Platform Security Engineer, DRTM / Secure LaunchActive$320K

The opportunity

Anthropic is building the platform security foundation for the infrastructure that trains and serves frontier models. This role owns Dynamic Root of Trust for Measurement (DRTM) across that fleet: bringing it up on x86 and ARM, building the attestation and isolation properties…

What you'll do

  • Own adoption and integration of DRTM hardware security features across: Anthropic infrastructure, on both x86 and ARM platforms

  • Implement attestation services and the additional security and privacy capabilities that DRTM presence enables

  • Design and implement a bootloader-agnostic solution for initiating and relaunching DRTM sessions

  • Investigate further hardening of existing DRTM solutions: PPAM to isolate SMM on x86, VMM features to isolate UEFI runtime services, ACPI handling and hardening in DRTM environments

  • Interface with vendor and OEM partners on their DRTM solutions: refine requirements jointly and determine which changes are desirable and feasible

  • Publish relevant DRTM work upstream and help carry Linux Secure Launch maintainership as tboot is retired

What they're looking for

  • + years in systems security, with at least 5 years focused on firmware, bootloader, and OS-level security
  • Existing maintainership or subsystem ownership in Linux, or standing in the: TCG, UEFI Forum, or OCP communities
  • Confidential computing implementation experience: TDX, SEV-SNP, ARM CCA, and their attestation flows
  • Hardware roots of trust and attestation beyond the TPM: Caliptra, OCP S.A.F.E., SPDM
  • Memory-safe systems code in Rust
  • Firmware vulnerability research, reverse engineering, or fuzzing
  • Previous work with AI/ML infrastructure security