Hardware Penetration Tester

Posted Aug 7

This is a fully remote position, open to applicants in Canada.

📋 Description

• Plan and implement comprehensive hardware penetration tests on embedded and IoT devices in accordance with established scope and rules of engagement.

• Identify, access, and exploit on-board debugging interfaces such as JTAG, SWD, and UART.

• Extract firmware via debug ports, in-circuit flash reads, or chip-off techniques, and analyze it for vulnerabilities.

• Intercept and evaluate embedded buses including SPI, I2C, UART, CAN, and USB.

• Conduct side-channel analysis and fault injection as applicable.

• Reverse engineer firmware and embedded binaries to uncover logic flaws, hardcoded secrets, and exploitable conditions.

• Evaluate physical attack surfaces, tamper resistance, and the storage of keys/secrets.

• Differentiate between theoretical risks and those relevant to operational contexts.

• Compose technical reports and present findings to both technical and non-technical stakeholders.

• Provide clients with practical, prioritized remediation advice.

• Develop and maintain lab tools, testing rigs, and internal methodologies.

• Engage in research, responsible disclosure, and the sharing of internal knowledge.

• Stay informed about hardware attack techniques, embedded architectures, and defensive strategies.

• Contribute to elevating the standard of hardware security practices within the firm.


⛳️ Requirements

• Graduate of a degree program in Information Security, Computer Science, or Computer/Electrical Engineering, or possess equivalent hands-on experience.

• Strong understanding of electronics fundamentals, including the ability to interpret schematics and datasheets.

• Proficient in hands-on soldering, including surface-mount rework and basic chip removal.

• Proven experience accessing JTAG, SWD, UART, and similar debugging interfaces.

• Experience in extracting firmware from actual devices.

• Comfortable using logic analyzers, oscilloscopes, and multimeters.

• Skills in firmware reverse engineering.

• Proficiency in scripting with Python and sufficient knowledge of C to interpret embedded code.

• Familiarity with ARM/Cortex-M, MIPS, AVR, and RISC-V architectures.

• Understanding of RTOS and bare-metal concepts.

• Strong written and verbal communication skills.

• Ability to collaborate effectively with clients, project managers, and team members.

• Experience with side-channel or fault-injection techniques, RF/wireless work, secure boot/TEE/secure element/HSM knowledge, PCB design familiarity, published CVEs, conference presentations, CTF placements, open-source tools, and relevant certifications are considered assets.


🏝️ Benefits

• Immediate and continuous offensive security training, mentorship, and opportunities for professional development.

• Competitive salary and prospects for growth.

• Flexible working environment.

• Opportunity to influence the growth, direction, and methodologies of Packetlabs' expanding hardware practice.

• Collaboration with a highly skilled team of security experts.

People also viewed

Wellspring Worldwide11 hours ago

Quality Engineer

US flagUnited States OnlyFull-timeQA Engineer (Quality Assurance)
ApplyView job
Circular Materials11 hours ago

QA Tester, Data Integration

CA flagCanada OnlyFull-timeQA Engineer (Quality Assurance)C$70k – C$85k/year
ApplyView job
Amgen11 hours ago

Senior QA Manager

US flagConnecticut, +9 more statesFull-timeQA Engineer (Quality Assurance)$132k – $178.6k/year
ApplyView job
Elife15 hours ago

Test Analyst, Software Quality

BR flagBrazil OnlyFull-timeQA Engineer (Quality Assurance)
ApplyView job
Novara16 hours ago

Senior AI Quality Engineer

CA flagCanada OnlyFull-timeQA Engineer (Quality Assurance)C$100k – C$130k/year
ApplyView job
ProPharma18 hours ago

Compliance and Quality Assurance Consultant

SE flagSweden, +1 more countryFull-timeQA Engineer (Quality Assurance)
ApplyView job

Never miss a great job!

Get handpicked remote jobs straight to your inbox weekly.

Trusted by 7,400+ designers