Rivet logo

Software Engineer, Device Management

Rivet

Bellevue, WAFull-time$180–240K/yrPosted 1mo agoVerified open 5 days ago

Most applications go out cold — see where you stand first. No sign-up to start.

At a glance

Compensation
$180–240K/yr
Location
Bellevue, WA
Schedule
Full-time
Work Authorization
US work authorization required

Requirements

Credentials this posting asks for.

Security clearanceBachelor's degree

Job overview

Rivet is hiring a Software Engineer, Device Management. Help build the foundation of Rivet’s device platform, the secure OS layer and lightweight host services that manage hardware in the field. The role sits at the intersection of systems engineering, security architecture, and embedded infrastructure, owning core pieces of the stack and designing with compliance and reliability in mind.

Key focus areas include Design and maintain low-level Android/Linux platform code, including AOSP customizations, system services, HALs, and kernel integration, Build lightweight host services for device communication, policy distribution, and telemetry, and Ship secure device management end to end, covering enrollment, provisioning, attestation, policy enforcement, and OTA updates.

Successful candidates bring U.S. Person, 5+ Years Building Android System-Level Code, and BS In CS, CE, Or Equivalent Demonstrated Experience. Important skills include Android System-Level Code, AOSP, Custom ROMs, HALs, System Services, and Linux Systems Programming. Preferred (not required): Device Owner, Device Policy Controller, DPM APIs, and COSU/COPE.

Skills & qualifications

RequiredNice to have

Skills

Android System-Level CodeAOSPCustom ROMsHALsSystem ServicesLinux Systems ProgrammingGoMDM/EMM SystemsSecure EnrollmentDevice PosturePolicy EnforcementSecure BootTechnical Program ManagementCertificate ChainsAttestationLow-Level Security PrimitivesHardened Android ImagesContainerizationSandboxing on Linux or AndroidHTTP API DesignHTTP API ImplementationDevice OwnerDevice Policy ControllerDPM APIsCOSU/COPEManaged ProfilesIntuneOmnissaAndroid EnterpriseServer-Side Integration APIsSELinux Policy AuthoringProtocol BuffersCode-Generation PipelinesCross-CompileStatic ARM64 BuildsYoctoC++NDKVendor-SDK LevelSecurity-First MindsetHardening Real-World SystemsAndroid System-Level DevelopmentAOSP CustomizationsHAL DevelopmentGo ProgrammingSandboxingDevice Owner ExperienceAOSP Device-TreeC++ NDKVendor SDK

Qualifications

5+ Years Android System-Level ExperienceBS in Computer Science or Computer Engineering or EquivalentU.S. Person Status RequiredSecurity Clearance Eligibility

Benefits

Paid Time Off

Full job description

About Rivet Rivet is an American company building integrated task systems — fusing hardened hardware with software, sensors, AI, and networking — for industrial workforces and defense personnel. We create capabilities that multiply the effectiveness of every individual and withstand the world’s toughest environments.

We serve the people who build, operate, maintain, and defend our way of life. From technicians and engineers to first responders and service members, they embody the hard work, ingenuity, and meritocratic values that drive Western prosperity. Yet too often they are forced to rely on outdated tools that fail under modern pressures. Rivet exists to reset that priority.

At Rivet, you’ll join a mission-driven team that fuses disciplines to deliver decisive outcomes where they matter most. Whether shaping our technology, strengthening our partnerships, or building our culture, every role here contributes to equipping the front lines with the modern systems they deserve.

Work Authorization Requirement: Due to the nature of our business and compliance with federal regulations, all candidates must be a "U.S. Person". Upon hire, you will be required to provide documentation verifying your status as a U.S. Citizen, a lawful permanent resident, or a protected individual under 8 U.S.C. 1324b(a)(3).

Summary

Help build the foundation of Rivet’s device platform: the secure OS layer and lightweight host services that manage our hardware in the field. This role sits at the intersection of systems engineering, security architecture, and embedded infrastructure. You’ll own core pieces of the stack and design with compliance and reliability in mind.

 

Responsibilities

  • Design and maintain low-level Android/Linux platform code: AOSP customizations, system services, HALs, and kernel-level integration

  • Build lightweight host services for device communication, policy distribution, and telemetry

  • Ship secure device management end to end: enrollment, provisioning, attestation, policy enforcement, and over-the-air updates

  • Define and enforce secure software and system configurations across the device fleet

  • Build and manage secure, reproducible environments: certificate signing, sandboxing, and runtime hardening

  • Integrate with the third-party MDM systems some of our customers deploy

  • Align deployment practices to regulatory and high-assurance frameworks

  • Act as a key owner across the stack, shipping pragmatic, secure, well-documented systems that scale

 

Requirements

  • 5+ years building Android system-level code (AOSP, custom ROMs, HALs, system services, etc.)

  • Strong Linux systems programming experience and proficiency in Go or a similar modern systems language

  • Practical experience with MDM/EMM systems: secure enrollment, device posture, and policy enforcement

  • Familiarity with secure boot, TPM, certificate chains, attestation, and other low-level security primitives

  • Experience building hardened Android images for regulated or high-assurance deployments

  • Working understanding of containerization and sandboxing on Linux or Android

  • HTTP API design and implementation

  • BS in CS, CE, or equivalent demonstrated experience

 

Preferred Qualifications

  • Device Owner / Device Policy Controller experience on Android (DPM APIs, COSU/COPE, managed profiles)

  • Familiarity with third-party MDM/EMM stacks (eg. Intune, Omnissa), Android Enterprise, and server-side integration APIs

  • SELinux policy authoring

  • Protobuf and code-generation pipelines

  • Cross-compile and static ARM64 builds; Yocto; AOSP device-tree

  • C++ at the NDK or vendor-SDK level

  • Security-first mindset with experience hardening real-world systems in regulated environments

Compensation may vary within the posted range based on relevant experience, skills, education, and other job-related factors. In addition to base salary, this role may be eligible for equity and other forms of compensation. Eligible employees also receive a competitive benefits package, including unlimited PTO.

Rivet is an Equal Opportunity Employer. All qualified applicants will receive consideration for employment without regard to any characteristic protected by applicable law. Certain roles may require U.S. Person status, security clearance eligibility, or other requirements imposed by law or government contract.

You've read the whole posting — now see how you match it.