The opportunity
Anthropic is building the platform security foundation for the infrastructure that trains and serves frontier models. This role owns Dynamic Root of Trust for Measurement (DRTM) across that fleet: bringing it up on x86 and ARM, building the attestation and isolation properties…
What you'll do
Own adoption and integration of DRTM hardware security features across: Anthropic infrastructure, on both x86 and ARM platforms
Implement attestation services and the additional security and privacy capabilities that DRTM presence enables
Design and implement a bootloader-agnostic solution for initiating and relaunching DRTM sessions
Investigate further hardening of existing DRTM solutions: PPAM to isolate SMM on x86, VMM features to isolate UEFI runtime services, ACPI handling and hardening in DRTM environments
Interface with vendor and OEM partners on their DRTM solutions: refine requirements jointly and determine which changes are desirable and feasible
Publish relevant DRTM work upstream and help carry Linux Secure Launch maintainership as tboot is retired
What they're looking for
- + years in systems security, with at least 5 years focused on firmware, bootloader, and OS-level security
- Existing maintainership or subsystem ownership in Linux, or standing in the: TCG, UEFI Forum, or OCP communities
- Confidential computing implementation experience: TDX, SEV-SNP, ARM CCA, and their attestation flows
- Hardware roots of trust and attestation beyond the TPM: Caliptra, OCP S.A.F.E., SPDM
- Memory-safe systems code in Rust
- Firmware vulnerability research, reverse engineering, or fuzzing
- Previous work with AI/ML infrastructure security