
Hardware Penetration Tester
Posted Aug 7

Posted Aug 7
This is a fully remote position, open to applicants in Canada.
• Plan and implement comprehensive hardware penetration tests on embedded and IoT devices in accordance with established scope and rules of engagement.
• Identify, access, and exploit on-board debugging interfaces such as JTAG, SWD, and UART.
• Extract firmware via debug ports, in-circuit flash reads, or chip-off techniques, and analyze it for vulnerabilities.
• Intercept and evaluate embedded buses including SPI, I2C, UART, CAN, and USB.
• Conduct side-channel analysis and fault injection as applicable.
• Reverse engineer firmware and embedded binaries to uncover logic flaws, hardcoded secrets, and exploitable conditions.
• Evaluate physical attack surfaces, tamper resistance, and the storage of keys/secrets.
• Differentiate between theoretical risks and those relevant to operational contexts.
• Compose technical reports and present findings to both technical and non-technical stakeholders.
• Provide clients with practical, prioritized remediation advice.
• Develop and maintain lab tools, testing rigs, and internal methodologies.
• Engage in research, responsible disclosure, and the sharing of internal knowledge.
• Stay informed about hardware attack techniques, embedded architectures, and defensive strategies.
• Contribute to elevating the standard of hardware security practices within the firm.
• Graduate of a degree program in Information Security, Computer Science, or Computer/Electrical Engineering, or possess equivalent hands-on experience.
• Strong understanding of electronics fundamentals, including the ability to interpret schematics and datasheets.
• Proficient in hands-on soldering, including surface-mount rework and basic chip removal.
• Proven experience accessing JTAG, SWD, UART, and similar debugging interfaces.
• Experience in extracting firmware from actual devices.
• Comfortable using logic analyzers, oscilloscopes, and multimeters.
• Skills in firmware reverse engineering.
• Proficiency in scripting with Python and sufficient knowledge of C to interpret embedded code.
• Familiarity with ARM/Cortex-M, MIPS, AVR, and RISC-V architectures.
• Understanding of RTOS and bare-metal concepts.
• Strong written and verbal communication skills.
• Ability to collaborate effectively with clients, project managers, and team members.
• Experience with side-channel or fault-injection techniques, RF/wireless work, secure boot/TEE/secure element/HSM knowledge, PCB design familiarity, published CVEs, conference presentations, CTF placements, open-source tools, and relevant certifications are considered assets.
• Immediate and continuous offensive security training, mentorship, and opportunities for professional development.
• Competitive salary and prospects for growth.
• Flexible working environment.
• Opportunity to influence the growth, direction, and methodologies of Packetlabs' expanding hardware practice.
• Collaboration with a highly skilled team of security experts.
Abhyaz
Commence
Isenberg & Hewitt, P.C.
CCR GROUP
Get handpicked remote jobs straight to your inbox weekly.