13 Aug
|
L4B Software
|
India
13 Aug
L4B Software
India
About L4B Software
L4B Software develops secure, reliable operating-system platforms for embedded, regulated and mission-critical products. Our teams work close to the operating system and hardware, where security, reliability and long-term maintainability matter.
About the role
We are looking for a senior, hands-on Product Security Engineer with strong Embedded Linux experience. The role combines technical security engineering, product-security architecture and practical understanding of cybersecurity standards. You will work directly with software and platform engineers to build security into the product lifecycle.
What you will do
Define and review product-security requirements for Embedded Linux-based platforms.
Perform threat modeling, attack-surface analysis and security architecture reviews.
Work with engineering teams on secure design, implementation and remediation.
Assess Linux kernel and user-space configurations from a security perspective.
Support vulnerability analysis, CVE triage, remediation, verification, SCA and SBOM activities.
Contribute to secure boot, platform hardening, access-control and system-integrity activities.
Contribute to secure software-development lifecycle activities and security reviews.
Translate applicable cybersecurity standards into practical engineering requirements and verification criteria, working closely with software,
systems, validation and quality teams.
What you bring
Strong professional experience with Embedded Linux products or platforms.
Hands-on Linux engineering capability, ideally including Yocto Project and BitBake.
Product-security or embedded-security engineering experience, including threat modeling and vulnerability management.
Good understanding of Linux kernel and user-space security concepts.
Robust C/C++ understanding and ability to investigate issues at source-code level.
Experience applying IEC 62443 or a comparable product-cybersecurity standard in product development.
Ability to turn security requirements and standards into engineering actions, tests and evidence.
Experience with secure development practices, security reviews and cross-functional engineering collaboration.
Nice to have
Linux kernel hardening, SELinux, AppArmor or other Linux Security Modules.
Secure boot, U-Boot, UEFI/EDK2, TPM, TEE or hardware root-of-trust experience.
SBOM, SCA, static-analysis, fuzzing or penetration-testing experience.
IEC 81001-5-1, IEC 62304 or other regulated-product cybersecurity experience.
BSP, Device Tree, low-level platform or Android/AOSP platform-security experience.
Experience with safety-critical, regulated or long-lifecycle products.
📌 Lead Product Security Engineer - Embedded Linux (India)
🏢 L4B Software
📍 India