Mobile Malware Engineer

Posted Yesterday
Be an Early Applicant
College Park, MD, USA
In-Office
101K-152K Annually
Senior level
Cloud • Information Technology • Software • Business Intelligence
The Role
Analyze and reverse-engineer mobile malware (Android/iOS), identify C2, persistence, payloads and IOCs, develop detection signatures and tooling, produce MITRE ATT&CK-mapped reports, and collaborate with forensics and cyber teams to support federal national-security missions.
Summary Generated by Built In
Why AIS?

When you join AIS, you’re joining a mission-driven team that’s passionate about making a difference. You’ll work on projects that matter, alongside industry-leading experts, in an environment that fosters innovation, driving client success, and empowering our team to make a lasting impact. As an employee-owned company, we value collaboration, inclusivity, continuous growth, and shared success.

  • Employee Ownership: Your contributions directly impact the company’s success, and you share in its achievements.

  • Continuous Learning: Access to resources, training, and mentorship to support your professional growth.

  • Inclusive Culture: A workplace where diversity is celebrated, and everyone’s voice is valued.

  • Mission-Driven Work: Engage in projects that make a meaningful difference for our clients and communities.

 

What are we looking for?

At AIS, we're looking for more than just skills - we're looking for driven individuals who are passionate about making a difference, eager to grow, and aligned with our core principles.

 

What you will be doing?
At AIS, we are dedicated to providing our employees with diverse opportunities to grow their careers while supporting a variety of impactful projects. For this position, we are seeking a talented individual to join AIS as a Senior Security Engineer.
  • Core Knowledge & Skills: Designs secure architectures, leverages advanced threat detection, leads incident response, and implements security automation.

  • Work & Complexity: Manages complex incidents, conducts threat analysis, leads audits, and implements process improvements.

  • Quality & Independence: Delivers high-quality reports, aligns practices with industry standards, and operates with high autonomy.

  • Teamwork & Communication: Leads team projects, collaborates cross-functionally, mentors juniors, and resolves conflicts.

  • Consulting & Engagement: Provides strategic consulting, leads improvement initiatives, recommends advanced technologies, and manages vendor relationships.

As your initial career assignment, you will support the priorities and vital functions of our shared services teams as a(n) Mobile Malware Engineer. Project Summary

Seeking a Mobile Malware Engineer to analyze, reverse engineer, and characterize malicious software targeting Android and iOS platforms in support of a federal government customer. Using expertise in malware reverse engineering and analysis, the engineer will evaluate complex malicious code through tools including disassemblers, debuggers, hex editors, unpackers, virtual machines, and network sniffers. The engineer will investigate instances of malicious code to determine attack vectors, payloads, and the extent of damage and data exfiltration — delivering actionable intelligence products that directly support national security missions.
 

Key Responsibilities
  • Perform static and dynamic analysis of mobile malware on Android and iOS platforms.

  • Reverse engineer ARM/ARM64 binaries; unpack APK/IPA files, bypass runtime protections, and conduct reverse engineering of known and suspected malware files.

  • Identify C2 infrastructure, persistence mechanisms, and indicators of compromise (IOCs); investigate attack vectors, payloads, and the extent of data exfiltration.

  • Identify vulnerabilities in binaries, analyze shellcode, and recommend preventative or defensive actions.

  • Develop custom tooling, automation scripts, and YARA detection signatures; build network and host-based signatures and recommend heuristic or anomaly-based detection methods.

  • Produce technical reports with MITRE ATT&CK for Mobile mappings, remediation recommendations, and detailed documentation of malware behavior and command-and-control infrastructure.

  • Perform ongoing research into malicious software, emerging vulnerabilities, and exploitation tactics to stay ahead of evolving threats.

  • Collaborate with forensics, vulnerability research, and cyber operations teams.

Required For This Opportunity
  • Bachelor's + 8 yrs experience, or Master's + 6 yrs experience. A degree in Cybersecurity, Computer Science, Software Engineering, Information Technology, Information Systems, or related field is highly desired. However, an additional four years of experience may be considered in lieu if a Bachelor's degree.

  • Active Top Secret with SCI eligibility clearance required.

  • Proficiency in ARM/ARM64 assembly and low-level binary analysis.

  • Strong knowledge of Android and iOS internals (APK/IPA structure, ART runtime, Mach-O binaries).

  • Hands-on experience with: Ghidra, IDA Pro, Jadx, Frida, MobSF, Corellium.

  • Scripting in Python; familiarity with Java, Kotlin, or Swift.

Nice to Have Skills
  • Experience with CNO toolchains or offensive mobile capability development.

  • Familiarity with nation-state APT campaigns targeting mobile endpoints.

  • Knowledge of MDM/EMM environments and mobile forensics tools (Cellebrite, Oxygen Forensic).

  • Published research, CVEs, or open-source contributions in mobile security.

Preferred Certifications:  GREM, GMOB, eMAPT, OSED, OSCP, CISSP, or CompTIA SecurityX.

At AIS, we are committed to offering competitive and fair compensation that reflects the skills, experience, and contributions of each team member. The targeted base salary range for this role is $101,000-$152,000 per year. Please note that this range is provided as a guideline and the final offer will be based on several factors, including but not limited to, skillset and competencies, level of experience, education, certifications, and location. We value transparency in our hiring process and are happy to discuss how your unique qualifications align with our compensation structure during the interview process.

