
Reverse Engineer – Android
Posted 19 hours ago

Posted 19 hours ago
This is a fully remote position, open to applicants in United States.
• Perform comprehensive analyses of Android applications and SDKs to gain insights into their code structure, architecture, and functionality while pinpointing potential vulnerabilities.
• Utilize decompilation, disassembly, and debugging techniques to extract data from codebases.
• Detect user and device vulnerabilities, data leaks, and malicious code execution within Android apps and SDKs.
• Collect, analyze, and report threat intelligence pertaining to Android malware, exploits, and emerging security developments.
• Work collaboratively with security researchers, developers, and other stakeholders to communicate findings and offer recommendations.
• Play a role in the creation of secure applications and the overall ecosystem.
• A minimum of 3–5+ years of experience in Android Development, Reverse Engineering, Pentesting, Application Security Assessments, or Capture the Flag (CTF).
• Practical experience in analyzing, unpacking, and reverse engineering malicious application or SDK code.
• Familiarity with both static and dynamic analysis methods.
• Proficient in reverse engineering tools such as Jadx, Ghidra, Frida, IDA Pro, and Burp for analyzing binaries and APKs.
• Knowledge of programming languages including Java, Kotlin, JavaScript, Flutter, and other mobile software languages.
• Experience in ELF native binary reverse engineering.
• Capability to develop signatures using SQL, YARA, or similar technologies.
• Understanding of Android fundamentals, such as activity lifecycles, common Android API usage, AOSP, and the development of Android applications.
• Awareness of techniques employed by malicious applications to compromise user devices or data.
• Familiarity with mobile app store regulations.
• Knowledge of network traffic analysis and fundamental security concepts.
• Experience in researching threats like APT using open-source intelligence resources including VirusTotal, the Web, ExploitDB, and MITRE.
• Understanding of encoding and cryptography principles.
• Familiarity with authentication methods and security protocols.
• Knowledge of device rooting processes.
• Understanding of complex frameworks and application packers.
• Social programs.
• Flexible work hours.
• Family-friendly benefits.
• Retirement Plans.
• Medical, Dental, and Vision Coverage.
• Paid Time Off.
• Paid Parental Leave.
• Support for Community Involvement.
Secture
MKS2 Technologies
Pure Storage
Capital One
Get handpicked remote jobs straight to your inbox weekly.