Raya

A private community for global citizens.

Senior Product Security Engineer – iOS Mobile App

Security EngineerSecurity EngineerFull TimeRemoteTeam 51-200H1B SponsorCompany SiteLinkedIn

Location

California

Posted

67 days ago

Salary

Not specified

Bachelor Degree8 yrs expEnglishAWSCloudI OSNode.jsObjective CPythonSwift

Job Description

• Lead the security review of iOS application architecture and design, ensuring security is built-in from the ground up. • Conduct security-focused code reviews for the iOS application, and implement/manage static and dynamic application security testing (SAST/DAST) tools. • Oversee the identification, assessment, and remediation of vulnerabilities within the iOS application and its supporting infrastructure. • Perform threat modeling for new features and existing components of the iOS application and its backend services. • Drive the adoption and enforcement of secure development practices within the mobile engineering teams. • Ensure the security of APIs consumed and exposed by the iOS application. • Manage and refine cloud IAM roles and permissions for the mobile app's backend infrastructure to enforce the principle of least privilege and improve our cloud security posture. • Support incident response activities related to the iOS application, including investigation and remediation. • Evaluate, implement, and manage security tools relevant to mobile application security. • Provide guidance and training to mobile developers on secure coding practices. • Report directly to the Head of Information Security on the security posture of the iOS application and related infrastructure.

Job Requirements

  • 8+ years of experience in a security role with a strong focus on application security.
  • 5+ years of experience in a product security engineering role with a strong focus on mobile (iOS) application security.
  • Extensive experience with secure coding principles, mobile security frameworks, and common mobile vulnerabilities (e.g., OWASP Mobile Top 10).
  • Strong understanding of iOS platform security features and best practices.
  • Proficiency in Swift/Objective-C with a minimum of 3 years of Swift experience, and experience with mobile development tools and environments.
  • Proficiency in NodeJS with a minimum of 3 years of NodeJS experience, and experience with NodeJS backend mobile development tools and environments.
  • 3+ years of experience with cloud security principles and cloud IAM (e.g., AWS IAM, Cloud Connectivity) as it relates to mobile backend infrastructure.
  • Experience with static and dynamic application security testing (SAST/DAST) tools for mobile applications.
  • Excellent analytical, problem-solving, and troubleshooting skills.
  • 2+ years of experience in a senior or lead security engineer role.
  • Strong proficiency of AI coding platforms like Claude Code, Copilot, etc.
  • Strong leadership and communication skills, with the ability to influence and collaborate across engineering teams.
  • Ability to prioritize tasks and manage projects effectively in a fast-paced environment.
  • Experience with scripting and automation (e.g., Python, Bash) for security tasks.
  • Experience with GitHub Actions.
  • Experience with DevSecOps and CICD SCA tools.

Related Categories

Related Job Pages

More Security Engineer Jobs

Senior Security Compliance Specialist – DoD

Cloudflare

At Cloudflare, we have our eyes set on an ambitious goal — to help build a better Internet.

Security Engineer67 days ago
Full TimeRemoteTeam 1,001-5,000Since 2009H1B Sponsor

Senior Security Compliance Specialist guiding DoD IL4 authorization process at Cloudflare

Colorado + 3 moreAll locations: Colorado, District of Columbia, Texas, Washington

Senior Security Engineer

Aalyria

Connectivity Everywhere

Security Engineer67 days ago
Full TimeRemoteTeam 51-200H1B No Sponsor

Senior Security Engineer building security systems for aerospace communications

AWSAzureCloudFirewallsGoogle Cloud PlatformKubernetesPythonTerraform
United States
$165K - $200K / year

Cybersecurity GRC – Compliance Analyst

Trimble Inc.

Trimble technology is transforming critical industries to power an interconnected world of work.

Security Engineer67 days ago
Full TimeRemoteTeam 10,001+H1B No Sponsor

Cybersecurity Compliance Analyst ensuring adherence to various security frameworks

AWSAzureCloudCyber SecurityGoogle Cloud PlatformLinuxSplunkUnix
Colorado
$85.9K - $118.1K / year

Head of Security

Ashby

Building people software for high growth companies.

Security Engineer67 days ago
Full TimeRemoteTeam 51-200H1B No Sponsor

Lead Ashby's security program as Head of Security.

California + 2 moreAll locations: California, New York, Washington
$250K - $320K / year