Mobile Security Engineer
Role Overview
We are seeking experienced Mobile Security Engineers with strong hands-on expertise in Android and/or iOS application security, mobile security testing and threat modelling.
The successful candidates will be responsible for assessing mobile application security, identifying vulnerabilities and risks, developing and maintaining security testing tools and scripts, and supporting the improvement of the organisation's overall mobile application security posture.
Strong practical knowledge of mobile application security standards, penetration testing and security controls is essential.
Key Responsibilities
- Conduct regular reviews of mobile application security posture.
- Perform hands-on mobile application security testing and assessment.
- Conduct threat modelling and identify appropriate mitigation techniques.
- Identify and assess security vulnerabilities within mobile applications.
- Develop and maintain penetration-testing tools and security scripts.
- Develop and maintain mobile security testing policies and procedures.
- Apply security standards and best practices across Android and iOS applications.
- Assess authentication, authorisation, encryption and cryptographic implementations.
- Support remediation of identified mobile security vulnerabilities.
- Work with development and engineering teams to improve mobile application security.
- Research emerging mobile security technologies, threats and techniques.
Required Skills & Experience Mandatory
- Hands-on mobile application security experience.
- Strong Android and/or iOS security experience.
- Mobile application penetration testing experience.
- Threat modelling experience.
- Experience assessing and improving mobile application security posture.
- Experience developing or maintaining security testing tools and scripts.
- Strong understanding of mobile application security standards.
- Strong understanding of authentication and authorisation.
- Strong understanding of encryption and cryptography.
- Experience identifying security vulnerabilities and recommending mitigation approaches.
Desirable
- Mobile application development experience.
- DevSecOps tooling experience.
- Mobile security testing and automation frameworks.
- Experience with specialist mobile security tools.
- Experience working with security policies and procedures.
- Experience researching emerging mobile security technologies.
Working Arrangement
Location: Bristol
Hybrid: 2 days per week onsite at the client location
Duration: 6 months with possible extension