Mobile Malware Engineer

Amatriot Group, LLC

  • Linthicum Heights, MD
  • Today
  • $100,000–$145,000 Per Year

Highlights

The engineer will investigate malicious code to determine attack vectors, payloads, and the extent of damage and data exfiltration, delivering actionable intelligence products that support national security missions. The Mobile Malware Engineer will analyze, reverse engineer, and characterize malicious software targeting Android and iOS platforms in support of a federal government customer.

Numbers & Facts

LocationLinthicum Heights, MD
Salary$100,000–$145,000 Per Year

Description

Location: Linthicum Heights, MD
Security Clearance: Active TS or higher [Required]
Job Type: Full-Time

Target Salary Range*:$100,000 - $145,000

*This represents the potential salary range for this position depending on education level, years of experience and/or certifications in addition to other position specific requirements which may impact salary


Position Overview

The Mobile Malware Engineer will analyze, reverse engineer, and characterize malicious software targeting Android and iOS platforms in support of a federal government customer. The engineer will evaluate complex malicious code using disassemblers, debuggers, hex editors, unpackers, virtual machines, and network sniffers. The engineer will investigate malicious code to determine attack vectors, payloads, and the extent of damage and data exfiltration, delivering actionable intelligence products that support national security missions.


Key Responsibilities

Mobile Malware Analysis

  • Perform static and dynamic analysis of mobile malware on Android and iOS platforms.
  • Reverse engineer ARM/ARM64 binaries, unpack APK/IPA files, bypass runtime protections, and reverse engineer known and suspected malware files.
  • Identify C2 infrastructure, persistence mechanisms, and indicators of compromise (IOCs).
  • Investigate attack vectors, payloads, and the extent of data exfiltration.

Vulnerability Analysis and Detection

  • Identify vulnerabilities in binaries and analyze shellcode.
  • Recommend preventative or defensive actions.
  • Develop custom tooling, automation scripts, and YARA detection signatures.
  • Build network- and host-based signatures and recommend heuristic- or anomaly-based detection methods.

Technical Reporting and Research

  • Produce technical reports with MITRE ATT&CK for Mobile mappings, remediation recommendations, and detailed documentation of malware behavior and command-and-control infrastructure.
  • Conduct ongoing research into malicious software, emerging vulnerabilities, and exploitation tactics to stay ahead of evolving threats.

Team Collaboration

  • Collaborate with forensics, vulnerability research, and cyber operations teams.

Qualifications

Education

  • Bachelor's degree plus 8 years of experience, or Master's degree plus 6 years of experience [Required].
  • A degree in Cybersecurity, Computer Science, Software Engineering, Information Technology, Information Systems, or a related field is highly desired.
  • An additional four years of experience may be considered in lieu of a Bachelor's degree.

Experience

  • Hands-on experience with Ghidra, IDA Pro, Jadx, Frida, MobSF, and Corellium [Required].
  • Scripting experience in Python [Required].
  • Familiarity with Java, Kotlin, or Swift [Required].

Skills

  • Proficiency in ARM/ARM64 assembly and low-level binary analysis [Required].
  • Strong knowledge of Android and iOS internals, including APK/IPA structure, ART runtime, and Mach-O binaries [Required].

Clearance

  • Active Top Secret clearance with SCI eligibility [Required].

Other Requirements

  • Full-time, Monday through Friday, on-site in Linthicum Heights, MD [Required].

Preferred Qualifications

Experience

  • Experience with CNO toolchains or offensive mobile capability development.
  • Familiarity with nation-state APT campaigns targeting mobile endpoints.
  • Knowledge of MDM/EMM environments and mobile forensics tools, including Cellebrite and Oxygen Forensic.
  • Published research, CVEs, or open-source contributions in mobile security.

Certifications

  • GREM, GMOB, eMAPT, OSED, OSCP, CISSP, or CompTIA SecurityX.

Similar Jobs

BERING STRAITS PROFESSIONAL SERVICES LLC

Sr. Cybersecurity Incident Response Specialist

  • Washington DC, DC
30+ days ago
See more jobs