This role focuses on designing, implementing, and improving cybersecurity solutions to safeguard applications, data, and infrastructure, while embedding security into the software development lifecycle. The position requires expertise in application and mobile security.
Responsibilities
- Design and implement cutting‑edge cybersecurity solutions to protect applications, data, and infrastructure.
- Continuously improve security measures to mitigate risk.
- Conduct vulnerability assessments, penetration testing, and risk analysis to identify and address security gaps.
- Diagnose and respond to security incidents, ensuring rapid containment and resolution.
- Maintain security best practices and ensure compliance with relevant industry standards and regulations.
- Mentor team members to enhance cybersecurity knowledge and adherence to best practices.
- Develop and integrate security tools for monitoring, detection, and response.
- Improve automation for security testing and deployment pipelines to enable rapid and secure software delivery.
- Collaborate with development, DevOps, and IT teams to embed security into the SDLC.
Skills & Experience
- Bachelor’s or Master’s degree in Computer Science, Cybersecurity, or a related field.
- 4 to 7 years of real‑world experience in cybersecurity.
- Proven experience in anti‑fraud systems, particularly in mobile security (APK protection and analysis).
- Strong knowledge of application security principles, including secure coding, encryption, authentication, and authorization.
- Hands‑on experience with reverse engineering, obfuscation techniques, and tamper detection for APK security.
- Proficiency in security testing methodologies, including penetration testing, SAST, and DAST.
- Familiarity with tools such as Burp Suite, Metasploit, Frida, IDA Pro, or other reverse‑engineering tools.
- Experience in implementing and managing security frameworks, such as OWASP, NIST, and ISO 27001.
- Strong understanding of networking protocols, firewalls, IDS/IPS, and other security technologies.
- Proficiency in programming/scripting languages such as Python, Java, Kotlin, or C++.
- Experience with cloud security (AWS, Azure, or GCP) is a plus.
- DevSecOps and CI/CD pipeline security experience is highly preferred.
- Strong problem‑solving skills, adaptability, and a proactive approach to security threats.
- Ability to write clear and maintainable documentation, security policies, and reports.
- Excellent communication skills, with the ability to educate non‑security teams on best practices.
- Start‑up experience and entrepreneurial mindset are highly preferred.