Jiewen Yao

Principal Engineer - Firmware Security at Intel Corporation

Shanghai, Shanghai, China
email-iconphone-icongithub-logolinkedin-logotwitter-logostackoverflow-logofacebook-logo
Join Prog.AI to see contacts
email-iconphone-icongithub-logolinkedin-logotwitter-logostackoverflow-logofacebook-logo
Join Prog.AI to see contacts

Summary

🤩
Rockstar
🎓
Top School
Jiewen Yao is a Principal Engineer specializing in firmware security with 16 years of experience at Intel in Shanghai, progressing from firmware engineer to principal-level security architect. He combines deep embedded and UEFI expertise with practical TPM2, SPDM/PTP, and PCIe device security implementations, and has contributed to high-profile open-source projects such as tianocore/edk2 and edk2-platforms. Jiewen’s work includes implementing Intel PCI security policies and enabling measurable device attestation for hardware like NVMe, along with low-level TPM2 library fixes and improved firmware debugging and memory attribute handling. He blends hands-on engineering with architecture-level thinking to remediate subtle security flaws in firmware stacks. Trained in computer software engineering (M.Eng.) and originally holding a clinical medicine bachelor’s degree, he brings an unusual cross-disciplinary background to system-level security design.
code16 years of coding experience
job14 years of employment as a software developer
bookBachelor's degree, Clinic Medicine, Bachelor's degree, Clinic Medicine at Fudan University
bookMaster of Engineering (M.Eng.), Computer Software Engineering, Master of Engineering (M.Eng.), Computer Software Engineering at Shanghai Jiao Tong University
github-logo-circle

Github Skills (12)

c1710
uefi10
embedded10
tpm10
c1110
sys10
security-protocol10
acpi9
security9
hardware8
assembly7
testing6

Programming languages (8)

CSSCRustMakefileTeXAssemblyD2Python

Github contributions (5)

github-logo-circle
tianocore/edk2-platforms

May 2017 - Dec 2019

EDK II sample platform branches and tags
Role in this project:
userEmbedded Systems Engineer / Security Engineer
Contributions:99 commits, 57 pushes, 1 branch in 2 years 7 months
Contributions summary:Jiewen contributed significantly to the Intel SiliconPkg within the EDK2-platforms repository, focusing on device security. Their work involved adding definitions for Intel PCI security, including data structures and protocols related to device security policies. They implemented a sample platform device policy and integrated it within the Intel PCIe Security specification to enable the measurement of devices, such as NVMe cards.
branchestags
tianocore/edk2

Feb 2010 - Aug 2020

EDK II
Role in this project:
userBackend Developer
Contributions:132 reviews, 713 commits, 265 PRs in 10 years 8 months
Contributions summary:Jiewen's commits focus on enhancements and bug fixes within the edk2 repository, specifically related to the TPM2-related functionalities. The contributions involve modifying the low-level TPM2 device library and improving the support for the UEFI firmware, like adding new support for SPDM/PTP. Moreover, the user has been instrumental in providing better debug messages by improving the information dumps, ensuring the correct functionality of the memory attributes table. This includes implementing solutions to address potential security vulnerabilities by addressing key errors, such as incorrect attribute usage within the operating system environment.
uefipythonfirmwarec
Find and Hire Top DevelopersWe’ve analyzed the programming source code of over 60 million software developers on GitHub and scored them by 50,000 skills. Sign-up on Prog,AI to search for software developers.
Request Free Trial