All roles

Mobile Application Security Engineer

Remote · USA Full-time New today

Android Reverse Engineer #2530 Position Summary: Our partner, a leading cybersecurity provider specializing in Extended Detection and Response (XDR) solutions, is seeking a highly skilled Android Reverse Engineer to join a dynamic security team focused on identifying malicious behaviors and vulnerabilities in Android applications. As an engineer, you will primarily work on the security of mobile applications ensuring user safety by deconstructing and evaluating apps for potential threats from aspects related to spyware, trojans, and other abusive behaviors. This position requires a strong understanding of Android internals, security assessment, and reverse engineering techniques. The role is a critical part of a larger initiative aimed at maintaining application security and involves collaboration with security experts and other stakeholders Experience and Education:

  • Bachelor's/Master’s in computer science, Information Systems, Information Technology, or a related technical field.
  • 5+ years of experience in Android, Reverse engineering, Application Security Assessments, or Pen testing.
  • Proven experience in analyzing, unpacking, and reverse-engineering malicious Android applications or SDKs.
  • Strong proficiency in static and dynamic analysis techniques, with a focus on Android applications.
  • Hands-on experience with mobile security and application vulnerabilities, including data leakage and malware identification.
  • Familiarity with programming languages such as Java, Kotlin, and Flutter.
  • Experience with network traffic analysis, including security fundamentals and protocol interception.
  • Knowledge off mobile app store policies and best practices for security assessments.
  • Experience in vulnerability analysis, pen testing, and a background in security code review. (a plus)
  • Android Development experience. (a plus)
  • Certifications like Certified Ethical Hacker (CEH) or Offensive Security Certified Professional (OSCP). (a plus) Skills and Strengths:
  • SDK Reverse Engineering
  • Application Reverse Engineering
  • Hardware Reverse Engineering
  • Reverse Engineering tools: Ghidra, IDA Pro, Frida, Jadx, Burp Suite
  • Internal and External SDKs
  • Binary Analysis
  • ELF (Native Binaries)
  • APK Analysis and Structures
  • Android Application Lifecycle
  • Android Internals
  • Android APIs
  • Static Analysis
  • Dynamic Analysis
  • SQL
  • SQL Analysis
  • IDS/IPS
  • Hybrid Application Architecture
  • SOC/SOC 2 Operations
  • SIEM Configuration and Management
  • Security Network Traffic Flow
  • Network Traffic Analysis
  • Incident Response
  • End Point Security
  • Cryptography
  • Pen testing
  • Mobile App store policies (Ads, PHAs, Developer, etc.)
  • CTF (Capture the Flag) for Mobile Software (a plus)
  • Kotlin or Flutter or Python (a plus) Primary Job Responsibilities:
  • Conduct in-depth analysis of Android applications and SDKs, both statically and dynamically, to identify vulnerabilities, malicious activities (such as spyware, trojans and backdoors).
  • Work collaboratively with security teams and other stakeholders to assess the security posture of applications and provide actionable recommendations.
  • Develop and maintain custom reverse engineering tools and scripts to automate tasks and improve efficiency.
  • Reverse-engineer malicious software to understand how it operates and develop custom tools and scripts to automate tasks and streamline analysis.
  • Analyze network traffic and backend systems that applications communicate with to identify security risks, user and device vulnerabilities, and potential data leakage; develop scalable rules to prevent harmful actions.
  • Collaborate with teams using a Kanban-based workflow and document issue tracking and resolutions.
  • Report findings to the development team for further action and verification, with a focus on identifying risks and potential harm to users.
  • Participate in incident response efforts related to Android security issues using YARA rules to identify potential targeted attacks and develop scalable detection mechanisms similar to IDS needs.
  • Perform client-facing activities by discussing findings and working closely with product and engineering teams.
  • Take part in paired engineering for certain reverse engineering tasks and assist in the mentoring and development of junior team members.
  • Be able to identify potential malicious targeted attacks and security threats.
  • Stay current with industry trends and emerging technologies by researching threats, such as APTs, using Open-Source Intelligence tools (e.g., VirusTotal, ExploitDB, MITRE). Apply tot his job Apply tot his job

Apply tot his job Apply To this Job

Related roles

Community Moderator Jobs - Work Remotely, Earn $25-$35/Hour

Remote · USA Full-time

Moderator Jobs Remote No Experience – Online Co...

Remote · USA Full-time

Remote Customer Service Chat Representative – Entry‑Level, Flexible Hours, No Experience Required – Work‑From‑Home Live Chat Support Agent for arenaflex

Remote · USA Full-time

Chat Content Moderator Positions | Remote | $25-$35 per Hour | Complete-Time | Maintain secure and engaging digital communities in adaptable, complete remote position.

Remote · USA Full-time

Chat Moderator Jobs Remote: $25-$35 an Hour (Full-Time/Work From Home)

Remote · USA Full-time

Digital Support Agent - Remote - Overnight Available - $25-$35/hr

Remote · USA Full-time

Mortgage Disclosure Specialist II (Remote WA, CA, OR, ID)

Remote · USA Full-time

Remote Part‑Time Data Entry Specialist – Entry‑Level Opportunity with arenaflex – Flexible Schedule, Comprehensive Benefits & Career Growth

Remote · USA Full-time

Remote Part‑Time Data Entry Clerk – Flexible Schedule, Competitive Weekly Pay & Growth Opportunities

Remote · USA Full-time

Entry-Level Remote Data Entry Specialist – Home‑Based Administrative Support at arenaflex

Remote · USA Full-time

Customer Service Representative (BPO Voice / Non-Voice Process)

Remote · USA Full-time

Warehouse Associate (Macon, GA)

Remote · USA Full-time

[Work From Home] Data SRE EPM, Ad Platforms

Remote · USA Full-time

IMMEDIATE HIRING: Elite Phone Closer for Kypsi – Top 3% Agency

Remote · USA Full-time

B12 Creator and Influencer Partner

Remote · USA Full-time

Foreman Pump Solutions

Remote · USA Full-time

Immediate Hiring: Job At Home CVS Pharmacy $27/Hour

Remote · USA Full-time

Immediate Hiring: Live Chat Support Agent - work remote/ no

Remote · USA Full-time

Remote Virtual Customer Care Specialist Jobs at American Express

Remote · USA Full-time

Client Solutions Account Executive (Remote Job)...

Remote · USA Full-time