Hardware & Firmware Threat Research Analyst- 18 monthsDescription -Position Summary: We have an exciting opportunity to join our Threat Research team. The role will be focused on analyzing and reporting on emerging trends in hardware and firmware attacks, from bootkits to low-level ransomware and other stealthy attacks.You will be contributing to HP’s security technology strategy, providing analysis and education on the hardware and firmware threat landscape and state of the art, helping inform the design of future products and services. You will be working closely with other threat and malware researchers, and with security technologists across HP.The successful candidate will have solid technical skills and a background in computer security architecture with a good understanding of hardware and firmware. This position requires a strong writer who can communicate effectively about the threat landscape on topics such as vulnerabilities, exploit behaviors and attack methods. Job Responsibilities: Study and document trends in hardware and firmware vulnerabilities and attack techniques, assessing their risk, maturity and impactAnalyze hardware and firmware attacks found in the wild and study potential impact mitigation optionsStudy and articulate how HP and competing industry solutions can mitigate threats of interestContribute reports and educational material (internal and external) about firmware attacks, trends and techniques, communicating to technical and non-technical audiencesJob Requirements: Proven experience in computer security architecture, including hardware and firmware, and attack analysis Excellent writing skills and an ability to convey technical knowledge to both technical experts and non-technical teams alike Ability to find details on attacks and vulnerabilities and gather information from public sourcesPrevious experience in publishing technical reports and blogsThe following skills and attributes are a plus: Some experience in attack analysis, penetration testing or exploit kits, such as MetasploitExperience analyzing qualitative and quantitative data about cyber threatsExperience in writing and presenting about offensive security topicsKnowledge of PC hardware and firmware architecture and technologies (x86, PCIe, DMA, UEFI etc.)Some experience of vulnerability research and demonstrating attacks (new or reproduced)Knowledge of scripting languages, such as Python and Visual BasicExperience with development of C or C++ code Degree in Computer Science or related field, or equivalent About HPYou’re out to reimagine and reinvent what’s possible—in your career as well as the world around you. So are we. We love taking on tough challenges, disrupting the status quo, and creating what’s next. We’re in search of talented people who are committed to innovate, learn and grow, and dedicated to making a meaningful difference.HP is a technology company that operates in more than 170 countries around the world united in creating technology that makes life better for everyone, everywhere.Our history: HP’s commitment to diversity, equity and inclusion – it’s just who we are. From the boardroom to factory floor, we create a culture where everyone is respected and where people can be themselves, while being a part of something bigger than themselves. We celebrate the notion that you can belong at HP and bring your authentic self to work each and every day. When you do that, you’re more innovative and that helps grow our bottom line. Come to HP and thrive!Please keep reading…Research shows that while men apply to jobs when they meet an average of 60% of the criteria, women tend to only apply when they check every box. So if you think you might be a good fit for the role, but don't necessarily meet every single point on the job description, please still apply! We'd love to learn more about you!Job -EngineeringSchedule -Full timeShift -No shift premium (United Kingdom)Travel -Relocation -EEO Tagline - HP Inc. is EEO F/M/Protected Veteran/ Individual with Disabilities.
View Original Job Posting