Staff Software Security Engineer

ARM LIMITED

Staff Software Security Engineer

Salary Not Specified

ARM LIMITED, Newtown, Cambridge

  • Full time
  • Permanent
  • Onsite working

Posted 2 weeks ago, 16 May | Get your application in now before you miss out!

Closing date: Closing date not specified

job Ref: d86820d6db304e4da73de2df30e095b5

Full Job Description

We are seeking a skilled and passionate security engineer to lead the central software security testing program across software in Arm. The role is within Arm's multifaceted Product Security team. You will have the opportunity to drive improvements in security of Arm software, and processes, and build security culture.,

  • Develop comprehensive software security assessment methodology.

  • Conduct security assessments and code reviews to identify and remediate vulnerabilities in firmware and system software.

  • Review and advise on output of security testing, including DAST, SAST, SCA

  • Advance baseline for security testing across Arm's software.

  • Develop software fuzz testing strategy at Arm.

  • Enable engineering teams to implement security testing independently.

  • Keep up-to-date with industry best practices and developments in software security.

    Deep knowledge and expertise in developing and reviewing software threat models.

  • Experience writing secure code, and designing secure software specifically for low level software such as drivers, firmware.

  • Knowledge of well known industry standard fuzzing tools such as AFL, libfuzzer, syzcaller.

  • Demonstrated skills for secure code reviews (C/C++) of complex software projects.

  • Experience in automation using scripting languages (e.g., Python).

  • Experience in performing Software Composition Analysis using tools such as Black Duck


  • "Nice To Have" Skills and Experience :

  • Expericence working with Arm's open source software.

  • Knowledge of Arm assembly.

  • Expericence in penetration testing.

  • Delivered software security training.

  • Experience in configuration and creation of rules for SAST tools such as Coverity and SonarQube.

  • Experience in performing root cause analysis for security issues.

  • Experience working with relevant security certification schemes (e.g., PSA Certified, common criteria, SESIP) and international standards (e.g, ISO 21434, IEC 62443).

    Arm is committed to global talent acquisition, offering an attractive relocation package. With offices worldwide, Arm is a diverse organization of dedicated, creative, and hardworking engineers. By enabling a dynamic, inclusive, meritocratic, and open workplace where everyone can grow and succeed, we encourage our people to share their outstanding contributions to Arm's success in the global marketplace., At Arm, we want our people to Do Great Things. If you need support or an accommodation to Be Your Brilliant Self during the recruitment process, please email accommodations@arm.com. To note, by sending us the requested information, you consent to its use by Arm to arrange for appropriate accommodations. All accommodation requests will be treated with confidentiality, and information concerning these requests will only be disclosed as necessary to provide the accommodation. Although this is not an exhaustive list, examples of support include breaks between interviews, having documents read aloud or office accessibility. Please email us about anything we can do to accommodate you during the recruitment process., Power the Future on Arm


  • Working in software engineering at Arm is about shaping a future of technology for which we don't yet have words. Our engineers lead innovation in physical Ip, AI and machine learning, cloud architecture, automotive tech, and every aspect of computing that matters.

    Spanning software's full spectrum, from compilers to AI-powered IoT and beyond, your code can enable virtually anything to be produced on silicon. Whether you're developing award-winning VR gaming or life-enhancing medical equipment, you can improve the lives of millions by being your brilliant self at Arm., Life in the office doesn't get any better - especially when those offices are as sleek as ours and the people there are creative and compassionate. Combine that with our popular 'we, not I' mindset, and you enjoy the kind of teamwork and togetherness rarely found elsewhere. We share so much in common, not least the same passion for progress, but we also welcome each other's diversity. Ultimately, we love to inspire and be inspired every day.