Senior Principal Engineer, Product Security

12 Minutes ago • 5-15 Years • Cyber Security • $168,920 PA - $253,000 PA

Job Summary

Job Description

Marvell is seeking a Senior Principal Engineer for Product Security to ensure their software products are designed, developed, and maintained with security as a priority. This role involves architectural influence, threat modeling, understanding customer security requirements, managing the Security Development Lifecycle (SDL), supporting security audits, defining supply chain security, and improving vulnerability management practices. The individual will work across the company and with business partners to enhance product security.
Must have:
  • Architect and influence hardware and software designs.
  • Generate and drive threat models for software components.
  • Understand customer security requirements.
  • Manage Security Development Lifecycle (SDL) for software.
  • Support security audits and compliance.
  • Define and coordinate supply chain security.
  • Improve best practices for identifying and mitigating product security vulnerabilities.
  • Proven experience as a senior technical leader.
  • Deep knowledge of product security from software perspectives.
  • Ability to drive product security requirements and processes.
  • Experience with threat modeling.
  • Skilled in identifying software threats.
  • Strong understanding of encryption and authentication algorithms (e.g., AES, PQC, SHA, Caliptra; SPDM, DICE, TLS, TDISP).
  • Experience with Linux-based systems and embedded firmware development.
  • Solid understanding of C/C++ and Rust.
  • Ability to understand software vulnerabilities.
  • Familiarity with Security Development Lifecycle (SDL).
  • Understanding of hardware-based root of trust, provisioning flows, and secure key management.
Good to have:
  • Experience with product and supply chain vulnerability management.
  • Background in conducting security audits and ensuring compliance with relevant standards.
  • Familiarity with a range of product types, from large silicon compute devices to small embedded cable connectivity devices.
  • Experience interfacing with multiple software teams.
  • Awareness of open-source security frameworks and customer expectations (e.g., Caliptra).
  • Hardware perspective in product security.
Perks:
  • Base, bonus and equity compensation.
  • Health and financial wellbeing benefits.
  • Flexible time off.
  • 401k.
  • Year-end shutdown.
  • Floating holidays.
  • Paid time off to volunteer.

Job Details

About Marvell

Marvell’s semiconductor solutions are the essential building blocks of the data infrastructure that connects our world. Across enterprise, cloud and AI, automotive, and carrier architectures, our innovative technology is enabling new possibilities.

At Marvell, you can affect the arc of individual lives, lift the trajectory of entire industries, and fuel the transformative potential of tomorrow. For those looking to make their mark on purposeful and enduring innovation, above and beyond fleeting trends, Marvell is a place to thrive, learn, and lead.

Your Team, Your Impact

Marvell develops silicon and software for some of the largest companies in the world in the growing datacenter/AI and enterprise markets. If there is a bit being processed, moved, secured, or stored in infrastructure equipment it is likely Marvell's products are involved.

Marvell requires a Senior Principal Engineer focused on Product Security. The candidate will be responsible for Product Security for software products in Marvell and ensure Marvell products are designed, developed, and maintained with security as a priority. This individual has a broad reach across the company and with our business partners.

What You Can Expect

  • Architecture and influence for current and future hardware and software designs (HW/SW interface, algorithms)
  • Generating and driving threat models for software components and products overall
  • Working with our customers to understand their security requirements in future and current products
  • Security Development Lifecycle (SDL) management for software, and solutions
  • Supporting security audits and compliance (software vulnerabilities, fault injection, penetration testing)
  • Defining and coordinating supply chain security (code / artifact signing and traceability)
  • Working with our Vulnerability management (PSIRT) team to improve best practices related to identification and mitigation of product security vulnerabilities

What We're Looking For

  • Bachelor’s degree in Computer Science, Electrical Engineering or related fields and 10-15 years of related professional experience or Master’s degree in Computer Science, Electrical Engineering or related fields with 5-10 years of experience
  • Proven experience as a senior technical leader with strong communication skills
  • Deep knowledge of product security from both software perspectives, hardware perspective highly preferred
  • Ability to drive product security requirements and processes across multiple markets
  • Experience with threat modeling across diverse software projects
  • Skilled in identifying threats in software modules and products
  • Strong understanding of encryption and authentication algorithms in hardware and software, some examples including: AES, PQC, SHA, Caliptra; SPDM, DICE, TLS, TDISP
  • Experience with Linux-based systems and embedded firmware development
  • Solid understanding of C/C++ and Rust
  • Ability to understand how software works and how vulnerabilities can be introduced
  • Strong communication skills and ability to facilitate process change across teams
  • Familiarity with Security Development Lifecycle (SDL) and ability to drive its adoption
  • Understanding of hardware-based root of trust, including provisioning flows and secure key management

Preferred Qualifications

  • Experience with product and supply chain vulnerability management
  • Background in conducting security audits and ensuring compliance with relevant standards
  • Familiarity with a range of product types, from large silicon compute devices to small embedded cable connectivity devices.
  • Experience interfacing with multiple software teams and maintaing a pulse on security across the org
  • Awareness of open-source security frameworks and customer expectations around transparency (e.g., Caliptra)

Expected Base Pay Range (USD)

168,920 - 253,000, $ per annum

The successful candidate’s starting base pay will be determined based on job-related skills, experience, qualifications, work location and market conditions. The expected base pay range for this role may be modified based on market conditions.

Additional Compensation and Benefit Elements

At Marvell, we offer a total compensation package with a base, bonus and equity.Health and financial wellbeing are part of the package. That means flexible time off, 401k, plus a year-end shutdown, floating holidays, paid time off to volunteer. Have a question about our benefits packages - health or financial? Ask your recruiter during the interview process.

All qualified applicants will receive consideration for employment without regard to race, color, religion, sex, national origin, sexual orientation, gender identity, disability or protected veteran status.

Any applicant who requires a reasonable accommodation during the selection process should contact Marvell HR Helpdesk at TAOps@marvell.com.

#LI-VM1

Similar Jobs

Looks like we're out of matches

Set up an alert and we'll send you similar jobs the moment they appear!

Similar Skill Jobs

Looks like we're out of matches

Set up an alert and we'll send you similar jobs the moment they appear!

Jobs in Santa Clara, California, United States

Looks like we're out of matches

Set up an alert and we'll send you similar jobs the moment they appear!

Cyber Security Jobs

Looks like we're out of matches

Set up an alert and we'll send you similar jobs the moment they appear!

About The Company

Marvell’s semiconductor solutions are the essential building blocks of the data infrastructure that connects our world. Across enterprise, cloud and AI, automotive, and carrier architectures, our innovative technology is enabling new possibilities. At Marvell, you can affect the arc of individual lives, lift the trajectory of entire industries, and fuel the transformative potential of tomorrow. For those looking to make their mark on purposeful and enduring innovation, above and beyond fleeting trends, Marvell is a place to thrive, learn, and lead.

Santa Clara, California, United States (On-Site)

Santa Clara, California, United States (On-Site)

Santa Clara, California, United States (On-Site)

Santa Clara, California, United States (On-Site)

Boise, Idaho, United States (On-Site)

Taipei City, Taiwan (On-Site)

Santa Clara, California, United States (On-Site)

Boise, Idaho, United States (On-Site)

Santa Clara, California, United States (On-Site)

View All Jobs

Get notified when new jobs are added by Marvell

Level Up Your Career in Game Development!

Transform Your Passion into Profession with Our Comprehensive Courses for Aspiring Game Developers.

Job Common Plug
Contact Us
hello@outscal.com
Made in INDIA 💛💙