| # | Areas |
| |
| Must to Have | |||
| 1 | Mobile Offensive Security | ||
| Strong expertise of mobile platform security architectures and trust models for both iOS and Android | |||
| Excellent understanding of security risks and attack vectors specific to financial applications including fraud prevention data protection etc. | |||
| Demonstrates strong collaboration skills with both technical and non-technical stakeholders | |||
| 2 | Technical Expertise | ||
| Strong experience with programming /scripting skills in Java / Kotlin /Objective C/Swift | |||
| Familarity with RASP (Runtime Application Self-Protection) | |||
| Demonstrated experience in penetration testing across mobile and web application | |||
| Possess solid understanding of Client-Side attacks targetting mobile applications and corresponding defense mechanisms | |||
| Strong understanding of platform-specific security risks and common vulnerabilities affecting mobile (IOS/Android) | |||
| Working knowledge of reverse engineering mobile apps. | |||
| Hands-On experience in reverse engineering tools and techniques for mobile applications including static and dynamic analysis methods | |||
| 3 | Soft skills | ||
| Possess a positive attitude strong teamwork skills flexibility and an understanding of emerging technologies and associated security threats | |||
| Ability to articulate security concepts and functionality based on first principles | |||
| Proven ability to leverage foundational security knowledge and methodologies to analyze test and solve problems in unfamiliar situations | |||
| 4 | Experience and Education | ||
| Minimum 5 Years of relevant experience in penetration testing | |||
| 5 | Candidates Availability | ||
| Candidate is available to join within 0-15 days | |||
| Candidate is on notice period for 15-30 days | |||
| Good to have | |||
| Prior experience with common technologies protocols and architectures used in mobile application like (HTML XML Javascript JSON REST Micro-Services etc.) | |||
| Experience in using common security analysis tools and testing techniques | |||
| Previous experience in mobile application security |