Careers

Embedded Security Consultant

Full-time Mannheim · Hybrid· Product Security
Apply now →

This is the most characteristic Redlings profile. You get a device on the bench, and you do not ask for a web URL. Your work starts where the product physically begins: debug interfaces, flash memory, boot chain, firmware, protocols.

DEVICE DEBUG FLASH BOOT FIRMWARE PROTOCOL PRODUCT TRUST

What you will work on

  • Device and firmware assessments: boot chains, secure boot, firmware update mechanisms, readout protection.
  • Hardware access: UART, JTAG, SWD, flash and memory, extraction, analysis, evaluation.
  • Firmware unpacking and analysis: filesystems, configurations, secrets, third-party components.
  • Protocol analysis between device, gateway and backend, including proprietary ones.
  • Assessment of key storage and identity: secure elements, TPM, TrustZone, and what the architecture around them actually protects.

What you must bring

  • Embedded Linux, solid, not theoretical.
  • Firmware extraction and unpacking, filesystem and firmware analysis.
  • ARM/AArch64 fundamentals.
  • Bootloaders, secure boot, firmware updates.
  • UART, JTAG, SWD; flash and memory handling.
  • Ghidra or IDA, Python, basic protocol analysis.

A strong plus

  • RTOS experience.
  • BLE and other wireless technologies.
  • Secure elements, TPM, TrustZone.
  • Fuzzing, hardware debugging.
  • Exploitability and memory corruption assessment.
  • Proprietary protocols.

What you will learn with us

  • Invasive analysis: fault injection, decapsulation, on the rigs that do not fit in a home office.
  • Side-channel evaluation with real targets.
  • Coordinated disclosure with manufacturers.

Do not apply if …

  • … an open enclosure makes you nervous.
  • … you want to work through checklists instead of understanding a product.
  • … you expect a big-machine department behind you. It is you, the bench and the review.

Honestly

  • Hardware ships by courier, to the lab in Mannheim and to your home office alike. You do not need to be on site for a UART.
  • Invasive analyses run in the Mannheim lab or at the customer’s premises, some projects require devices never to leave the client’s rooms. Those days exist, they are rare.
  • Small team: flat, direct, and you will carry assessments that larger firms split across three roles.

What we offer

  • A lab bench that is actually used: devices, probes, logic analyzers, and the time to work thoroughly.
  • Permanent position, flexible hours, remote-first with lab days in Mannheim.
  • Research time for tools and publications, budget for certifications and conferences.
  • Senior-led reviews, quality is part of the process.

What have you taken apart lately? CV and a few lines via the form, everything else happens at the bench. Not a 100% fit? Apply anyway.