Security Managed Services Practitioner
Accenture in India
Project Role
Security Managed Services Practitioner
Project Role Description
Apply security skills to design, build and protect enterprise systems, applications, data, assets, and people. Provide services to safeguard information, infrastructures, applications, and business processes against cyber threats.
Must have skills
Good to have skills
- Static Application Security Testing (SAST), Dynamic Application Security Testing (DAST)
Experience
Minimum 3 years of experience.
Education
Relevant degree in Computer Science or related field.
Responsibilities
- Perform reverse engineering of Android applications and SDKs using static SAST and dynamic DAST methodologies to identify malware, spyware, trojans, and other security threats.
- Deconstruct and analyze malicious code at scale by reverse engineering DEX files and native libraries to uncover attack techniques, tampering methods, and data exfiltration mechanisms.
- Independently investigate, triage, and resolve security escalations from both internal and external sources, ensuring timely and effective threat response.
- Reverse‑engineer sophisticated Android threats such as spyware, banking trojans, rootkits, and RATs to fully understand their functionality, command‑and‑control protocols, and data exfiltration methods.
- Identify and analyze emerging threats, new malware trends, and potential attack vectors targeting the Android ecosystem.
- Create clear, accurate, and detailed reports documenting analysis findings, malicious behaviors, and recommended remediation steps for technical and non‑technical stakeholders.
- Provide proactive input and creative ideas to enhance team workflows, tooling, new detections, and collaborate with SMEs in creating and enhancing detection mechanisms and overall operational efficiency.
Qualifications and Skills
- Strong background in application security with prior experience focused specifically on Android malware analysis.
- Solid understanding of the Android threat landscape and PHA classifications.
- Deep understanding of the Android OS, application lifecycle, Dalvik bytecode and smali; proficiency reading source code in Java and Kotlin.
- Exposure to JavaScript, Flutter, and query languages such as SQL.
- Experience with scripting languages Python and Bash.
- Proficiency in reading and analyzing ARM or x86 assembly language to dissect native libraries (ELF files).
- Proven ability to manually de‑obfuscate code, analyze complex algorithms, and reverse‑engineer proprietary network protocols.
- Demonstrated ability to independently solve complex technical challenges and analyze novel or undocumented malware techniques.
- Hands‑on mastery of industry‑standard tools such as IDA Pro and Ghidra, including the ability to write scripts (IDA Python, Ghidra Script).
- Advanced experience with dynamic analysis tools, particularly Frida, for runtime manipulation, hooking, and tracing application behavior.
- Proficiency with static analysis tools like Jadx, JEB, and network traffic analysis tools such as Burp Suite or Wireshark.
Location
Hyderabad or Bangalore
Employment Type
Full‑time