Senior iOS Security Engineer – ProdSec

iProov

Greater London

On-site

GBP 90,000 - 130,000

Full time

14 days+

Get more replies from employers

Send a job-specific resume in minutes.

Benefits offered by this job

Growth Shares after probation
Pension & Cycle to Work
Electric Car Scheme
Nursery Scheme
Work Overseas (2 weeks)
Life Assurance
WeWork barista coffee & snacks

Job summary

iProov is seeking an experienced Senior iOS Security Engineer to join our Product Security team in the UK. You will focus on hardening iOS apps and SDKs, implement RASP and anti-tamper controls, and defend biometric verification workflows.

Collaborate with science and engineering teams to embed security across the product lifecycle, research new attack techniques, and contribute to our security roadmap with practical defenses and proof-of-concepts.

Qualifications

  • 3+ years of professional iOS development experience.
  • 2+ years of experience in mobile security, application security, or product security.
  • Proven experience designing and implementing security controls for production mobile applications or SDKs.

Responsibilities

  • Design and implement security controls for iOS applications and SDKs.
  • Develop protections against reverse engineering, runtime manipulation, code injection, dynamic instrumentation, and application tampering.
  • Implement jailbreak detection, application integrity validation, and runtime protection mechanisms.
  • Research emerging mobile attack techniques targeting biometric identity verification systems.
  • Evaluate, prototype, and implement Runtime Application Self-Protection (RASP) controls for iOS applications and SDKs.
  • Collaborate with Product Security teams to enhance protection of biometric verification products.

Skills

Swift
iOS architecture & internals
Entitlements
Application lifecycle
Memory management
Mach-O binaries
Apple Security Frameworks
Cryptography & secure communications
RASP
Anti-tampering
Anti-debugging
Certificate pinning
Application integrity validation
OWASP Mobile Top 10
OWASP MASVS
Secure SDLC
Frida
Objection
Dynamic instrumentation frameworks
Jailbreak environments
Runtime hooking

Job description

Senior iOS Security Engineer (ProdSec) at iProov

Senior iOS Security Engineer

About iProov

iProov provides science-based biometric solutions that enable the world’s most security-conscious organizations to streamline secure remote onboarding and authentication for digital and physical access. Our award-winning liveness technology and iSOC offer unmatched resilience against deepfakes and generative AI threats while ensuring effortless, scalable user experiences. Trusted by leading governments and enterprises, including the U.S. Department of Homeland Security, U.K. Home Office, GovTech Singapore, ING, and UBS, iProov sets the standard in biometric identity assurance.

The Role

Reports to: Head of Red Team

Location: UK

Comp: Negotiable (Base) + Company Performance Bonus (10%) + Share Options + UK iProov Benefits

We are seeking an iOS Security Engineer to join our Product Security team and help secure our iOS applications, SDKs, and biometric verification technologies against evolving threats.

This role focuses on researching, designing, and implementing advanced mobile security protections, with a particular emphasis on application hardening, Runtime Application Self-Protection (RASP), anti-tampering controls, and runtime trust assessment. You will play a key role in identifying emerging attack techniques targeting mobile and biometric ecosystems and developing innovative defenses to protect our products and customers.

The successful candidate combines deep iOS engineering expertise with a security mindset and a passion for understanding how attackers operate. They will work closely with Science and Engineering teams to ensure security is embedded throughout the product lifecycle.

How you can make an impact
Mobile Security Architecture & Hardening
  • Design and implement security controls for iOS applications and SDKs.
  • Develop protections against reverse engineering, runtime manipulation, code injection, dynamic instrumentation, and application tampering.
  • Implement and enhance jailbreak detection, application integrity validation, and runtime protection mechanisms.
  • Design secure approaches for protecting sensitive data, cryptographic assets, and biometric-related workflows.
  • Define and promote mobile security best practices across engineering teams.
Mobile Security Research & RASP Innovation
  • Research emerging mobile attack techniques targeting biometric identity verification systems, including runtime manipulation, device compromise, and application abuse.
  • Evaluate, prototype, and implement Runtime Application Self-Protection (RASP) controls for iOS applications and SDKs.
  • Assess the effectiveness of commercial and custom mobile protection technologies against evolving threats.
  • Develop novel approaches to application integrity, runtime trust assessment, anti-tampering, anti-debugging, and anti-instrumentation controls.
  • Investigate bypass techniques used by attackers and security researchers to identify gaps in existing protections.
  • Be a key member of the Product Security function, collaborating with Science, Red Team and Engineering teams to evaluate, develop, and enhance security controls for biometric verification products and services.
  • Contribute to the security roadmap by identifying opportunities to strengthen trust signals within biometric verification workflows.
  • Produce technical research, proof-of-concepts, and recommendations based on threat trends affecting digital identity and biometric ecosystems.
Security Reviews & Engineering
  • Perform security architecture reviews and code reviews.
  • Assess security implications of new platform capabilities, third-party libraries, and architectural changes.
  • Build security tooling, frameworks, and libraries that improve the security posture of iOS products.
  • Contribute to security standards, design patterns, and technical guidance for mobile development teams.
  • Participate in strategic security initiatives and long‑term product security planning.
What we would like to see from you
Experience
  • 3+ years of professional iOS development experience.
  • 2+ years of experience in mobile security, application security, or product security.
  • Proven experience designing and implementing security controls for production mobile applications or SDKs.
Technical Skills
  • Expert‑level proficiency in Swift
  • Deep understanding of:
    • iOS architecture and internals
    • Entitlements
    • Application lifecycle
    • Memory management
    • Mach‑O binaries
    • Apple Security Frameworks
  • Knowledge of cryptography, secure communications, and authentication mechanisms.
Security Expertise
  • Runtime Application Self‑Protection (RASP)
  • Anti‑tampering protections
  • Anti‑debugging mechanisms
  • Certificate pinning
  • Application integrity validation
  • Strong understanding of:
    • OWASP Mobile Top 10
    • OWASP MASVS
    • Secure SDLC practices
    • Mobile attack techniques and adversarial behaviour
  • Knowledge of:
    • Frida
    • Objection
    • Dynamic instrumentation frameworks
    • Jailbreak environments
    • Runtime hooking methodologies
Nice‑to‑haves

