Padmi
Encora

Finance and Accounting · B2B

Senior Mobile Security Engineer (Android/iOS)

Kuala Lumpur · OnsitePosted 2 months ago
CybersecuritySenior
Apply at Encora

Opens the source posting on job-boards.greenhouse.io

Source description

About the role

View original

Key Responsibilities: ● App Hardening: Implement and maintain RASP (Runtime Application Self-Protection), Code Obfuscation (ProGuard/DexGuard), and Root/Jailbreak detection mechanisms. ● Secure Connectivity: Enforce Certificate Pinning and secure TLS configurations to prevent Man-in-the-Middle (MitM) attacks. ● Data Protection: Ensure no sensitive data (PII, Keys) is leaked in logs, cache, or snapshots. Secure usage of Android Keystore and iOS Keychain. ● Mobile Design Components: Deliver new security design patterns and components for Mobile security. Create reusable libraries for biometric login, secure storage, and device attestation that feature teams can easily drop into their code. ● Pentesting: Regularly decompile and attack our own binaries to verify defenses.

Technical Requirements: ● Deep knowledge of Android (Kotlin/Java) and iOS (Swift/Obj-C) internals. ● Experience with mobile security frameworks (OWASP MASVS). ● Hands-on experience with reverse engineering tools (Frida, Ghidra, MobSF). ● Understanding of Biometric authentication flows (FaceID/TouchID implementation).

One address, no account. We’ll tell you when matching roles go live.

More at Encora

Related open roles

View all roles