Mobile/Web Security System Engineer with Amdocs Billing
Must Have Amdocs Billing Product Exp Openet Domain Exp mitigation/charging is must. System Engineer EngOps T2 NPW: US 1 Role Overview We are looking for a Security Engineer who is passionate about security and thrives in a fast-paced environment. The Security Engineer will be a self-starter, able to thoroughly test and engineer Security SRE solutions for mobile applications, and provide expertise and guidance to product and development teams. This role serves the organization from a centralized Operations and Security SRE team, responsible for creating security requirements, testing, and mitigating security risks for mobile applications. The engineer will act as a Subject Matter Expert (SME) for supported delivery teams. The Mobile App Security Engineer may also serve as a Tier-2 Incident Responder for complex security vulnerability remediation efforts. Additionally, this role contributes to developing processes and procedures to ensure continuous improvement in security requirements, testing, and risk-mitigation programs. Responsibilities and Day-to-Day View • Execute vulnerability assessments of internal and external mobile applications using automated and manual techniques to evaluate risk and security posture. • Research, design, and develop solutions that meet internal and external compliance, security requirements, and standards for Site Security & Reliability Engineering. • Drive defense-in-depth security practices to protect critical IT assets and data. • Develop and document security requirements for product teams. • Perform security testing and analysis of: • Native iOS and Android applications • React Native applications • Mobile Web experiences • Review application design and architecture from a security standpoint and provide recommendations. • Perform root cause analysis of security vulnerabilities and apply lessons learned. • Provide detailed documentation on security policies and remediation guidance. • Assist developers with remediation by sharing security concepts and best practices. • Support and drive business-unit and enterprise security programs as an SME. • Assist the Enterprise Bug Bounty program. Security Job Requirement (cont..) Required Qualifications • Ability to write and develop security requirements. • Experience in Mobile App Security Testing, including: • SAST (Veracode preferred) • DAST (AppScan Enterprise preferred) • Pen-testing tools (e.g., Burp Suite) • Ability to explain vulnerabilities from the OWASP Top 10 to stakeholders and discuss remediation strategies. • Deep understanding of iOS and Android application security principles and best practices. • Strong understanding of React Native security best practices. • Basic understanding of iOS and Android internals. • Experience with Swift, Objective-C, Java, JavaScript, React Native. • Digital forensics experience with iOS and Android. Preferred Qualifications • Master s degree in Marketing, Computer Science, Information Systems, or related field. • At least 3 5 years of experience in information security. • iOS and Android app development background. • At least one of the following security certifications (in order of preference): • OSWE (web app focused) • OSCP (systems/network focused) • CISSP (general security) • CEH (general security) • Certification in one or more public cloud platforms (AWS, Azure, or Google Cloud Platform). • Experience publishing apps to iOS or Android app stores. • Experience in a large enterprise retail or consumer organization. • Contributions to open-source projects. Apply tot his job