At a Glance
- Tasks: Assess and enhance security for Android applications, ensuring compliance for Samsung Galaxy devices.
- Company: Join Samsung Research UK, a leader in mobile technology innovation.
- Benefits: Gain valuable experience in mobile security with a competitive salary and professional growth.
- Why this job: Make a real impact on global enterprise security solutions while working with cutting-edge technology.
- Qualifications: Degree in Computing or related field; experience in application testing and programming languages required.
- Other info: Collaborative environment with opportunities to work with internal and external stakeholders.
The predicted salary is between 50000 - 60000 £ per year.
We have an opportunity available for a Security Engineer to join us on a 12 month contract basis here at Samsung Research UK. You will be responsible for Android applications’ security assessment and for their approval and solution development to support B2B business for Samsung Galaxy devices. In particular supporting applications’ approval for government use and, depending upon opportunities, mobile solution development, deployment, provisioning and updates. Expertise is required in the area of concept definition and security requirements for emerging security solutions leveraging Knox mobile software, hardware components on Galaxy devices, and Knox service infrastructure.
Supporting solution development may also involve developing android applications, web services, smart card applications and mobile platform components, collaborating with internal and external stakeholders. You will have an interface role to play between potential partners/customers and internal stakeholders including business and R&D teams across the organisation. You will be responsible for providing expertise in the area of mobile security to address both short and long-term requirements of enterprise customers across the globe.
Role and Responsibilities- Producing security assessments and generating evidence reports for Samsung Galaxy applications as per acceptance requirements set by the government agencies. The security assessment task includes testing applications in line with well-known industry standards including: OWASP MASVS testing, threat modelling, tool relating to data flow analysis within the device and to the network; static and dynamic testing using tools such as MobSF, Frida, Jadx, cve-gin-tool and others for application risk assessment. These tasks may also require development of necessary tools for testing and hence development experience with programming languages such as Python is essential.
- Support Samsung partners and customers to build solutions based on Samsung Knox platform and Knox service infrastructure. This task includes development experience with front-end and back-end and web services using the latest IDE and tool chains.
- Depending upon needs, support Android and smartcard applications and mobile platform framework development tasks, in particular being responsible for functional specifications, requirements, design documentation along with supporting implementation and deployment, as necessary.
- Development of tools to enable solution installation, provisioning and approval.
- Creation of necessary documentation as per requirements to support approval of the solution including solution design and deployment guide documents.
- Coordination between internal and external stakeholders throughout the process and to support the product roadmap and strategy.
- Create necessary process documents to share with business stakeholders.
- Create necessary documents to describe issues encountered in an effective manner to get the right support from development teams.
- Travel as required, including to attend meetings with customers and partners.
- Timely provision of written progress reports to management and others, as required.
All work is to be of a professional standard, paying due regard to safety, efficiency, cost effectiveness, time scales and the needs of the company.
Skills and Qualifications- Essential: A degree in Computing and Communications or any related discipline (an equivalent period of industrial experience may be substituted).
- Experience with application testing using various methods and tools including OWASP MASVS, MobfSF, Frida and tools to conduct static and dynamic testing.
- Knowledge of various device security attack vectors including apps, browsers, connectivity, device management, networking, local storage, etc.
- Knowledge of C, C++ and Java programming languages (at least 3 years’ experience). This experience is necessary to understand existing code and write test code to verify security requirements.
- Experience in development of Java Cryptography Extension (JCE) provider for Android KeyStore.
- Familiarity with PKI, certificate enrolment, Public Key Cryptography Standards (PKCS #).
- Documentation skills required for creating high quality technical, process and day-to-day documents including use of MS Word and PowerPoint.
- A high degree of self-motivation, and a proactive approach to problem resolution.
- A good level of inter-personal and communication skills.
- Desirable: Experience with Global Platform Card Specification 2.3 and amendments A, C, D, E, F, ISO 7816 smart card standard, NFC and ETSI 102 705 APIs.
- Experience with the development of smart card-based Android applications including the necessary SDK. Hands-on experience with Javacard API, crypto engines and crypto libraries.
- Front-end and back-end and Web Services development and hence experience with Javascript, Python and the latest IDE and toolchain is desirable.
- Defining security concepts, requirements and security architecture.
- Applying security-by-design principles.
- Secure mobile platform development.
- Mobile device security features including device lock and data encryption.
- Common criteria certification of security-critical software including CC, FIPS, VS-NfD, etc.
Samsung has a strict policy on trade secrets. In applying to Samsung and progressing through the recruitment process, you must not disclose any trade secrets of a previous employer.
Security Engineer (Mobile Security) - 12 Month Fixed Term Contract in City of London employer: Samsung Electronics Perú
Contact Detail:
Samsung Electronics Perú Recruiting Team
StudySmarter Expert Advice 🤫
We think this is how you could land Security Engineer (Mobile Security) - 12 Month Fixed Term Contract in City of London
✨Tip Number 1
Network like a pro! Attend industry meetups, conferences, or even online webinars. Connecting with professionals in mobile security can open doors to opportunities and give you insights into the latest trends.
✨Tip Number 2
Show off your skills! Create a portfolio showcasing your projects, especially those related to mobile security. This could include any tools you've developed or assessments you've conducted. It’s a great way to demonstrate your expertise to potential employers.
✨Tip Number 3
Don’t just apply; engage! When you find a role that excites you, reach out to current employees on LinkedIn. Ask them about their experiences and the company culture. This not only shows your interest but can also give you insider tips for your interview.
✨Tip Number 4
Apply through our website! We make it easy for you to find roles that match your skills. Plus, it’s a direct line to us, so you can be sure your application gets the attention it deserves.
We think you need these skills to ace Security Engineer (Mobile Security) - 12 Month Fixed Term Contract in City of London
Some tips for your application 🫡
Tailor Your CV: Make sure your CV highlights your experience with mobile security and application testing. Use keywords from the job description to show that you’re a perfect fit for the role.
Showcase Your Skills: Don’t just list your skills; provide examples of how you've used them in past projects. Mention specific tools like OWASP MASVS or MobSF that you’ve worked with to demonstrate your expertise.
Craft a Compelling Cover Letter: Your cover letter is your chance to shine! Explain why you’re passionate about mobile security and how your background aligns with Samsung’s goals. Keep it concise but impactful.
Apply Through Our Website: We encourage you to apply directly through our website. It’s the best way to ensure your application gets seen by the right people. Plus, it shows you’re serious about joining our team!
How to prepare for a job interview at Samsung Electronics Perú
✨Know Your Tools
Familiarise yourself with the tools mentioned in the job description, like OWASP MASVS, MobSF, and Frida. Being able to discuss your experience with these tools will show that you’re not just a theoretical candidate but someone who can hit the ground running.
✨Showcase Your Development Skills
Since development experience is crucial, be prepared to talk about your work with programming languages like C, C++, and Java. Bring examples of projects where you’ve implemented security features or developed applications, as this will demonstrate your hands-on expertise.
✨Understand Security Concepts
Brush up on security concepts relevant to mobile applications, such as PKI and cryptography standards. Be ready to explain how you would apply security-by-design principles in your work, as this will highlight your proactive approach to mobile security.
✨Prepare for Stakeholder Interaction
Since the role involves coordination with internal and external stakeholders, think of examples where you’ve successfully communicated complex technical information to non-technical audiences. This will showcase your interpersonal skills and ability to bridge gaps between teams.