| What youll do: (List out Key Responsibilities) |
- Perform highly technical analysis of known TTPs leading to mobile app fraud enhance testing methodologies for other Offensive Security services to consume and develop proof-of-concept malware to replicate TTPs in a controlled manner
- Clearly and professionally document root cause and risk analysis of all findings
- Adhere to the security testing process and raise any gaps or opportunities for improvement with manager.
- Work closely with the Mobile Cyber Fusion Cell to build a common understanding of mobile app fraud.
- Develop understanding of business functionality and apply testing methodology as appropriate to technologies and risks.
- Other responsibilities as assigned.
|
| What you will need to succeed in the role: (Minimum Qualification and Skills Required) |
- At least 5 years of prior demonstrable hands-on experience in penetration testing or security research.
- Solid understanding of the platform security models for iOS and Android platforms.
- Excellent understanding of platform-specific security risks common vulnerabilities for mobile applications common risks in financial applications.
- Practical knowledge of penetration testing of widely understood infrastructure web and mobile technologies using manual and automated testing methods.
- Proven programming/scripting skills ideally in Java/Kotlin/Objective C/Swift.
- Working knowledge of reverse engineering mobile apps.
- Ability to explain security functionality from first principles.
- Ability to adapt and apply known techniques to unfamiliar situations.
|
| What additional skills will be good to have (List out good to have skills and certifications) |
- Strong grasp of common technologies protocols and architectures commonly used by mobile application. (HTML XML JavaScript JSON REST Micro-services etc.)
- Advanced knowledge of common security analysis tools and testing techniques especially for the mobile security space
|
What youll do: (List out Key Responsibilities) Perform highly technical analysis of known TTPs leading to mobile app fraud enhance testing methodologies for other Offensive Security services to consume and develop proof-of-concept malware to replicate TTPs in a controlled manner Clearly and...
| What youll do: (List out Key Responsibilities) |
- Perform highly technical analysis of known TTPs leading to mobile app fraud enhance testing methodologies for other Offensive Security services to consume and develop proof-of-concept malware to replicate TTPs in a controlled manner
- Clearly and professionally document root cause and risk analysis of all findings
- Adhere to the security testing process and raise any gaps or opportunities for improvement with manager.
- Work closely with the Mobile Cyber Fusion Cell to build a common understanding of mobile app fraud.
- Develop understanding of business functionality and apply testing methodology as appropriate to technologies and risks.
- Other responsibilities as assigned.
|
| What you will need to succeed in the role: (Minimum Qualification and Skills Required) |
- At least 5 years of prior demonstrable hands-on experience in penetration testing or security research.
- Solid understanding of the platform security models for iOS and Android platforms.
- Excellent understanding of platform-specific security risks common vulnerabilities for mobile applications common risks in financial applications.
- Practical knowledge of penetration testing of widely understood infrastructure web and mobile technologies using manual and automated testing methods.
- Proven programming/scripting skills ideally in Java/Kotlin/Objective C/Swift.
- Working knowledge of reverse engineering mobile apps.
- Ability to explain security functionality from first principles.
- Ability to adapt and apply known techniques to unfamiliar situations.
|
| What additional skills will be good to have (List out good to have skills and certifications) |
- Strong grasp of common technologies protocols and architectures commonly used by mobile application. (HTML XML JavaScript JSON REST Micro-services etc.)
- Advanced knowledge of common security analysis tools and testing techniques especially for the mobile security space
|
View more
View less