The opportunity
We are hiring a Security Software Engineer to design and implement the hardware-backed security foundations used across OpenAI’s device ecosystem.
What you'll do
Design and implement security-critical software and firmware for HSMs, secure: elements, trusted execution environments, and hardware roots of trust.
Build and harden the policy-to-HSM boundary responsible for authorizing: certificate issuance and cryptographic signing operations.
Develop HSM trusted applications, firmware components, host interfaces,: device drivers, SDKs, or cryptographic service integrations.
Implement or extend cryptographic interfaces such as PKCS#11, OpenSSL: providers or engines, platform key-storage APIs, or comparable hardware-security interfaces.
Build firmware and software that cryptographically enforces key generation,: provisioning, usage, rotation, recovery, and destruction policies.
Design and implement HSM-backed certificate authority, code-signing,: key-management, and device-identity systems.
What they're looking for
- Develop end-to-end cryptographic protocols spanning devices, secure hardware,: policy services, and backend infrastructure.
- Build security capabilities supporting device attestation, secure boot,: factory provisioning and restoration, user registration, and authentication.
- Design controls that make trusted software and policy changes verifiable,: auditable, and subject to appropriate multi-party authorization.
- Write, review, test, and audit secure embedded software for resource-constrained environments.