, RTOS, trusted execution environments)

  • Drive analysis of boot flows, privilege boundaries, and security-critical components (e.g., crypto libraries, key handling, isolation mechanisms)

  • Own root cause analysis and assess exploitability and systemic impact of identified weaknesses

  • Define and guide security evaluation strategies for certifications (e.g., PSA, SESIP, Common Criteria)

  • Lead analysis of PSIRT incidents and drive structural and architectural improvements

  • Architect and develop advanced analysis methodologies and tooling (static analysis, fuzzing, automation frameworks)

  • Define and scale the use of AI-assisted techniques for code analysis and vulnerability discovery (e.g., LLM-based and agentic workflows)

  • Design and institutionalize workflows that combine traditional analysis (static/dynamic) with AI-assisted approaches

  • Evaluate and introduce emerging attack techniques and incorporate them into internal methodologies

  • Influence product teams and architecture decisions by translating findings into systemic mitigations

  • Mentor and guide other engineers in vulnerability analysis and research methodologies

Education & Qualifications

  • Degree in Electrical Engineering, Computer Science, Mathematics, or related field, or equivalent practical experience

  • Deep understanding of low-level system behavior (memory layout, interrupts, privilege levels, concurrency)

  • Extensive experience in C programming; strong familiarity with ARM and/or RISC-V architectures

  • Strong experience with assembly-level debugging and low-level system analysis

Strong differentiators:

  • Proven track record in vulnerability research, reverse engineering, or exploit development

  • Deep experience with static and dynamic analysis tools, fuzzing, or symbolic execution

  • Strong understanding of vulnerability classes (memory corruption, logic flaws, side channels) and exploitation techniques

  • Experience with debugging interfaces (e.g., JTAG, trace, GDB) in complex systems

  • Experience evaluating and operationalizing AI-assisted vulnerability discovery tools and workflows

  • Experience building scalable and automated analysis pipelines (e.g., scripting, distributed systems, agent-based approaches)

  • Rust experience or strong interest in memory-safe system design

Your Profile

  • Expert-level analytical thinking and strong intuition for how systems fail under adversarial conditions

  • Ability to lead complex, ambiguous technical investigations end-to-end

  • Strong interest in combining deep technical expertise with modern AI-assisted methodologies

  • Ability to influence technical direction across teams and organizational levels

  • Clear and authoritative communication of technical risks and findings

  • Mentorship mindset and willingness to develop others

Why Join Us

  • Lead vulnerability analysis for security-critical components of modern embedded systems and silicon

  • Directly influence the security architecture of next-generation products

  • Shape and scale advanced vulnerability research methodologies, including AI-assisted analysis

  • Work in an environment that values deep technical expertise and offensive security thinking

  • Collaborate with experts across hardware, firmware, and applied security research

Please note: The successful candidate may/will be responsible for security related tasks. The assignment may/will be in scope of security certifications, therefore a conscious and reliable way of working is necessary.

For applications in Gratkorn: NXP provides market competitive compensation according to the benchmarking of the electronic and semiconductor industry. Due to the Austrian Equal Treatment Act we are obligated to state the employment group of our applicable collective bargaining agreement (CBA) “Kollektivvertrag für Angestellte Gewerbe und Handwerk und in der Dienstleistung“, this position (fulltime) is graded in Employment Group V after 6 years. Your individual experiences and expectations will be considered in the application process. Moreover, we provide attractive benefits to our employees like home office, flexible working time, meal benefits and more.

More information about NXP in Austria...

#LI-a8a1
Free account
Stop reading job ads. Get the ones that fit.
One free account turns this page into a shortlist built around your stack, your level and your pay.
Match on every job. Stack, seniority, pay and location, scored against your profile.
368,530 open roles. Read straight off company career pages, refreshed every day.
Unlimited applications. Every one you send is tracked in one place, on-site or on a company board.
3 tailored CVs a month. Rewritten for the exact job you are applying to. Included free.
Create a free account
Free forever. No card. Under a minute.

Your match

How well do you fit this role?
Two answers are enough for a real match. No account needed.
Check my fit
Answers stay in this browser until you create an account.

