Zimperium

Zimperium

Mobile Security Solutions | Complete Mobile Security for Apps and Devices Zimperium is the only mobile security platform purpose built for enterprise, securing both mobile devices and applications so they can securely access data. Zimperium is a leadin...

Professional Services
251-1K
Founded 2010
$60M raised

Description

  • Research and analyze advanced detection bypass techniques such as jailbreaking, hooking, and runtime application or system tampering.
  • Evaluate and reverse-engineer tools and frameworks used to attack or evade the company’s products, and document attack vectors.
  • Lead and participate in structured brainstorming sessions to generate new detection ideas and countermeasures.
  • Design, prototype, and implement new detection techniques and algorithms for the iOS platform.
  • Develop, maintain, and improve internal tooling and automation for analysis, triage, and detection development.
  • Review forensic data provided by customers, write technical reports, and provide actionable remediation guidance.
  • Participate in internal penetration testing and adversary emulation to validate new security features.
  • Write and publish technical blog posts on emerging security risks and research findings.

Requirements

  • Strong knowledge of iOS operating system internals, including sandboxing and code-signing.
  • Experience with runtime application security mechanisms and techniques for detecting system tampering and device compromise.
  • Proficiency in reverse engineering with tools such as IDA Pro, Ghidra, Hopper, or equivalent.
  • Experience writing scripts and using reverse engineering tool SDKs, with the ability to isolate and report technical issues.
  • Solid programming experience in C, Python, Objective-C, and Swift.
  • Good understanding of ARM64 assembly for task-specific, time-critical functions.
  • Proficiency with debugging and dynamic binary instrumentation tools such as LLDB, Frida, Objection, or QBDI.
  • Ability to reverse engineer proprietary protocols and interprocess communication mechanisms such as XPC, mach messages, and IOKit.
  • Practical knowledge of jailbreak methods and iOS exploit classes such as kernel exploits, sandbox escapes, and code-signing bypasses.
  • Experience with data analysis methods applied to forensic investigations is a plus.
  • Proven ability to collaborate effectively within a team and lead focused sub-groups toward specific research objectives.

Interested in this position?

Apply directly on the company website

Apply Now

Similar Roles

Senior Product Security Engineer, Server

MongoDB 1K-5K Internet Software & Services

MongoDB is hiring a Product Security professional to strengthen the security of its core database products and customer-facing security features for its Database Server team in Dublin or remotely in Ireland.

AWS Azure C++ Encryption GCP MongoDB Penetration Testing Secrets Management
1 hour, 6 minutes ago

Principal Solutions Engineer - Application Security

Wiz 251-1K IT Services

Wiz is seeking a Principal Solutions Engineer to serve as a senior field expert in application and cloud-native security, partnering across sales, product, and technical teams to advance opportunities and strengthen the company’s platform value.

AWS Azure CI/CD GCP Git Go Helm Kubernetes Python Rust Shell Scripting Terraform
1 hour, 26 minutes ago

Product Security Engineering Manager

Bugcrowd 1K-5K Internet Software & Services

Bugcrowd is hiring a Product Security Engineering Manager to lead application, platform, and FedRAMP security programs while guiding a distributed team and advancing secure-by-default engineering across the company.

AWS Azure CI/CD Cybersecurity Docker GCP Go Java Kubernetes Linux Python Ruby Terraform
2 hours, 6 minutes ago

Senior Manager, Engineering

Sumo Logic 251-1K Internet Software & Services

Sumo Logic is hiring a Senior Manager, Engineering for Application Security to lead global programs that improve the security, reliability, and operational efficiency of its cloud-based platform.

Agile AWS C++ Docker GCP Java Kafka Kubernetes OWASP Penetration Testing Ruby Scala SIEM
3 hours, 36 minutes ago

You're on a roll! Sign up now to keep applying.

Sign Up

Already have an account? Log in

Used by 14,729+ remote workers