Must Have
Amdocs Billing
Product Exp Openet
Domain Exp mitigation/charging is must.
System Engineer EngOps T2
NPW: US 1
Role Overview
We are looking for a Security Engineer who is passionate about security and thrives in a fast-paced environment. The Security Engineer will be a self-starter, able to thoroughly test and engineer Security SRE solutions for mobile applications, and provide expertise and guidance to product and development teams.
This role serves the organization from a centralized Operations and Security SRE team, responsible for creating security requirements, testing, and mitigating security risks for mobile applications. The engineer will act as a Subject Matter Expert (SME) for supported delivery teams.
The Mobile App Security Engineer may also serve as a Tier-2 Incident Responder for complex security vulnerability remediation efforts. Additionally, this role contributes to developing processes and procedures to ensure continuous improvement in security requirements, testing, and risk-mitigation programs.
Responsibilities and Day-to-Day View
- Execute vulnerability assessments of internal and external mobile applications using automated and manual techniques to evaluate risk and security posture.
- Research, design, and develop solutions that meet internal and external compliance, security requirements, and standards for Site Security & Reliability Engineering.
- Drive defense-in-depth security practices to protect critical IT assets and data.
- Develop and document security requirements for product teams.
- Perform security testing and analysis of:
- Native iOS and Android applications
- React Native applications
- Mobile Web experiences
- Review application design and architecture from a security standpoint and provide recommendations.
- Perform root cause analysis of security vulnerabilities and apply lessons learned.
- Provide detailed documentation on security policies and remediation guidance.
- Assist developers with remediation by sharing security concepts and best practices.
- Support and drive business-unit and enterprise security programs as an SME.
- Assist the Enterprise Bug Bounty program.
Security Job Requirement (cont..)
Required Qualifications
- Ability to write and develop security requirements.
- Experience in Mobile App Security Testing, including:
- SAST (Veracode preferred)
- DAST (AppScan Enterprise preferred)
- Pen-testing tools (e.g., Burp Suite)
- Ability to explain vulnerabilities from the OWASP Top 10 to stakeholders and discuss remediation strategies.
- Deep understanding of iOS and Android application security principles and best practices.
- Strong understanding of React Native security best practices.
- Basic understanding of iOS and Android internals.
- Experience with Swift, Objective-C, Java, JavaScript, React Native.
- Digital forensics experience with iOS and Android.
Preferred Qualifications
- Master s degree in Marketing, Computer Science, Information Systems, or related field.
- At least 3 5 years of experience in information security.
- iOS and Android app development background.
- At least one of the following security certifications (in order of preference):
- OSWE (web app focused)
- OSCP (systems/network focused)
- CISSP (general security)
- CEH (general security)
- Certification in one or more public cloud platforms (AWS, Azure, or Google Cloud Platform).
- Experience publishing apps to iOS or Android app stores.
- Experience in a large enterprise retail or consumer organization.
- Contributions to open-source projects.