Padmi
PayJoy logo
PayJoy

phone financing · secured credit

Mobile Security Engineer

MX · HybridPosted 5 months ago
SecurityUnspecifiedFull Time
Apply at PayJoy

Opens the source posting on jobs.lever.co

Source description

About the role

View original

Proactively and systematically test PayJoy's device locking mechanism on a diverse range of Android devices and OS versions following every OTA update.

Conduct thorough, periodic testing of the lock after every update or modification to the PayJoy lock technology.

Actively research, identify, acquire, and utilize existing and emerging lock-breaking tools, software, hardware techniques, and methodologies (e.g., factory reset exploits, bootloader vulnerabilities, ADB exploits, custom ROM flashing, FRP bypass tools) to attempt to bypass the PayJoy lock.

Develop, maintain, and execute comprehensive test plans, test cases, and test scenarios specifically focused on lock security, bypass attempts, and anti-tampering features.

Simulate various attack vectors and user behaviors that could lead to a lock bypass.

Document all testing activities, methodologies, findings, discovered vulnerabilities, and precise steps to reproduce in a clear, concise, and actionable manner using our bug tracking system (e.g., JIRA).

Collaborate closely with Android developers, security engineers, and product managers to report vulnerabilities, discuss root causes, propose mitigation strategies, and verify the effectiveness of fixes.

Provide detailed reports on test execution, vulnerability status, and overall lock security posture.

Stay continuously updated on the latest Android security vulnerabilities, platform changes, rooting techniques, bootloader unlocking methods, custom firmware, and new bypass tools/techniques relevant to device locking mechanisms.

Maintain and manage a lab environment with various Android devices, testing tools, and necessary infrastructure.

More at PayJoy

Related open roles

View all roles