Security Analyst (Android / iOS)

OneSpan

Dadri

On-site

INR 1,200,000 - 1,800,000

Full time

14 days+

Get more replies from employers

Send a job-specific resume in minutes.

Job summary

OneSpan is seeking a Security Analyst (Android/iOS) in Noida to enhance security protections within our mobile SDKs. You will focus on developing countermeasures, analyzing vulnerabilities, and collaborating with engineering teams. Candidates should have 5-12 years of experience in application security and a strong grasp of mobile environment challenges.

This position requires extensive knowledge of Android/iOS security, reverse engineering, and ability to communicate effectively in English.

Qualifications

  • 5-12 years of experience in application security, mobile security, or penetration testing.
  • Strong understanding of Android and/or iOS application security.
  • Experience performing reverse engineering of mobile applications.

Responsibilities

  • Research and develop mobile security countermeasures for Android and iOS applications.
  • Analyze security weaknesses and attack vectors in applications.
  • Perform reverse engineering to understand attacker techniques.

Skills

Application security
Mobile security
Reverse engineering
Penetration testing
Dynamic analysis
RASP development
English communication

Tools

IDA Pro
Ghidra
JEB
Frida
GDB
LLDB

Job description

At OneSpan, we specialize in digital identity and anti‑fraud solutions that create exceptional and secure experiences. At OneSpan we are looking for a Security Analyst (Android / iOS) to join our team in Noida. In this role, you will contribute to the research, development, and validation of advanced mobile security protections within our Android and iOS SDKs. You will work on identifying attack techniques, designing and implementing new countermeasures, analyzing bypass attempts, and continuously strengthening the Runtime Application Self‑Protection (RASP) capabilities of our mobile security platform, collaborating closely with our engineering and security research teams.

Here is a little taste of your challenge
  • Research, design, develop, and validate mobile security countermeasures for Android and iOS applications.
  • Analyze Android and iOS applications to identify security weaknesses, attack vectors, and potential bypass techniques against mobile protections.
  • Perform reverse engineering of mobile applications, malware samples, and security tools to understand attacker techniques and improve defensive capabilities.
  • Develop and enhance Runtime Application Self‑Protection (RASP) mechanisms such as anti‑debugging, anti‑instrumentation, anti‑tampering, anti‑hooking, and environment integrity checks.
  • Research and reproduce real‑world attacks such as hooking, dynamic instrumentation, tampering, and runtime manipulation against protected applications.
  • Prototype, implement, and evaluate new detection techniques in native and platform‑specific code (C/C++, Kotlin, Swift, Objective‑C).
  • Use reverse engineering and dynamic analysis tools to assess the effectiveness of protection mechanisms and identify potential bypasses.
  • Support the design, architecture, and continuous improvement of our Android and iOS mobile security SDKs.
  • Research and monitor the Indian mobile banking and fintech regulatory landscape (including RBI guidelines and CERT‑In requirements) to identify emerging threats and inform the team's research direction for the region.
  • Engage independently with enterprise customers in the region during technical discussions, able to defend product decisions and countermeasure design without requiring real‑time support from the Europe‑based team.
  • Document research findings, attack techniques, and defensive approaches, contributing to internal security knowledge and threat intelligence.
  • Participate in technical discussions, security research initiatives, and product roadmap decisions.
Role
Who are you?
  • Between 5-12 years of experience in application security, mobile security, reverse engineering, or penetration testing.
  • Strong understanding of Android and/or iOS application security.
  • Experience performing reverse engineering of mobile applications.
  • Familiarity with dynamic instrumentation and runtime analysis techniques.
  • Experience using reverse engineering tools such as IDA Pro, Ghidra, JEB, or JADX.
  • Experience with dynamic analysis or instrumentation tools such as Frida, GDB, LLDB, or similar.
  • Experience developing RASP countermeasures for Android and/or iOS, or at least performing technical analysis and evaluation of mobile RASP protections.
  • Ability to analyze compiled code and understand low‑level behavior.
  • Ability to communicate (verbally and writing) in English.
  • Ability to make recommendations and decisions independently.
  • Familiarity with the Indian banking/fintech regulatory environment and its implications for mobile application security.
  • Nice to have:
    • Experience analyzing mobile malware.
    • Experience in penetration testing environments or security evaluation laboratories.
    • Knowledge of Android internals (ART, system APIs, root environments) or iOS security mechanisms.
    • Experience with native code analysis (C/C++).
    • Interest in mobile application protection technologies such as obfuscation, anti‑tampering, and RASP.
    • Experience with Git.
    • Experience with CI/CD pipelines.
    • Knowledge of the Unix/Linux command line / shell.
    • Experience with Agile/Scrum best practices.
    • Analytical thinking and problem‑solving attitude.
    • Strong interest in security research and continuous learning.
Get your free, confidential resume review.
or drag and drop your file here.
Similar jobs

Similar jobs worth comparing

Security Analyst (Android / iOS)
Security Analyst (Android / iOS)

OneSpan • Dadri

On-site
INR 1,200,000 - 1,800,000
Mobile Appsec - SME
Mobile Appsec - SME

TalaKunchi Networks Pvt Ltd • Mumbai

On-site
INR 800,000 - 1,200,000
Security Managed Services Practitioner
Security Managed Services Practitioner

Accenture in India • Hyderabad

On-site
INR 1,200,000 - 1,800,000
Mobile Application Security Lead (AppSec)
Mobile Application Security Lead (AppSec)

ESP Engineered • Mumbai

On-site
INR 1,500,000 - 2,500,000
Security Architect
Security Architect

Accenture in India • Bengaluru

On-site
INR 1,500,000 - 2,500,000
Senior Security Consultant (Android Malware Reverse Engineering)
Senior Security Consultant (Android Malware Reverse Engineering)

NetSPI • Maharashtra

On-site
INR 1,000,000 - 1,500,000
Android Security Research Engineer
Android Security Research Engineer

C3iHub, IIT Kanpur • Delhi

On-site
INR 1,200,000 - 2,200,000
Mobile Appsec - SME
Mobile Appsec - SME

ESP Engineered • Mumbai

On-site
INR 1,000,000 - 1,500,000
Application and Product Security I Analyst I
Application and Product Security I Analyst I

Vertiv Co • Pune District

On-site
INR 1,000,000 - 1,800,000
Red Team Specialist – I
Red Team Specialist – I

TalaKunchi Networks Pvt Ltd • Mumbai

On-site
INR 800,000 - 1,200,000
Opportunity to work on cutting-edge projects
Collaborative environment with continuous learning
Exposure to advanced security engagements