09 Sep
|
C3iHub, IIT Kanpur
|
Mumbai
09 Sep
C3iHub, IIT Kanpur
Mumbai
Role OverviewWe are looking for an Android Security Research Engineer who is passionate about understanding Android internals, breaking application and platform defenses, and conducting deep vulnerability research at both the application and system level. The ideal candidate has strong hands-on experience in reverse engineering, mobile application pentesting, exploit analysis, and security research, with exposure to kernel- and framework-level attack surfaces.
Key ResponsibilitiesPerform reverse engineering of Android applications (APK/AAB) to identify security flaws, logic issues, and weak security implementationsConduct Android application penetration testing, including runtime manipulation, hooking, and traffic interceptionAnalyze and bypass common mobile security controls such as SSL pinning, root detection, anti-debugging, tamper protection, and obfuscationResearch Android internals including the Android framework, ART/Dalvik runtime, system services, Binder IPC, and permission modelPerform dynamic and static analysis of Android malware and suspicious applications (positive to have)Develop, customize, and maintain Frida scripts, Objection workflows, and custom tooling for security researchReplicate and analyze publicly known Android vulnerabilities and exploits to understand root causes and impactAssist in vulnerability research and exploitation, including logic flaws, exploit chaining, and basic memory corruption concepts
Must-Have SkillsStrong understanding of Android fundamentals and
Android internals (framework and system architecture)Hands-on experience with
Android kernel concepts and attack surface awarenessProven experience in reverse engineering Android applicationsStrong hands-on knowledge of Android application penetration testing methodologiesExperience
replicating and analyzing known Android exploits
and adapting PoCsFamiliarity with
exploit chaining concepts
in mobile attack scenariosHands-on experience working with
Corellium Android environments
for security research and testingPractical experience bypassing:SSL pinningRoot detectionAnti-debugging and runtime protectionsSSL pinningRoot detectionAnti-debugging and runtime protectionsExperience with runtime instrumentation and traffic interceptionFamiliarity with tools including (but not limited to):ADBAndroid StudioFridaObjectionPidcatBurp SuiteMetasploitADBAndroid StudioFridaObjectionPidcatBurp SuiteMetasploitBasic understanding of exploitation techniques and vulnerability research conceptsStrong understanding of Android fundamentals and
Android internals (framework and system architecture)Hands-on experience with
Android kernel concepts and attack surface awarenessProven experience in reverse engineering Android applicationsStrong hands-on knowledge of Android application penetration testing methodologiesExperience
replicating and analyzing known Android exploits
and adapting PoCsFamiliarity with
exploit chaining concepts
in mobile attack scenariosHands-on experience working with
Corellium Android environments
for security research and testingPractical experience bypassing:SSL pinningRoot detectionAnti-debugging and runtime protectionsExperience with runtime instrumentation and traffic interceptionFamiliarity with tools including (but not limited to):ADBAndroid StudioFridaObjectionPidcatBurp SuiteMetasploitBasic understanding of exploitation techniques and vulnerability research concepts
Good-to-Have SkillsExperience with Android malware analysisHands-on experience with:Bootloader unlockingRooting Android devicesCustom ROMs or recovery environmentsBootloader unlockingRooting Android devicesCustom ROMs or recovery environmentsFamiliarity with native components (NDK), JNI, and ARM64Experience with Android malware analysisHands-on experience with:Bootloader unlockingRooting Android devicesCustom ROMs or recovery environmentsFamiliarity with native components (NDK), JNI, and ARM64
Scripting skills (Python, JavaScript for Frida, Bash)
Required SkillsCyber-security android
📌 Android Security Research Engineer (Mumbai)
🏢 C3iHub, IIT Kanpur
📍 Mumbai