Recommended for you based on this role

Similar stack
Same company
Leuven
$26k – $66k per year (Estimated) • In office • Full-Time • 7+ years exp • Master's Degree • Hyderabad
Python
SQL
TypeScript
Databases
OpenSearch
Snowflake
AI/ML
AI Agents
AWS Bedrock
Claude
Claude Code
Fine-tuning
Hallucination
LangChain
LLM
Model Context Protocol
Multimodal AI
Prompt Engineering
RAG
Synthetic Data
A2A
Amazon SageMaker
DevOps
AWS
CI/CD
Docker
Vector
Analytics
A/B Testing
Apply
$26k – $66k per year (Estimated) • In office • Full-Time • 7+ years exp • Master's Degree • Hyderabad
Python
SQL
TypeScript
Databases
OpenSearch
Snowflake
AI/ML
AI Agents
AWS Bedrock
Claude
Claude Code
Fine-tuning
Hallucination
LangChain
LLM
Model Context Protocol
Multimodal AI
Prompt Engineering
RAG
Synthetic Data
A2A
Amazon SageMaker
DevOps
AWS
CI/CD
Docker
Vector
Analytics
A/B Testing
Apply
$22k – $57k per year (Estimated) • In office • Full-Time • 7+ years exp • Bachelor's Degree • Hyderabad
Python
TypeScript
JavaScript
Databases
OpenSearch
Snowflake
AI/ML
AI Agents
Claude
Claude Code
LLM
Model Context Protocol
Frontend
Angular
Next.js
React.js
DevOps
AWS
AWS Lambda
CI/CD
Docker
GitHub Actions
Terraform
Amazon ECS
Amazon S3
GitHub
IAM
Apply
AI Engineer 2 days ago
Remote/Hybrid • 8+ years exp
C#
Python
TypeScript
C#
.NET
Databases
ElasticSearch
OpenSearch
AI/ML
AutoGen
AWS Bedrock
Claude
CrewAI
Embeddings
LangGraph
LLM
Model Context Protocol
Prompt Engineering
RAG
Semantic Kernel
Semantic Search
LangChain
Anthropic
LLM Guardrails
OpenAI
OpenAI Agents SDK
Semantic Search
Structured Outputs
AI Agents
Function Calling
DevOps
AWS
Azure
Docker
GCP
Kubernetes
Vector
Apply
$140k – $253k per year (Estimated) • In office • 5+ years exp • Long Beach
C++
Rust
C++
Protobuf
AI/ML
Human-in-the-Loop
DevOps
CI/CD
Vector
Apply
Remote/Hybrid • Full-Time • 10+ years exp • Bachelor's Degree • Bucharest
C++
Python
C++
LLVM
PyTorch C++
TensorFlow C++
AI/ML
ONNX
PyTorch
TensorFlow
TensorRT
Edge AI
Apply
$54k – $128k per year (Estimated) • In office • Full-Time • 12+ years exp • Master's Degree • Caen • Eindhoven
C++
MATLAB
Python
Apply
$37k – $76k per year (Estimated) • In office • Full-Time • 8+ years exp • Pune
Perl
Python
SystemVerilog
Verilog
AI/ML
AI Agents
Apply
$37k – $77k per year (Estimated) • In office • Full-Time • 12+ years exp • Master's Degree • Pune
C++
Python
AI/ML
Anomaly Detection
AI Agents
DevOps
CI/CD
Apply
$80k – $192k per year (Estimated) • In office • Full-Time • 7+ years exp • PhD • Hamburg
AI/ML
Edge AI
Apply
Remote/Hybrid • Full-Time • Leuven
Apply
Remote/Hybrid • Full-Time • 10+ years exp • Leuven • Barcelona • Paris
Apply
Remote/Hybrid • Internship • 8+ years exp • Master's Degree • Leuven
C++
Java
C++
LLVM
Mobile
DexGuard
Apply
Remote/Hybrid • Full-Time • 5+ years exp • Master's Degree • Leuven • Kuala Lumpur • Barcelona
DevOps
AWS
Azure
Incident Management
Apply
Remote/Hybrid • Full-Time • 6+ years exp • Bachelor's Degree • Bucharest • Leuven
Python
Rust
Apply
See all jobs
This is one of many
368,530 more open roles from verified company boards, updated every day.