Назад
1 месяц назад

Staff Software Engineer (Mobile Security)

Формат работы
onsite
Тип работы
fulltime
Грейд
senior
Английский
b2
Страна
Singapore
Вакансия из списка Hirify.GlobalВакансия из Hirify Global, списка международных tech-компаний
Для мэтча и отклика нужен Plus

Мэтч & Сопровод

Для мэтча с этой вакансией нужен Plus

Описание вакансии

Текст:
/
TL;DR
Staff Software Engineer (Mobile Security) (iOS/Android/AI): Identifying and mitigating vulnerabilities across mobile applications and platforms with an accent on offensive security, secure coding, and threat modelling. Focus on validating bug bounty findings, building AI-assisted security workflows, developing vulnerability proof-of-concepts, and coordinating remediation with engineering teams.

Location: Singapore, Singapore. Applicants must have a current right to work in Singapore and must not require visa sponsorship.

Company

OKX is a crypto exchange and developer of OKX Wallet, OKLink, and other blockchain products serving individual and institutional users.

What you will do

  • Identify and mitigate vulnerabilities in mobile code, systems, and networks through manual review, automated tooling, and threat modelling.
  • Manage application security tools, processes, alerts, and vulnerability detection workflows.
  • Validate and triage Bug Bounty submissions and coordinate remediation with engineering teams.
  • Produce security findings reports and present them to technical and management audiences.
  • Promote secure coding practices across iOS and Android platforms and collaborate with development, operations, and compliance teams.
  • Apply AI tools to security research, threat analysis, incident response, and vulnerability detection.

Requirements

  • 5+ years of experience in mobile application security or offensive security.
  • Hands-on expertise with iOS and/or Android platforms and a strong understanding of mobile and web application vulnerabilities.
  • Code review experience with Kotlin, Swift, TypeScript, or JavaScript.
  • Ability to create vulnerability proof-of-concepts, review patches, and coordinate remediation with repository owners.
  • Experience building AI-assisted security workflows and codifying repeatable agent skills for production use.
  • Strong analytical, problem-solving, verbal, and written communication skills.

Nice to have

  • Experience developing mobile security SDKs for products with more than ten million daily active users.
  • Experience with business risk control, threat intelligence, risk prevention, or countermeasures against black and grey industries.
  • Reverse engineering experience with major mobile applications.
  • Proficiency in ARM assembly and native or application-layer security countermeasures.
  • Experience with device fingerprint recognition, device simulation, flashing, modification, or application cloning.

Culture & Benefits

  • Competitive total compensation package.
  • L&D programs and education subsidies.
  • Team-building programs and company events.
  • Wellness and meal allowances.
  • Comprehensive healthcare schemes for employees and dependants.

Будьте осторожны: если работодатель просит войти в их систему, используя iCloud/Google, прислать код/пароль, запустить код/ПО, не делайте этого - это мошенники. Обязательно жмите "Пожаловаться" или пишите в поддержку. Подробнее в гайде →