Zimperium

Zimperium

Mobile Security Solutions | Complete Mobile Security for Apps and Devices Zimperium is the only mobile security platform purpose built for enterprise, securing both mobile devices and applications so they can securely access data. Zimperium is a leadin...

Professional Services
251-1K
Founded 2010
$60M raised

Description

  • Research and analyze advanced detection bypass techniques such as jailbreaking, hooking, and runtime application or system tampering.
  • Evaluate and reverse-engineer tools and frameworks used to attack or evade the company’s products, and document attack vectors.
  • Lead and participate in structured brainstorming sessions to generate new detection ideas and countermeasures.
  • Design, prototype, and implement new detection techniques and algorithms for the iOS platform.
  • Develop, maintain, and improve internal tooling and automation for analysis, triage, and detection development.
  • Review forensic data provided by customers, write technical reports, and provide actionable remediation guidance.
  • Participate in internal penetration testing and adversary emulation to validate new security features.
  • Write and publish technical blog posts on emerging security risks and research findings.

Requirements

  • Strong knowledge of iOS operating system internals, including sandboxing and code-signing.
  • Experience with runtime application security mechanisms and techniques for detecting system tampering and device compromise.
  • Proficiency in reverse engineering with tools such as IDA Pro, Ghidra, Hopper, or equivalent.
  • Experience writing scripts and using reverse engineering tool SDKs, with the ability to isolate and report technical issues.
  • Solid programming experience in C, Python, Objective-C, and Swift.
  • Good understanding of ARM64 assembly for task-specific, time-critical functions.
  • Proficiency with debugging and dynamic binary instrumentation tools such as LLDB, Frida, Objection, or QBDI.
  • Ability to reverse engineer proprietary protocols and interprocess communication mechanisms such as XPC, mach messages, and IOKit.
  • Practical knowledge of jailbreak methods and iOS exploit classes such as kernel exploits, sandbox escapes, and code-signing bypasses.
  • Experience with data analysis methods applied to forensic investigations is a plus.
  • Proven ability to collaborate effectively within a team and lead focused sub-groups toward specific research objectives.

Interested in this position?

Apply directly on the company website

Apply Now

Similar Roles

Director, Product Management, Customer Security Outcomes

Zscaler 1K-5K Internet Software & Services

Zscaler is hiring a Director of Product Management for Customer Security Outcomes to lead the vision and strategy for its security operations services in a fully remote U.S. role.

Generative AI Machine Learning
1 day, 6 hours ago

Senior Product Security Engineer

Chainguard 51-250 Internet Software & Services

Chainguard is hiring a Staff Product Security Engineer to embed security into its open source software delivery and cloud-native product stack, with ownership of secure pipelines, product hardening, and security architecture across the company.

AWS CI/CD GCP GitHub Actions Go Kubernetes OWASP Penetration Testing Python Secrets Management Tekton
2 days, 6 hours ago

Senior Product Security Engineer

Chainguard 51-250 Internet Software & Services

Chainguard is hiring a Senior Product Security Engineer to embed security into its cloud-native product and delivery pipelines, helping protect hardened open source builds from development through production.

AWS CI/CD GCP GitHub Actions Go Kubernetes OWASP Penetration Testing Python Secrets Management Tekton
2 days, 6 hours ago

Senior Product Security Engineer

Chainguard 51-250 Internet Software & Services

Chainguard is hiring a Senior Product Security Engineer to embed security into the development lifecycle for cloud-native, Kubernetes-based products and strengthen the security of their open source software supply chain.

AWS CI/CD GCP GitHub Actions Go Kubernetes OWASP Penetration Testing Python Secrets Management Tekton
2 days, 6 hours ago

You're on a roll! Sign up now to keep applying.

Sign Up

Already have an account? Log in

Used by 14,729+ remote workers