Security Evaluator - JavaCard
SGS Brightsight
- Graz, Steiermark
- Unbefristet
- Vollzeit
- Evaluate the implementation security of JavaCard hardware / platform / applets;
- Analyze the security of devices under test conditions;
- Identify potential security vulnerabilities of a product and how they could be exploited;
- Qualitative and quantitative results analysis;
- Develop test plans;
- Be technical contact point for customers and certification bodies;
- Design test frameworks and new attack methods for future projects.
- Academic background in disciplines such as computer science, information technology, cybersecurity, microelectronics or physics, or respective practical and proven experience;
- JavaCard development, testing or analysis background;
- Knowledge of JavaCard OS, JavaCard Applet and secure ICs;
- At least basic understanding of cryptography and security related implementations and protocols;
- Good coding skills and additional familiarity with languages such as C, C++, Python, Assembly;
- System design knowledge;
- Knowledge of vulnerabilities and attacks related to logical attacks, fault injection, side-channel attacks;
- Knowledge of design documentation and specification of JavaCards is a plus;
- Knowledge of evaluation and certification activities under Common Criteria and / or the technical domain “SmartCards and Similar Devices”, EMVCo, or SESIP is a plus;
- Hands-on experience with OS test tools (e.g. TCK) for ICs and development tools for embedded systems is a plus;