Mobile Malware Engineer
Indexed description
Security Clearance: Active TS or higher [Required]
Job Type: Full-Time
Target Salary Range*: $100,000 - $145,000
- This represents the potential salary range for this position depending on education level, years of experience and/or certifications in addition to other position specific requirements which may impact salary
Key ResponsibilitiesMobile Malware Analysis
- Perform static and dynamic analysis of mobile malware on Android and iOS platforms.
- Reverse engineer ARM/ARM64 binaries, unpack APK/IPA files, bypass runtime protections, and reverse engineer known and suspected malware files.
- Identify C2 infrastructure, persistence mechanisms, and indicators of compromise (IOCs).
- Investigate attack vectors, payloads, and the extent of data exfiltration.
- Identify vulnerabilities in binaries and analyze shellcode.
- Recommend preventative or defensive actions.
- Develop custom tooling, automation scripts, and YARA detection signatures.
- Build network- and host-based signatures and recommend heuristic- or anomaly-based detection methods.
- Produce technical reports with MITRE ATT&CK for Mobile mappings, remediation recommendations, and detailed documentation of malware behavior and command-and-control infrastructure.
- Conduct ongoing research into malicious software, emerging vulnerabilities, and exploitation tactics to stay ahead of evolving threats.
- Collaborate with forensics, vulnerability research, and cyber operations teams.
- Bachelor's degree plus 8 years of experience, or Master's degree plus 6 years of experience [Required].
- A degree in Cybersecurity, Computer Science, Software Engineering, Information Technology, Information Systems, or a related field is highly desired.
- An additional four years of experience may be considered in lieu of a Bachelor's degree.
- Hands-on experience with Ghidra, IDA Pro, Jadx, Frida, MobSF, and Corellium [Required].
- Scripting experience in Python [Required].
- Familiarity with Java, Kotlin, or Swift [Required].
- Proficiency in ARM/ARM64 assembly and low-level binary analysis [Required].
- Strong knowledge of Android and iOS internals, including APK/IPA structure, ART runtime, and Mach-O binaries [Required].
- Active Top Secret clearance with SCI eligibility [Required].
- Full-time, Monday through Friday, on-site in Linthicum Heights, MD [Required].
- Experience with CNO toolchains or offensive mobile capability development.
- Familiarity with nation-state APT campaigns targeting mobile endpoints.
- Knowledge of MDM/EMM environments and mobile forensics tools, including Cellebrite and Oxygen Forensic.
- Published research, CVEs, or open-source contributions in mobile security.
- GREM, GMOB, eMAPT, OSED, OSCP, CISSP, or CompTIA SecurityX.
Create a free Caio profile to unlock more results and save your role and location preferences.
Unlock free search