Mobile Malware Engineer

Posted Yesterday
Be an Early Applicant
Linthicum Heights, MD, USA
In-Office
120K-150K Annually
Senior level
Information Technology • Professional Services • Cybersecurity • Defense
The Role
Perform static and dynamic reverse engineering of Android and iOS malware, analyze ARM/ARM64 binaries, unpack APK/IPA, identify C2 infrastructure and IOCs, develop detection signatures and tooling, produce MITRE-mapped technical reports, and collaborate with forensics and cyber operations to recommend defensive actions.
Summary Generated by Built In

Location: Linthicum Heights, MD (full-time on-site)
Security Clearance: Active TS/SCI [Required]
Job Type: Full-Time

Target Salary Range*: $120,000 - $150,000

*This represents the potential salary range for this position depending on education level, years of experience and/or certifications in addition to other position specific requirements which may impact salary

Position Overview

The Mobile Malware Engineer analyzes, reverse engineers, and characterizes malicious software targeting Android and iOS platforms in support of a federal government customer. Using expertise in malware reverse engineering and analysis, this role evaluates complex malicious code through tools including disassemblers, debuggers, hex editors, unpackers, virtual machines, and network sniffers. The engineer investigates malicious code to determine attack vectors, payloads, and the extent of damage and data exfiltration, delivering actionable intelligence products that directly support national security missions.

Key Responsibilities Mobile Malware Analysis
  • Perform static and dynamic analysis of mobile malware on Android and iOS platforms.
  • Reverse engineer ARM/ARM64 binaries.
  • Unpack APK and IPA files, bypass runtime protections, and conduct reverse engineering of known and suspected malware files.
  • Identify vulnerabilities in binaries and analyze shellcode.
  • Investigate attack vectors, payloads, and the extent of data exfiltration.
Threat Detection and Research
  • Identify command-and-control (C2) infrastructure, persistence mechanisms, and indicators of compromise (IOCs).
  • Develop custom tooling, automation scripts, and YARA detection signatures.
  • Build network- and host-based detection signatures and recommend heuristic or anomaly-based detection methods.
  • Perform ongoing research into malicious software, emerging vulnerabilities, and exploitation tactics.
Reporting and Collaboration
  • Produce technical reports that include MITRE ATT&CK for Mobile mappings, remediation recommendations, and detailed documentation of malware behavior and command-and-control infrastructure.
  • Recommend preventative or defensive actions based on analysis findings.
  • Collaborate with forensics, vulnerability research, and cyber operations teams.
Qualifications Education
  • Bachelor's degree and 8 years of experience, or Master's degree and 6 years of experience.
  • Degree in Cybersecurity, Computer Science, Software Engineering, Information Technology, Information Systems, or a related field is highly desired.
  • An additional four years of experience may be substituted in lieu of a Bachelor's degree.
Experience
  • Proficiency in ARM/ARM64 assembly and low-level binary analysis.
  • Strong knowledge of Android and iOS internals, including APK/IPA structure, ART runtime, and Mach-O binaries.
  • Hands-on experience with Ghidra, IDA Pro, Jadx, Frida, MobSF, and Corellium.
  • Experience scripting in Python.
  • Familiarity with Java, Kotlin, or Swift.
Clearance
  • Active Top Secret clearance with SCI eligibility required.
Preferred Qualifications Experience
  • Experience with CNO toolchains or offensive mobile capability development.
  • Familiarity with nation-state APT campaigns targeting mobile endpoints.
  • Knowledge of MDM/EMM environments and mobile forensics tools, including Cellebrite and Oxygen Forensic.
  • Published research, CVEs, or open-source contributions in mobile security.
Certifications
  • GREM
  • GMOB
  • eMAPT
  • OSED
  • OSCP
  • CISSP
  • CompTIA SecurityX

Skills Required

  • Active Top Secret clearance with SCI eligibility
  • Bachelor's degree with 8 years experience or Master's degree with 6 years experience (or 4 additional years substituted for Bachelor's)
  • Proficiency in ARM/ARM64 assembly and low-level binary analysis
  • Strong knowledge of Android and iOS internals including APK/IPA structure, ART runtime, and Mach-O binaries
  • Hands-on experience with Ghidra, IDA Pro, Jadx, Frida, MobSF, and Corellium
  • Perform static and dynamic analysis of mobile malware and reverse engineer binaries
  • Unpack APK and IPA files, bypass runtime protections, and analyze shellcode and vulnerabilities
  • Experience scripting in Python
  • Familiarity with Java, Kotlin, or Swift
  • Develop detection signatures (e.g., YARA) and custom tooling/automation
  • Experience with CNO toolchains or offensive mobile capability development
  • Familiarity with nation-state APT campaigns targeting mobile endpoints
  • Knowledge of MDM/EMM environments and mobile forensics tools including Cellebrite and Oxygen Forensic
  • Published research, CVEs, or open-source contributions in mobile security
  • Relevant certifications (e.g., GREM, GMOB, eMAPT, OSED, OSCP, CISSP, CompTIA Security+)
Am I A Good Fit?
beta
Get Personalized Job Insights.
Our AI-powered fit analysis compares your resume with a job listing so you know if your skills & experience align.

The Company
200 Employees
Year Founded: 2011

What We Do

The Amatriot Group is a talent solutions firm providing technology expertise to the federal and commercial sectors. With over a decade of experience delivering mission-critical support to the intelligence, defense, and national security sectors, the company specializes in delivering cutting-edge technology solutions by securing top-tier talent to bridge workforce gaps in the most complex and secure environments.

Similar Jobs

AIS (Applied Information Sciences) Logo AIS (Applied Information Sciences)

Mobile Malware Engineer

Cloud • Information Technology • Software • Business Intelligence
In-Office
College Park, MD, USA
710 Employees
101K-152K Annually

NetSage Logo NetSage

Mobile Malware Engineer-Senior

Security • Software • Cybersecurity
In-Office
Linthicum Heights, MD, USA
26 Employees

UL Solutions Logo UL Solutions

Lightning Protection System Inspector - Denver, CO

Automotive • Professional Services • Software • Consulting • Energy • Chemical • Renewable Energy
Remote or Hybrid
United States
15000 Employees
80K-100K Annually

UL Solutions Logo UL Solutions

Lightning Protection System Inspector - Florida Atlantic

Automotive • Professional Services • Software • Consulting • Energy • Chemical • Renewable Energy
Remote or Hybrid
United States
15000 Employees
80K-100K Annually

Similar Companies Hiring

Standard Template Labs Thumbnail
Artificial Intelligence • Information Technology • Software
New York, NY
25 Employees
Golden Pet Brands Thumbnail
Digital Media • eCommerce • Information Technology • Marketing Tech • Pet • Retail • Social Media
El Segundo, California
178 Employees
Outpost Space Thumbnail
Aerospace • Defense
US
24 Employees

Sign up now Access later

Create Free Account

Please log in or sign up to report this job.

Create Free Account