Anduril은 Product Security Engineer를 채용하여 방산 기술의 보안을 강화합니다. C/C++, Rust, Python 등 프로그래밍 언어에 능숙해야 하며, 임베디드 시스템 및 펌웨어 보안 경험이 필수입니다. 위협 모델링을 통해 보안 아키텍처를 검토하고 취약점을 개선하는 역할을 수행합니다. 영국 시민권자로서 SC 보안 인가를 취득할 수 있어야 합니다.
Anduril Industries is a defense technology company with a mission to transform U.S. and allied military capabilities with advanced technology. By bringing the expertise, technology, and business model of the 21st century’s most innovative companies to the defense industry, Anduril is changing how military systems are designed, built and sold. Anduril’s family of systems is powered by Lattice OS, an AI-powered operating system that turns thousands of data streams into a realtime, 3D command and control center. As the world enters an era of strategic competition, Anduril is committed to bringing cutting-edge autonomy, AI, computer vision, sensor fusion, and networking technology to the military in months, not years.
We're seeking a product security engineer to develop novel security tooling, discover vulnerabilities, and ultimately secure our suite of advanced technologies including artificial intelligence systems, command and control platforms, aerospace vehicles, and long range sensors.
The ideal candidate has a background in electrical or software engineering, with a focus on platform security, or has pivoted to a product or application security role. They will be able to conduct complex security architecture reviews, research and mitigate exploits against hardware and software, and work with other engineering teams to build resiliency into our products.
Excels at the above listed Requirements
Experience with UK Ministry of Defence Cyber Security Model, including
UK Government Security Classifications
DefStans (05-138 at a minimum)
Cyber Secure by Design (including JSP 440’s Cyber Secure by Design guidance and/or JSPs 453 and 604)
Defence Information Protection Notices (DIPNs)
Industry Security Notices (ISNs)
Familiarity with aviation cyber security standards such as DO-326A/ED-202A
Experience with SORA or CAA Type Certification cyber requirements
Experience engaging with certification bodies like the CAA or MAA/DE&S
Familiarity with RF Emanation Protection (including TEMPEST)
Experience of Network Security Devices (including Inter-Domain Gateways and Cross Domain Solutions)
Familiarity with security architectures of embedded, aerospace, or cyber-physical systems
Experience with programmable logic devices and their development tools
Regularly builds, tests, and delivers production-ready systems, especially for embedded and/or Linux systems
Ideally a sole UK National (i.e. hold no other citizenships)
Anduril is an equal-opportunity employer, and we encourage candidates from all backgrounds to apply. If you are someone passionate to work on problems that matter, we’d love to hear from you!
The salary range for this role is an estimate based on a wide range of compensation factors, inclusive of base salary only. Actual salary offer may vary based on (but not limited to) work experience, education and/or training, critical skills, and/or business considerations. Highly competitive equity grants are included in the majority of full time offers; and are considered part of Anduril's total compensation package. Additionally, Anduril offers top-tier benefits for full-time employees, including:
At Anduril, we invest in our people. Our comprehensive, competitive benefits package (available at little to no cost to employees) ensures you’re supported in health, recovery, and whatever comes next. For more information, Explore Our Benefits.
Anduril is committed to maintaining the integrity of our Talent acquisition process and the security of our candidates. We've observed a rise in sophisticated phishing and fraudulent schemes where individuals impersonate Anduril representatives, luring job seekers with false interviews or job offers. These scammers often attempt to extract payment or sensitive personal information.
To ensure your safety and help you navigate your job search with confidence, please keep the following critical points in mind:
No Financial Requests: Anduril will never solicit payment or demand personal financial details (such as banking information, credit card numbers, or social security numbers) at any stage of our hiring process. Our legitimate recruitment is entirely free for candidates.
Please always verify communications:
Direct from Anduril: If you receive an email from one of our recruiters, it will only come from an @anduril.com address.
Via Agency Partner: If contacted by a recruiting agency for an Anduril role, their email will clearly identify their agency. If you suspect any suspicious activity, please verify the agency's authenticity by reaching out to contact@anduril.com.
Exercise Caution with Unsolicited Outreach: If you receive any communication that appears suspicious, contains grammatical errors, or makes unusual requests, do not engage. Always confirm the sender's email domain is @anduril.com before providing any personal information or clicking on links.
What to Do If You Suspect Fraud: Should you encounter any questionable or fraudulent outreach claiming to be from Anduril, please report it immediately to contact@anduril.com. Your proactive caution is invaluable in protecting your personal information and upholding the security and trustworthiness of our recruitment efforts.
To view Anduril's candidate data privacy policy, please visit https://anduril.com/applicant-privacy-notice/.
By submitting your application, you consent to Anduril Industries using a third-party service provider to conduct pre-employment risk, integrity, and due diligence screening and assessing potential risks as part of your application process. This third-party service provider provides risk-intelligence services that may include analysis of sanctions and watchlists, adverse media, public-record information, and other lawful open-source or commercial data sources. This third-party service provider does not act as a consumer reporting agency. Use of this provider helps to ensure compliance with applicable laws and protect technology, intellectual property, and organizational security.