The ideal candidate brings experience with biometric authentication or identity verification technologies, along with a background in securing mobile SDKs deployed within third‑party applications. They will have developed custom RASP (runtime application self‑protection) capabilities and have solid knowledge of device attestation and trust assessment technologies.

  • 25 days Annual Leave, plus 8 Bank Holidays (more holiday with service – up to an extra 5 days off per year based on your continuous service)
  • Growth Shares allocated after passing probation (6 months of service)
  • Salary sacrifice schemes including: Pension, Cycle To Work and Electric Car Scheme
  • Nursery Sacrifice Scheme
  • Work Overseas Perk – Work globally for up to 2 weeks
  • Life Assurance
  • SmartHealth – Access to private GP, Psychologist, Nutritionist along with tailored fitness plans for both you and your family
  • Benefit from personalized 1:1 career coaching with our in‑house Occupational Psychologist
  • Award‑winning L&D platform with personal allocated training budgets
  • Enhanced paid family leave
  • Flexible hybrid working environment
  • Free Barista Coffee/Tea, biscuits with fruit in the WeWork office
  • Free access to WeWork discounts and free online well‑being sessions
  • Vitality Health – a range of options available on this below

The Vitality Programme includes a number of reward benefits that all employees have access to as part of the plan, for example:

  • Private Health cover including Dental, Optical, and Audiology
  • 50% off monthly gym memberships
  • Apple watches significantly discounted based member vitality status
  • Half price trainers with Runners Need
  • Weekly rewards – Free coffee with Café Nero
  • Monthly rewards – Free Cinema ticket
  • Discounts on travel with Expedia (hotels) and Mr & Mrs Smith with discounts getting greater throughout the year based on a members vitality status
  • Amazon prime free months based on activity
  • Up to 25% cashback at Waitrose when buying healthy foods
  • 75% off stays at Champneys Health Spas
  • Allen Carr’s £299 no smoking programme for free
  • Access to Vitality Healthy Mind with 30% off Headspace subscriptions and the ability to earn Vitality points for using Buddhify, Calm and Headspace
  • Discounts on Weight Watchers

As an equal opportunities employer, we encourage applications from people of all backgrounds. We’re committed to building a workforce that is representative of the people we serve. We will not put someone at a disadvantage or treat them less favourably because of race, color, national origin, ancestry, age, disability, creed, religion or belief, sex, sexual orientation, gender reassignment, marriage or civil partnership, or pregnancy and maternity.

Get your free, confidential resume review.
or drag and drop your file here.
Similar jobs

Similar jobs worth comparing

Senior iOS Security Engineer (ProdSec) at iProov
Senior iOS Security Engineer (ProdSec) at iProov

iProov • Greater London

On-site
GBP 90,000 - 150,000
Annual Leave 25 days
Growth Shares
Pension and Cycle to Work
+7
Senior Web Security Engineer (ProdSec)
Senior Web Security Engineer (ProdSec)

iProov • Greater London

On-site
GBP 90,000 - 120,000
25 days annual leave
Growth shares
Pension scheme
+3
Red Team Engineer
Red Team Engineer

iProov • City Of London

Hybrid
GBP 60,000 - 80,000
25 days Annual Leave
Performance bonus (10%)
Growth shares after probation
+3
Graduate ML Engineer
Graduate ML Engineer

iProov • Greater London

Hybrid
GBP 90,000 - 130,000
Company performance bonus
Share options
Pension plan
+2
Senior Data Analyst
Senior Data Analyst

iProov • Greater London

Hybrid
GBP 75,000 - 110,000
Private Health
Pension
Cycle To Work
+4
Technical Project Manager
Technical Project Manager

iProov • Greater London

Hybrid
GBP 75,000 - 110,000
Company bonus 10%
Share options
UK benefits
VP, Customer & Solutions
VP, Customer & Solutions

iProov • Greater London

Hybrid
GBP 120,000 - 190,000
25 days annual leave
Life Assurance
Private medical cover
+3
Technology Lawyer at iProov
Technology Lawyer at iProov

iProov • City Of London

Hybrid
GBP 72,000 - 120,000
Growth Shares
Flexible and Hybrid environment
Pension - 5% employee, 3% employer
+1
Technology Lawyer
Technology Lawyer

iProov • Greater London

Hybrid
GBP 108,000 - 132,000
25 days Annual Leave
Growth Shares
Flexible and Hybrid environment
+4
BI Analyst
BI Analyst

iProov • Greater London

Hybrid
GBP 65,000 - 95,000
Company performance bonus
Share options
UK iProov benefits
+2