Change Language

Security Evaluator

Information

  • Location Delft
  • Experience You have a bachelor/master/PhD in a technical field (physics, mathematics, electronics, computer science. computer engineering, etc.
  • Employment Permanent

Security Evaluator

This famous security lab is an ambitious organization specializing in embedded security testing for leading international clients from the semiconductor, payment, Pay TV, mobile and smart metering industry. She is one of the world’s most advanced players in the field of side channel attacks and embedded technology evaluation

The company has engaging projects, an open office environment, and they are looking for self-motivated individuals who would like to embrace the opportunity to drive security forward in the headoffice in Delft, The Netherlands

What is my role?

  • The organization evaluates the security of products that use embedded and smart card technologies, usually in teams of 2-4 security analysts. The main activities of the evaluation process include analyzing threats and weaknesses by taking apart a device’s specifications, code or hardware, and then developing the necessary tools to attack the security. Results of this go into a report, and we give recommendations for solving these problems.
  • In addition to evaluation work they carry out other projects, including consultancy work, research, tool development, and training. As a state-of-the-art lab, our internal research and development process is a necessity to remain competitive. We record the knowledge we gain during our projects in the knowledge database to ensure it is preserved and shared within the organization.
  •  Work is mainly done at the office in Delft. Parts of a project may require working at the customer’s premises. Depending on the type of assignment and your level of experience you are in regular contact with a customer’s technical liaison during a project. All communication with our customers is in English.

Responsibilities

  • Perform Common Criteria security evaluations, as lead evaluator or evaluator 
  • Coach colleagues to grow as evaluators
  • Understand complex designs (hardware and/or software)
  • Apply critical thinking to distinguish what is crucial and what is not
  • Effectively and convincingly communicate to internal and external entities.

What skills do I need.

  • You have a bachelor/master/PhD in a technical field (physics, mathematics, electronics, computer science. computer engineering, etc.)
  • You have proven experience in CC projects preferably as an evaluator, but if not as a consultant or developer
  • You have a track record in CC projects in ICs, smartcards, card-related devices, operating systems, TEE or network devices.
  • You have a positive and ambitious mindset with a can-do attitude
  • Excellent English command, both orally and writte

Nice to have:

  • Knowledge of cryptographic encryption algorithms, key exchange algorithms, hashing/message authentication algorithms, PKI, random number generators, etc.
  • Knowledge of EMVCo, JavaCard/Global Platform
  • Hands-on experience on SCA / FI 
  • You are well familiar with the Dutch scheme (or otherwise any other SOGIS scheme member)

You have a creative mind with an eye for detail, and you like to make sure we use the right methods and equipment to detect security issues. You have a good command of the English language, both verbally and written. You have good social skills and you are a pleasant co-worker who likes to collaborate in a multidisciplinary team of security specialists. You are flexible, and you enjoy travelling to customers in Europe, North America, or Asia every now and then. We are interested in speaking with you even if you don’t meet all the criteria detailed above.

We are interested in speaking with you even if you don’t meet all the criteria detailed above. 


Contact info