About The Role
You review mobile applications before release: how data is stored on the device, how the app communicates with its backend, and whether the client can be modified to reach functionality it should not. You also test the APIs the app depends on, since that is where most exploitable issues are found. Part of the role is advising the mobile teams on which protections are worth their engineering cost.
What you will do
- Assess Android and iOS builds before release
- Test the API surface behind the app, not just the app
- Advise which protections justify their engineering cost
What they ask for
- Mobile reverse engineering with Frida or equivalent
- Understands platform security models rather than checklists
- Reads Java or Kotlin and Swift or Objective-C
Nice to have
- Published mobile research
- Payments or banking apps
📌 Mobile Security Engineer (Ottawa)
🏢 Rooted
📍 Ottawa