Posted on: 17/04/2026
Description :
hackajob is partnering with HSBC to fill this position. Create a profile to be automatically considered for this roleand others that match your experience.
If youre looking for a career that will help you stand out, join HSBC and fulfil your potential. Whether you want a career that could take you to the top, or simply take you in an exciting new direction, HSBC offers opportunities, support and rewards that will take you further.
HSBC is one of the largest banking and financial services organisations in the world, with operations in 64 countries and territories. We aim to be where the growth is, enabling businesses to thrive and economies to prosper, and, ultimately, helping people to fulfil their hopes and realise their ambitions.
We are currently seeking an experienced professional to join our team in the role of an iOS and Android Malware Specialist.
In this role, you will :
- Experience in mapping attack vectors with mitigation control in mobile (iOS and Android) through coding, config, RASP or any other means.
- Thorough knowledge of iOS and android security architecture model for different versions of releases.
- Experience is explaining the working mechanism of malwares and its related risks to technical and non-technical audiences in a clear and simplified way.
- Proficient in analysing malware (android/iOS) lifecycle and its Modus Operandi.
- Ability to extract IOC (Indicator of Compromise) of a malware.
- Ability to perform static and dynamic analysis of mobile binaries to identify possible malicious activities. Ability to perform reverse engineering of malware including cases when the malware employs anti-debugging, anti- disassembly and other similar anti-detection or evasion mechanism.
- Ability to set up own sandbox environment with all relevant tools to perform malware analysis. Ability to recreate attack scenarios (even in absence of malware binaries) to test the effectiveness of implemented controls.
- Ability to create clear and concise malware report including evidence.
- Experience in identifying both file based and fileless malware and their MO analysis.
- Experience with creating and testing AI based attacks like Deepfake and their mitigating controls. Experience in mobile malware threat intelligence gathering .
- Strong understanding of malware industry trends.
- Strong understanding of the security threat landscape, awareness of major historical and recent vulnerabilities, awareness of security industry responses to significant threats.
- Strong understanding on how to protect mobile app against zero day attacks.
- Good command on any programming language to write novel hooking scripts.
- Ability to interpret mobile app code written in Swift, Kotlin, Objective C, Java etc.
- Industry recognised Information Security and Cyber Security qualifications is an added advantage e.g. OSCP, GIAC GPEN, GIAC GMOB.
- Educated to degree level desirable but not essential.
Non-technical skills :
Did you find something suspicious?
Posted by
Posted in
CyberSecurity
Functional Area
Cyber Security
Job Code
1629274