7 months ago
Remote, Argentina or Remote, EMEASenior
Responsibilities
- Design, prototype, and implement iOS detection techniques and algorithms based on runtime and offline forensic data.
- Analyze iOS internals, sysdiagnose data, encrypted backups, daemons, services, sandboxing, and code-signing mechanisms.
- Develop and maintain internal tooling and automation for analysis, triage, and detection development.
- Lead or participate in brainstorming sessions and focused sub-groups targeting advanced mobile threats.
- Analyze customer-provided forensic data and provide technical reports, guidance, and remediation support.
- Publish technical blog posts about emerging security risks and research findings.
Requirements
- Demonstrated expertise in iOS operating system internals and using operating-system data to detect compromised devices.
- Experience applying data analysis methods to forensic investigations.
- Proficiency with reverse engineering using IDA Pro, Ghidra, Hopper, or equivalent tools, including scripting and SDK use.
- Strong programming experience in C, Python, Objective-C, and Swift, with the ability to produce efficient, maintainable, and secure code.
- Ability to approach analysis from both offensive and defensive security perspectives.
- Ability to collaborate effectively, lead focused technical sub-groups, and deliver research objectives.
- Experience reverse engineering proprietary protocols and interprocess communication such as XPC, mach messages, and IOKit is a plus.
- Knowledge of jailbreak methods and iOS exploit classes, including kernel exploits, sandbox escapes, and code-signing bypasses, is highly desirable.
