4 Π΄Π½Ρ Π½Π°Π·Π°Π΄
Senior Mobile Security Engineer (Android)
ΠΡΡΡ & Π‘ΠΎΠΏΡΠΎΠ²ΠΎΠ΄
ΠΠ»Ρ ΠΌΡΡΡΠ° Ρ ΡΡΠΎΠΉ Π²Π°ΠΊΠ°Π½ΡΠΈΠ΅ΠΉ Π½ΡΠΆΠ΅Π½ Plus
ΠΠΏΠΈΡΠ°Π½ΠΈΠ΅ Π²Π°ΠΊΠ°Π½ΡΠΈΠΈ
Π’Π΅ΠΊΡΡ:
TL;DR
Senior Mobile Security Engineer (Android): Testing and strengthening PayJoy's Android device-locking technology while leading a distributed team of Lock Product Analysts, with an accent on bypass testing, vulnerability discovery, and anti-tampering strategy. Focus on evaluating rooting, bootloader, ADB, factory reset, and custom ROM attack vectors, driving vulnerability remediation, and evolving the security lab and device coverage.
Location: Mexico City, CDMX; hybrid workplace. The role requires 10β25% travel across several markets.
Company
develops device-financing products supported by Android device-locking technology.
What you will do
- Lead, mentor, and develop three Lock Product Analysts based in Brazil, South Africa, and the Philippines.
- Design and execute testing of the device-locking mechanism across Android devices and OS versions after OTA and lock-technology updates.
- Research and evaluate factory-reset exploits, bootloader vulnerabilities, ADB exploits, custom ROM flashing, FRP bypass tools, and other attack vectors.
- Own test strategies, test cases, test scenarios, documentation, and reproducible vulnerability reports in Jira.
- Lead vulnerabilities from discovery and root-cause analysis through mitigation proposals and fix verification.
- Maintain the security lab, tooling, and device-coverage strategy as Android threats evolve.
Requirements
- Bachelorβs degree in Computer Science, Cybersecurity, or a related field, or equivalent practical experience.
- 4+ years of QA or security testing experience, including 2+ years of Android mobile testing.
- Experience managing or leading a small team while contributing individually.
- Hands-on knowledge of Android architecture, including bootloaders, recovery mode, ADB, fastboot, system partitions, and security features.
- Experience with rooting techniques, custom ROMs, Magisk, Xposed, Android Studio, Logcat, Wireshark, or tcpdump.
- Strong analytical, problem-solving, communication, documentation, and decision-making skills.
Nice to have
- Experience with lock-breaking, forensic, mobile security assessment, or penetration-testing tools.
- Knowledge of MDM, kiosk mode vulnerabilities, and OWASP Mobile Top 10.
- Basic Python or Shell scripting for test automation and custom tooling.
- Familiarity with emerging-market Android devices and firmware, or certifications such as eMAPT, GMOB, or OSCP.
Culture & Benefits
- Full-time hybrid work in Mexico City with 10β25% travel.
- Company-funded health coverage, dental and vision discounts for employees and immediate family members, and life insurance.
- 20 days of paid vacation, a 50% vacation premium, 13% savings funds, and a 30-day Christmas bonus.
- $2,000 MXN monthly grocery coupons.
- $2,000 USD annual co-working travel perk and $2,000 USD annual professional development perk.
- Phone financing, home-office equipment, wellness perks, and catered lunches.
ΠΡΠ΄ΡΡΠ΅ ΠΎΡΡΠΎΡΠΎΠΆΠ½Ρ: Π΅ΡΠ»ΠΈ ΡΠ°Π±ΠΎΡΠΎΠ΄Π°ΡΠ΅Π»Ρ ΠΏΡΠΎΡΠΈΡ Π²ΠΎΠΉΡΠΈ Π² ΠΈΡ ΡΠΈΡΡΠ΅ΠΌΡ, ΠΈΡΠΏΠΎΠ»ΡΠ·ΡΡ iCloud/Google, ΠΏΡΠΈΡΠ»Π°ΡΡ ΠΊΠΎΠ΄/ΠΏΠ°ΡΠΎΠ»Ρ, Π·Π°ΠΏΡΡΡΠΈΡΡ ΠΊΠΎΠ΄/ΠΠ, Π½Π΅ Π΄Π΅Π»Π°ΠΉΡΠ΅ ΡΡΠΎΠ³ΠΎ - ΡΡΠΎ ΠΌΠΎΡΠ΅Π½Π½ΠΈΠΊΠΈ. ΠΠ±ΡΠ·Π°ΡΠ΅Π»ΡΠ½ΠΎ ΠΆΠΌΠΈΡΠ΅ "ΠΠΎΠΆΠ°Π»ΠΎΠ²Π°ΡΡΡΡ" ΠΈΠ»ΠΈ ΠΏΠΈΡΠΈΡΠ΅ Π² ΠΏΠΎΠ΄Π΄Π΅ΡΠΆΠΊΡ. ΠΠΎΠ΄ΡΠΎΠ±Π½Π΅Π΅ Π² Π³Π°ΠΉΠ΄Π΅ β
ΠΠΎΡ ΠΎΠΆΠΈΠ΅ Π²Π°ΠΊΠ°Π½ΡΠΈΠΈ
6 Π΄Π½Π΅ΠΉ Π½Π°Π·Π°Π΄
Security Engineer (Fintech)
5 Π΄Π½Π΅ΠΉ Π½Π°Π·Π°Π΄
Senior SecOps Engineer (AWS)
4 Π΄Π½Ρ Π½Π°Π·Π°Π΄
Oracle Security Analyst (Cybersecurity)
4 Π΄Π½Ρ Π½Π°Π·Π°Π΄
Professional Services Engineer (Cybersecurity)
6 Π΄Π½Π΅ΠΉ Π½Π°Π·Π°Π΄
Security Lead (Plano)
27 - 30$
6 Π΄Π½Π΅ΠΉ Π½Π°Π·Π°Π΄