Cyber Security Technical Specialist
Bicester, England, United Kingdom Full-time Posted 7 hours ago
Evolito’s mission is to accelerate the adoption of electric propulsion in aerospace applications in support of a net-zero world. We will help to revolutionise personal mobility and transform our towns and cities with clean, noise-free air transportation.
Evolito develops and manufactures class-leading, lightweight, high-power, and high-torque-density electric propulsion systems for a range of aerospace markets, including EVTOL, Unmanned Aerial Vehicles and General Aviation.
As well as ultra-high performance, low-weight electric motors and controllers, Evolito specialises in high integrity, bespoke battery systems for the aerospace and defence markets. The team is scaling rapidly and has ambitious growth plans over the next twelve to eighteen months.
As part of our current high-growth phase, we are seeking a Cyber Security Technical Specialist to join our Software Team and support the safety, resilience, and compliance of Evolito’s aircraft propulsion and engine control systems. This role focuses on embedded systems security, including Infineon AURIX TC3xx microcontrollers, Hardware Security Module (HSM) configuration, secure firmware deployment, hardware security testing and vulnerability assessment within safety-critical engine control hardware.
Key responsibilities will include:
Evolito develops and manufactures class-leading, lightweight, high-power, and high-torque-density electric propulsion systems for a range of aerospace markets, including EVTOL, Unmanned Aerial Vehicles and General Aviation.
As well as ultra-high performance, low-weight electric motors and controllers, Evolito specialises in high integrity, bespoke battery systems for the aerospace and defence markets. The team is scaling rapidly and has ambitious growth plans over the next twelve to eighteen months.
As part of our current high-growth phase, we are seeking a Cyber Security Technical Specialist to join our Software Team and support the safety, resilience, and compliance of Evolito’s aircraft propulsion and engine control systems. This role focuses on embedded systems security, including Infineon AURIX TC3xx microcontrollers, Hardware Security Module (HSM) configuration, secure firmware deployment, hardware security testing and vulnerability assessment within safety-critical engine control hardware.
Key responsibilities will include:
- Design and review security architectures for safety-critical Engine Control Units (ECUs) using Infineon AURIX TC3xx microcontrollers
- Conduct penetration testing, ethical hacking and vulnerability assessments on embedded ECU hardware, interfaces and debugging ports
- Programme, configure and optimise the isolated HSM core to offload cryptographic tasks from the main engine control host CPUs
- Implement secure boot flows, root-of-trust verification and secure firmware update mechanisms utilising AURIX SHE/HSM hardware acceleration for engine control systems
- Align AURIX-based ECU hardware security controls with civil aviation regulatory frameworks, including DO-326A, ED-202A and DO-254/DO-178C safety-security co-engineering
- Conduct threat modelling and side-channel analysis on embedded engine control components and safety-critical data networks
- Provide technical specialist input on embedded cyber security matters within safety-critical engine control systems.
- Bachelor’s degree in Electrical/Electronic Engineering, Embedded Systems, Computer Science, Cyber Security or a related discipline
- Previous proven experience in embedded cyber security, automotive cyber security or aerospace engineering, with practical experience in hardware penetration testing and Infineon AURIX TC3xx platforms
- Demonstrated track record of engineering ability in an electrical, electronic, software or cyber security discipline
- Strong technical knowledge of Infineon AURIX TC3xx microcontrollers, including HSM architecture, peripherals and memory protection units
- Practical experience developing embedded HSM firmware, including cryptographic services such as AES, RSA, ECC and secure hashing
- Solid understanding of hardware-accelerated symmetric and asymmetric cryptography, Secure Hardware Extension (SHE) specifications and cryptographic key management
- Hands-on experience with hardware hacking and penetration testing tools, embedded debugging interfaces and relevant laboratory test equipment
- Knowledge of DO-326A / ED-202A airworthiness security process and DO-356A / ED-203A frameworks
- Proficiency in C/C++ programming for embedded systems and experience with relevant development tools such as Tasking compiler, Lauterbach TRACE32 or Infineon AURIX Development Studio
- Instinctive problem-solving skills coupled with a sound analytical approach
- A ‘self-starter’ attitude with energy and enthusiasm, with the ability to thrive in a small business environment
- Ability to work under pressure while managing conflicting demands against tight deadlines
- Excellent verbal and written communication skills.
- A flexible approach to work.
- Experience of working within a Tier 1 environment
- Broader experience in safety-related product development
- Relevant penetration testing or security credentials such as OSCP, OSCE, GIAC, CISSP or CSSLP
- UK driving licence and ability to travel.