At a Glance
- Tasks: Assess and enhance security for Android applications, ensuring compliance with government standards.
- Company: Join Samsung Research UK, a leader in mobile technology innovation.
- Benefits: Gain valuable experience in a dynamic environment with potential for career growth.
- Why this job: Make a real impact on mobile security solutions for enterprise customers worldwide.
- Qualifications: Degree in Computing or related field; experience in application testing and programming.
- Other info: Collaborate with diverse teams and partners while developing cutting-edge security solutions.
The predicted salary is between 36000 - 60000 £ per year.
We have an opportunity available for a Security Engineer to join us on a 12 month contract basis here at Samsung Research UK. You will be responsible for Android applications’ security assessment and for their approval and solution development to support B2B business for Samsung Galaxy devices. In particular supporting applications’ approval for government use and, depending upon opportunities, mobile solution development, deployment, provisioning and updates. Expertise is required in the area of concept definition and security requirements for emerging security solutions leveraging Knox mobile software, hardware components on Galaxy devices, and Knox service infrastructure.
Supporting solution development may also involve developing android applications, web services, smart card applications and mobile platform components, collaborating with internal and external stakeholders. You will have an interface role to play between potential partners/customers and internal stakeholders including business and R&D teams across the organisation. You will be responsible for providing expertise in the area of mobile security to address both short and long-term requirements of enterprise customers across the globe.
Role and Responsibilities- Producing security assessments and generating evidence reports for Samsung Galaxy applications as per acceptance requirements set by the government agencies. The security assessment task includes testing applications in line with well-known industry standards including: OWASP MASVS testing, threat modelling, tool relating to data flow analysis within the device and to the network; static and dynamic testing using tools such as MobSF, Frida, Jadx, cve-gin-tool and others for application risk assessment. These tasks may also require development of necessary tools for testing and hence development experience with programming languages such as Python is essential.
- Support Samsung partners and customers to build solutions based on Samsung Knox platform and Knox service infrastructure. This task includes development experience with front-end and back-end and web services using the latest IDE and tool chains.
- Depending upon needs, support Android and smartcard applications and mobile platform framework development tasks, in particular being responsible for functional specifications, requirements, design documentation along with supporting implementation and deployment, as necessary.
- Development of tools to enable solution installation, provisioning and approval.
- Creation of necessary documentation as per requirements to support approval of the solution including solution design and deployment guide documents.
- Coordination between internal and external stakeholders throughout the process and to support the product roadmap and strategy.
- Create necessary process documents to share with business stakeholders.
- Create necessary documents to describe issues encountered in an effective manner to get the right support from development teams.
- Travel as required, including to attend meetings with customers and partners.
- Timely provision of written progress reports to management and others, as required.
All work is to be of a professional standard, paying due regard to safety, efficiency, cost effectiveness, time scales and the needs of the company.
Skills and Qualifications- Essential: A degree in Computing and Communications or any related discipline (an equivalent period of industrial experience may be substituted).
- Experience with application testing using various methods and tools including OWASP MASVS, MobfSF, Frida and tools to conduct static and dynamic testing.
- Knowledge of various device security attack vectors including apps, browsers, connectivity, device management, networking, local storage, etc.
- Knowledge of C, C++ and Java programming languages (at least 3 years’ experience). This experience is necessary to understand existing code and write test code to verify security requirements.
- Experience in development of Java Cryptography Extension (JCE) provider for Android KeyStore.
- Familiarity with PKI, certificate enrolment, Public Key Cryptography Standards (PKCS #).
- Documentation skills required for creating high quality technical, process and day-to-day documents including use of MS Word and PowerPoint.
- A high degree of self-motivation, and a proactive approach to problem resolution.
- A good level of inter-personal and communication skills.
- Desirable: Experience with Global Platform Card Specification 2.3 and amendments A, C, D, E, F, ISO 7816 smart card standard, NFC and ETSI 102 705 APIs.
- Experience with the development of smart card-based Android applications including the necessary SDK. Hands-on experience with Javacard API, crypto engines and crypto libraries.
- Front-end and back-end and Web Services development and hence experience with Javascript, Python and the latest IDE and toolchain is desirable.
- Defining security concepts, requirements and security architecture.
- Applying security-by-design principles.
- Secure mobile platform development.
- Mobile device security features including device lock and data encryption.
- Common criteria certification of security-critical software including CC, FIPS, VS-NfD, etc.
Samsung has a strict policy on trade secrets. In applying to Samsung and progressing through the recruitment process, you must not disclose any trade secrets of a previous employer.
Security Engineer (Mobile Security) - 12 Month Contract in City of London employer: Samsung Electronics Perú
Contact Detail:
Samsung Electronics Perú Recruiting Team
StudySmarter Expert Advice 🤫
We think this is how you could land Security Engineer (Mobile Security) - 12 Month Contract in City of London
✨Tip Number 1
Network like a pro! Attend industry meetups, conferences, or even online webinars related to mobile security. It's a great way to meet potential employers and get your name out there.
✨Tip Number 2
Show off your skills! Create a portfolio showcasing your projects, especially those involving Android applications and security assessments. This will give you an edge when chatting with recruiters.
✨Tip Number 3
Don’t just apply; engage! When you find a job on our website, reach out to the hiring manager or team on LinkedIn. A friendly message can make you stand out from the crowd.
✨Tip Number 4
Prepare for interviews by brushing up on common security scenarios and tools like OWASP MASVS and MobSF. Practising your responses will help you feel more confident and ready to impress.
We think you need these skills to ace Security Engineer (Mobile Security) - 12 Month Contract in City of London
Some tips for your application 🫡
Tailor Your CV: Make sure your CV highlights your experience with mobile security and application testing. Use keywords from the job description to show that you’re a perfect fit for the role.
Showcase Your Skills: Don’t just list your skills; provide examples of how you've used them in past projects. Mention specific tools like OWASP MASVS or MobSF that you’ve worked with to demonstrate your expertise.
Craft a Compelling Cover Letter: Your cover letter is your chance to shine! Explain why you’re passionate about mobile security and how your background aligns with Samsung’s needs. Keep it concise but impactful.
Apply Through Our Website: We encourage you to apply directly through our website. It’s the best way to ensure your application gets seen by the right people. Plus, it shows you’re serious about joining our team!
How to prepare for a job interview at Samsung Electronics Perú
✨Know Your Tools
Familiarise yourself with the tools mentioned in the job description, like OWASP MASVS, MobSF, and Frida. Be ready to discuss how you've used these tools in past projects or how you would approach using them for security assessments.
✨Showcase Your Development Skills
Since development experience is crucial, prepare to talk about your proficiency in programming languages like C, C++, and Java. Bring examples of previous projects where you wrote test code or developed security features, especially related to Android applications.
✨Understand Security Concepts
Brush up on key security concepts and attack vectors relevant to mobile applications. Be prepared to explain how you would apply security-by-design principles in your work and how you would address potential vulnerabilities in Samsung Galaxy devices.
✨Communicate Effectively
As this role involves coordination with various stakeholders, practice articulating your thoughts clearly. Prepare to discuss how you would create documentation and reports that are easy to understand, ensuring all parties are aligned throughout the project lifecycle.