06 Aug
|
Pi Square Technologies
|
Bengaluru
06 Aug
Pi Square Technologies
Bengaluru
About the Role
We are seeking a skilled Android Security Engineer with 5+years of experience to join our team. In this role, you will be responsible for designing, implementing, and maintaining platform security solutions across the Android software stack from secure boot and firmware through to application-level security features. You will work closely with hardware, firmware, and software teams to ensure our products meet the highest security standards.
Responsibilities
- Lead secure boot bring-up activities including secure fusing, hardware root-of-trust establishment, and Android Verified Boot (AVB) integration
- Support and maintain File-Based Encryption (FBE) and full-disk encryption solutions on Android platforms
- Develop and integrate TrustZone-based applications (Trusted Apps / TAs) within Trusted Execution Environments (TEE)
- Work on secure firmware, bootloader (ABL/XBL/LK), and trusted OS development
- Collaborate with silicon partners (Qualcomm / MediaTek) on platform security enablement and issue resolution
- Debug complex hardware/software integration issues related to security subsystems
- Implement and validate cryptographic protocols and key provisioning/management schemes
Required Qualifications
- 5+ years of hands-on experience in Android platform security or embedded security engineering
- Robust proficiency in C/C++ for low-level systems and firmware development
- Demonstrated experience with secure boot, secure fusing, and Android Verified Boot (AVB)
- Hands-on experience with File-Based Encryption (FBE) implementation and debugging
- Working knowledge of ARM TrustZone architecture, TEE OS (QSEE/TEE-based), and Trusted Application development
- Experience with Qualcomm and/or MediaTek chipset platforms (XBL, ABL, TZ-based security)
- Solid understanding of cryptographic fundamentals (AES, RSA, ECC, SHA, HMAC, key derivation, certificate chains
- Proficiency in debugging tools (JTAG, UART, logcat, crash dumps) and hardware/software integration troubleshooting
Preferred Qualifications
- Experience with secure provisioning and factory security flows on embedded/mobile platforms
- Familiarity with Android Keystore/Keymaster, StrongBox, and hardware-backed attestation
- Exposure to dm-verity, vbmeta, and partition integrity verification mechanisms
- Knowledge of secure OTA update mechanisms and anti-rollback protections
Technical Skills
Languages: C, C++, Assembly (ARM), Python/Shell (scripting)
Platforms: Qualcomm (QSEE, XBL, SCM), MediaTek (TEE, secure boot)
Security: AVB, FBE, TrustZone, TEE, Secure Boot, Fusing, Key Provisioning
Tools: JTAG, UART, GDB, Android Debug Tools, OpenSSL
Concepts: Cryptography, Secure Storage, Attestation, DRM
📌 Android Security Engineer (CoreOS: BSP/Security) (Bengaluru)
🏢 Pi Square Technologies
📍 Bengaluru