Applied Information Sciences does not discriminate on the basis of race, national origin, religion, color, gender, sexual orientation, age, disability, protected veteran status, or any other basis. Employment decisions are based solely on qualifications, merit, and business needs.

Skills Required

  • Bachelor's degree plus 8 years experience, or Master's plus 6 years (or additional four years experience in lieu of a Bachelor's)
  • Active Top Secret with SCI eligibility clearance required
  • Proficiency in ARM/ARM64 assembly and low-level binary analysis
  • Strong knowledge of Android and iOS internals (APK/IPA structure, ART runtime, Mach-O binaries)
  • Hands-on experience with Ghidra, IDA Pro, Jadx, Frida, MobSF, and Corellium
  • Scripting in Python and development of custom tooling and automation scripts
  • Experience developing YARA detection signatures, network and host-based signatures, and heuristic/anomaly detection methods
  • Ability to perform static and dynamic analysis, unpack APK/IPA, bypass runtime protections, and reverse engineer ARM/ARM64 binaries and shellcode
  • Produce technical reports with MITRE ATT&CK for Mobile mappings and remediation recommendations
  • Familiarity with Java, Kotlin, or Swift
  • Experience with mobile forensics tools and MDM/EMM environments (Cellebrite, Oxygen Forensic, MDM/EMM)
  • Experience or research contributions in mobile security (published research, CVEs, open-source contributions)
  • Familiarity with CNO toolchains or offensive mobile capability development and knowledge of nation-state APT campaigns
  • Preferred certifications: GREM, GMOB, eMAPT, OSED, OSCP, CISSP, or CompTIA SecurityX

AIS (Applied Information Sciences) Compensation & Benefits Highlights

The following summarizes recurring compensation and benefits themes identified from responses generated by popular LLMs to common candidate questions about AIS (Applied Information Sciences) and has not been reviewed or approved by AIS (Applied Information Sciences).

  • Equity Value & Accessibility Employee ownership via an ESOP is emphasized and contributes meaningful long‑term value to total rewards. Equity participation is positioned as a core part of the package.
  • Retirement Support A 401(k) with employer match is consistently described alongside the ESOP. Together these programs are framed as key pillars of financial benefits.
  • Healthcare Strength Multiple medical plan choices, plus dental and vision, are highlighted as part of a comprehensive offering. Health coverage is paired with PTO and paid holidays to round out the package.

AIS (Applied Information Sciences) Insights

Am I A Good Fit?
beta
Get Personalized Job Insights.
Our AI-powered fit analysis compares your resume with a job listing so you know if your skills & experience align.

The Company
HQ: Reston, VA
710 Employees
Year Founded: 1982

What We Do

AIS (Applied Information Sciences) provides software and systems engineering services to government agencies and businesses across the United States. We specialize in cloud services, DevOps, custom application development, and IT services. Our areas of expertise include custom application development, Microsoft Azure, Amazon Web Services (AWS), Office 365, SharePoint, Dynamics 365, User Experience (UX), business intelligence/advanced analytics and IoT, and Managed Services. Our customers include a broad range of organizations, from start-ups to Fortune 100 companies, and include state and local governments as well as defense and national security agencies. Our analysis-driven approach to solving business problems—combined with our commitment to deadlines and budgets—results in successful projects and long-term relationships with our clients. We're a top-tier cloud partner for Microsoft, Amazon and Equinix with proven capabilities and a track record of success. AIS is a Microsoft gold partner with six competencies ​and a Microsoft National Solution Provider (NSP). From over 750,000 Microsoft partners, there are less than 50 partners that have been selected for inclusion​ in the NSP organization. Microsoft chooses partners for this program that have proven capabilities to scale to the needs of large enterprises across the United States. Founded in 1982, AIS is a growing and privately held company headquartered in Reston, Virginia, with offices in Maryland, North Carolina, Ohio, Texas, Indiana, and India. Check out our opportunities at careers.ais.com.

Similar Jobs

The Amatriot Group Logo The Amatriot Group

Mobile Malware Engineer

Information Technology • Professional Services • Cybersecurity • Defense
In-Office
Linthicum Heights, MD, USA
200 Employees
120K-150K Annually

NetSage Logo NetSage

Mobile Malware Engineer-Senior

Security • Software • Cybersecurity
In-Office
Linthicum Heights, MD, USA
26 Employees

Zscaler Logo Zscaler

Principal, Product Marketing - ZPA

Cloud • Information Technology • Security • Software • Cybersecurity
Easy Apply
Remote or Hybrid
USA
8697 Employees
200K-285K Annually

ZS Logo ZS

Consultant

Artificial Intelligence • Healthtech • Professional Services • Analytics • Consulting
Hybrid
3 Locations
15000 Employees
120K-137K Annually

Similar Companies Hiring

Golden Pet Brands Thumbnail
Digital Media • eCommerce • Information Technology • Marketing Tech • Pet • Retail • Social Media
El Segundo, California
178 Employees
Kepler  Thumbnail
Fintech • Software
New York, New York
6 Employees
Onshore Thumbnail
Artificial Intelligence • Fintech • Software • Financial Services
New York, New York
60 Employees

Sign up now Access later

Create Free Account

Please log in or sign up to report this job.

Create Free Account