01 · Security · Embedded
Secure firmware & OTA
The trust chain for a connected device platform: how firmware gets built, signed, delivered and applied — so a fleet in the field can be updated without ever being bricked or compromised.
- Led the design of the secure update pipeline end to end: image packaging, signing, encryption, versioning and rollback protection.
- Worked with platform teams on secure boot, OP-TEE integration and partition layout, keeping the application layer compatible with trusted-execution workflows.
- Built the OTA system with safe-apply logic, recovery modes and staged updates, verified across the main SoC and its companion microcontrollers.