Platform Hardware Security

Anthropic · San Francisco, CA | New York City, NY | Seattle, WA · Security · listed June 15, 2026

The shape of it

Seniority
Senior
Experience asked
5–8 years
Where
Hybrid
Stated pay
$320,000 – $405,000 USD
Requirements listed
9
Length
1,004 words

In the posting’s own words

We're seeking a Platform Hardware Security Engineer to design and implement security architectures for bare-metal infrastructure. You'll work with teams across Anthropic to build firmware, bootloaders, operating systems, and attestation systems to ensure the integrity of our infrastructure from the ground up.

What it asks for · 9

  • Hands-on experience with secure boot, measured boot, and attestation technologies (TPM, Intel TXT, AMD SEV, ARM TrustZone)
  • Strong understanding of cryptographic protocols and hardware security modules
  • Experience with UEFI/BIOS or embedded firmware security, bootloader hardening, and chain of trust implementation
  • Proficiency in low-level programming (C, Rust, Assembly) and systems programming
  • Knowledge of firmware vulnerability assessment and threat modeling
  • Track record of designing security architectures for complex, distributed systems
  • Experience with supply chain security
  • Ability to work effectively across hardware and software boundaries
  • Knowledge of NIST firmware security guidelines and hardware security frameworks

Also a plus

  • 8+ years of experience in systems security, with at least 5 years focused on firmware and hardware security (firmware, bootloaders, and OS-level security)
  • Experience with confidential computing technologies and hardware-based TEEs
  • Knowledge of SLSA framework and software supply chain security standards
  • Experience securing large-scale HPC or cloud infrastructure
  • Contributions to open-source security projects (coreboot, CHIPSEC, etc.)
  • Background in formal verification or security proof techniques
  • Experience with silicon root of trust implementations
  • Experience working with building foundational technical designs, operational leadership, and vendor collaboration

What the job covers

  • Design and implement secure boot chains from firmware through OS initialization for diverse hardware platforms (CPUs, BMCs, switches, peripherals, and embedded microcontrollers)
  • Architect attestation systems that provide cryptographic proof of system state from hardware root of trust through application layer
  • Develop measured boot implementations and runtime integrity monitoring
  • Create reference architectures and security requirements for bare-metal deployments
  • Integrate security controls with infrastructure teams without impacting training performance
  • Prototype and validate security mechanisms before production deployment
  • Conduct firmware vulnerability assessments and penetration testing
  • Build firmware analysis pipelines for continuous security monitoring
  • Document security architectures and maintain threat models
  • Collaborate with software and hardware vendors to ensure security capabilities meet our requirements

Tools and skills named

Security & compliance
  • Security23×
  • Penetration testing
  • Threat modeling
Operations & finance
  • Supply chain2×
Cloud & infra
  • Distributed systems
Languages
  • Rust
Models & research
  • Machine learning
Ways of working
  • Testing

Words the posting leans on

  • security23×
  • firmware9×
  • experience8×
  • hardware8×
  • systems8×
  • infrastructure5×
  • boot4×
  • chain4×
  • hardware security4×
  • design3×
  • implementations3×
  • knowledge3×
  • security architectures3×
  • software3×
  • architect2×
  • assessment2×

Counted from the posting after the mission statement and the legal notices are set aside. The ones near the top are the ones a screener is looking for.

The posting, your resume, and the gaps between them. One click loads all three.

More open at Anthropic

every open role at Anthropic

How this page was made

An automated read of a public job posting, fetched August 25, 2026 and last changed by Anthropic on August 21, 2026. Every list above is pulled from the posting’s own sentences — nothing rewritten, nothing added, no judgment about the role or the company. Counts and seniority are read off the text by rule, so they can be wrong where the posting is unusual. The original is the only thing that binds. Openings close without warning; check the source before spending an evening on it.