Loading jobs…
Loading jobs…
Plate IQ — San Francisco
Who We Are
HP IQ is HP’s new AI innovation lab. Combining startup agility with HP’s global scale, we’re building intelligent technologies that redefine how the world works, creates, and collaborates. We’re assembling a diverse, world-class team—engineers, designers, researchers, and product minds—focused on creating an intelligent ecosystem across HP’s portfolio.
Together, we’re developing intuitive, adaptive solutions that spark creativity, boost productivity, and make collaboration seamless. We create breakthrough solutions that make complex tasks feel effortless, teamwork more natural, and ideas more impactful—always with a human-centric mindset. By embedding AI advancements into every HP product and service, we’re expanding what’s possible for individuals, organisations, and the future of work.
Join us as we reinvent work, so people everywhere can do their best work.
About The Role
As an Offensive Security Engineer within HP IQ’s Product Security team, you will partner closely with engineering teams to identify, validate, and mitigate security risks across the product lifecycle. You’ll influence design decisions, embed security into development workflows, and continuously assess attack surfaces to guide and enhance secure development. What You Might Do Lead penetration tests and security assessments for product and feature releases.
Conduct continuous security engagements, proactively identifying vulnerabilities and driving remediation to closure. Assess attack surfaces across internet-facing services, APIs, and device interfaces (Wi-Fi, BLE, USB). Perform threat modeling and security architecture reviews that directly shape product decisions.
Shape the offensive security roadmap, defining assessment scope, tooling, and methodology standards.
Qualifications
5+ years of experience as an offensive security engineer or equivalent. , MITRE ATT CK). , OWASP Top 10, SANS 25).
, JTAG, UART, SPI/I2C). Demonstrated experience with hardware-assisted attack techniques such as fault injection, side-channel analysis, and glitching, using tools like ChipWhisperer, OpenOCD, Ghidra, Binwalk. Proficiency in at least one modern language (Go, Python, Java, or TypeScript), applied to building offensive tooling, exploits, or automation.
Ability to communicate security findings, risk posture, and strategic recommendations to both engineering teams and executive stakeholders. Preferred Skills Experience securing AI products or edge-connected systems at scale. Experience building or maturing an offensive security practice within a product-focused organization.
Experience validating technical controls to meet compliance standards such as SOC 2, ISO 27001, or PCI DSS. Security research background with demonstrated findings, CVE disclosures, or public contributions to the offensive security community.
Compensation
Benefits (Full-Time Employees)
The salary range for this role is