As a Security Architect at Applied Intuition, you will lead the design and implementation of cybersecurity architectures for next-generation automotive systems, ensuring compliance with ISO/SAE 21434 and UN Regulations 155/156. You will work across the vehicle lifecycle, collaborating with embedded and application security engineers to establish security controls spanning hardware, embedded systems, networks, and cloud infrastructure.
What You'll Do
- Develop cybersecurity architectures compliant with ISO/SAE 21434 engineering requirements and UN R155 Cybersecurity Management System (CSMS) mandates across all vehicle lifecycle phases (concept, development, production, operation, decommissioning)
- Implement UN R156-compliant Software Update Management Systems (SUMS) with secure OTA update mechanisms, cryptographic verification, and version control for automotive ECUs
- Conduct threat analysis and risk assessments (TARA) per ISO 21434 Annex C requirements, addressing 69 attack vectors identified in UN R155 Annex 5
- Design hardware-rooted security controls for automotive SoCs including secure boot, hardware security modules (HSM), and TEE implementations
- Collaborate with suppliers to ensure Tier 1/Tier 2 component security meets ISO 21434 supply chain requirements and UN R155 post-production obligations
- Develop automotive-specific security requirements for AI/ML systems in autonomous driving platforms, addressing model integrity and adversarial attack prevention
What We're Looking For
- 7+ years of hands-on experience designing and deploying security solutions for embedded automotive systems, with proven expertise in automotive communication protocol security (CAN bus hardening, Ethernet intrusion detection)
- Cryptographic engineering for resource-constrained environments (ECC optimization, post-quantum crypto prototyping)
- Proficiency in automotive security toolchains: Embedded debug tools (JTAG, UART, Trace32)
- Vehicle network analysis (Vector CANoe, Wireshark dissectors for SOME/IP)
- ECU flashing and diagnostic tools (ODX/PDX scripting, UDS exploit development)
- Strong systems programming skills in C/C++/Rust for bare-metal and RTOS environments, with experience in secure over-the-air update implementations
- Real-time intrusion detection systems for vehicle networks
- Demonstrated ability to lead technical security initiatives, including threat modeling for complex automotive architectures
- Security code reviews for safety-critical embedded software
- Mentoring junior engineers in secure coding practices
- Familiarity with automotive development workflows: AUTOSAR Classic/Adaptive security components
Nice to Have
- Contributions to open-source automotive security projects (e.g., OpenXC, SavvyCAN)
- Experience with autonomous vehicle sensor security (LiDAR/Camera spoofing countermeasures)
- Background in hardware security evaluation (glitching, fault injection, TEMPEST)
- Development of vehicle-specific penetration testing rigs (CAN bus injectors, ECU emulators)
- Public research on automotive vulnerabilities (CVEs, conference presentations, whitepapers)
- Secure boot implementation and hardware-rooted trust chains (HSM provisioning, TEE architectures)
- Reverse engineering and vulnerability research on automotive firmware (ARM Cortex-M/R, QNX, AUTOSAR)
- Experience with hardware security module integration
- Familiarity with CI/CD pipelines for ECU software with SBOM generation
- Familiarity with Hardware-in-the-loop (HIL) security testing
Technical Stack
CAN bus, Ethernet, SOME/IP, JTAG, UART, Trace32, Vector CANoe, Wireshark, ODX/PDX, UDS, C, C++, Rust, AUTOSAR Classic, AUTOSAR Adaptive, RTOS, ARM Cortex-M, ARM Cortex-R, QNX, HSM, TEE, SBOM, HIL
Team & Environment
Collaborating with embedded and application security engineers
Benefits & Compensation
- Comprehensive health insurance coverage
- Dental insurance coverage
- Vision insurance coverage
- Life insurance coverage
- Disability insurance coverage
- 401k retirement benefits with employer match
- Learning stipends
- Wellness stipends
- Paid time off
Compensation includes a base salary of $197,400 - $292,393 USD annually, equity in the form of options and/or restricted stock units, and comprehensive benefits including 401k with match and learning and wellness stipends.
Work Mode
Employees primarily work from the office 5 days a week, with occasional remote work allowed, including starting the day from home before heading to the office or leaving early for family commitments. Office locations include Sunnyvale, California; Washington, D.C.; San Diego; Ft. Walton Beach, Florida; Ann Arbor, Michigan; London; Stuttgart; Munich; Stockholm; Bangalore; Seoul; and Tokyo.
Applied Intuition is an equal opportunity employer and federal contractor or subcontractor. The company abides by 41 CFR 60-1.4(a), 41 CFR 60-300.5(a), and 41 CFR 60-741.5(a), which prohibit discrimination based on race, color, religion, sex, sexual orientation, gender identity, national origin, protected veteran status, or disability. The company takes affirmative action to employ and advance individuals without regard to these factors and complies with Executive Order 13496 regarding employee rights under federal labor laws.
