1X logo1X logo

Product Security Engineer - Operating System at 1X | Palo Alto, CA

1XPalo Alto, California, United States
On-site Full-time $137.9K/yr - $240K/yr

Clicking Apply Now takes you to AutoApply where you can tailor your resume and apply.


Experience Level

Experience

Qualifications

RequirementsMust HaveExtensive experience with Linux operating system internals and security mechanismsHands-on expertise in secure boot and verified boot implementationsFamiliarity with Trusted Execution Environments such as OP-TEEA proven track record of applying least-privilege principles and fortifying root-level servicesProficiency in systemd and sandboxing tools, including namespacing, privilege restrictions, and syscall filteringExperience in designing security tools, automation, and developer-focused templatesKnowledge of device access control and Linux permissions managementStrong understanding of CI/CD security validation integrationExpertise in software development and code auditingExperience with NVIDIA Orin or similar SoC platforms (preferred)

About the job

Product Security Engineer - Operating System

Palo Alto, CA (on-site)

About 1X
At 1X, we are pioneers in developing humanoid robots designed to collaborate with humans, addressing labor shortages and fostering abundance in various sectors.

The Role
We are on the lookout for a skilled Product Security Engineer specializing in operating system security to enhance the robustness of our robotics platform. In this pivotal role, you will architect and implement critical security features such as secure boot, trusted execution environments, and service hardening. Your contributions will be essential in safeguarding sensitive operations and data while empowering our developers to adhere to security best practices. This position plays a vital role in bolstering the resilience and trustworthiness of our systems.

You Will

  • Develop and maintain secure critical services for Linux systems

  • Implement secure boot chains utilizing fused hardware keys with rollback protection

  • Integrate OP-TEE to protect sensitive assets, including mTLS certificates and disk encryption keys

  • Harden system services using least-privilege operations, systemd features, namespacing, and syscall filtering

  • Create hardening templates and automation tools to facilitate security enforcement for developers

  • Automate security validation processes within CI/CD pipelines

  • Design and enforce device access controls for Linux systems

  • Contribute and deploy C/C++ code (or similar) into production environments

About 1X

At 1X, we are innovators dedicated to creating humanoid robots that work in collaboration with humans to alleviate labor shortages and generate abundance across industries.

Similar jobs

Browse all companies, explore by city & role, or SEO search pages.

Tailoring 0 resumes

We'll move completed jobs to Ready to Apply automatically.