×
Register Here to Apply for Jobs or Post Jobs. X

Red Team Engineer - Science

Remote / Online - Candidates ideally in
Greater London, London, Greater London, W1B, England, UK
Listing for: iProov
Remote/Work from Home position
Listed on 2026-05-24
Job specializations:
  • IT/Tech
    Cybersecurity, Information Security & Data Protection
Salary/Wage Range or Industry Benchmark: 80000 - 100000 GBP Yearly GBP 80000.00 100000.00 YEAR
Job Description & How to Apply Below
Location: Greater London

iProov provides science‑based biometric solutions that enable the world’s most security‑conscious organizations to streamline secure remote onboarding and authentication for digital and physical access. Our award‑winning liveness technology and iSOC offer unmatched resilience against deepfakes and generative AI threats while ensuring effortless, scalable user experiences. Trusted by leading governments and enterprises, including the U.S. Department of Homeland Security, U.K. Home Office, Gov Tech Singapore, ING, and UBS, iProov sets the standard in biometric identity assurance.

This global trust is built not only on our technology but on the strength of the people behind it. For us, diversity at iProov is about reflecting the customers we serve, holding the principles of equality and inclusion at the heart of everything we do and all that we stand for, embracing differences, creating possibilities, and growing together. We aim to foster a culture where individuals of all backgrounds feel confident in bringing their whole selves to work, feel included, and their talents are nurtured, empowering them to contribute fully to our purpose.

The Role

Reports to:

Head of Red Team

Location:

UK - (Hybrid - Flexible)

Comp:
Negotiable (Base) + Company Performance Bonus (10%) + Share Options + UK iProov Benefits

As we continue to scale, we are looking for an experienced Red Team Engineer specialising in mobile application security (iOS and/or Android) to join our growing Red Team function.

This role will focus on assessing and challenging the security of iProov’s mobile SDKs, applications, and biometric identity flows, ensuring we remain resilient against increasingly sophisticated threats, including deepfakes, device compromise, and adversarial manipulation.

You will play a critical role in proactively identifying weaknesses, simulating real‑world attacks, and strengthening our ability to detect and respond to threats across mobile environments.

How you can make an impact
  • Design and execute Red Team operations targeting mobile applications, SDKs, and biometric identity flows across iOS and Android
  • Perform advanced mobile application penetration testing, including reverse engineering, runtime manipulation, and bypass techniques
  • Emulator and instrumentation attacks
  • Biometric spoofing and presentation attacks
  • Mobile API abuse and session manipulation
  • Identify vulnerabilities in mobile architectures, authentication flows, and client‑side controls
  • Conduct research into emerging mobile threat actor tactics, techniques, and procedures (TTPs), particularly in biometric and identity systems
  • Develop proof‑of‑concept exploits and tooling to replicate real‑world attack scenarios
  • Produce clear, actionable reports with risk‑ranked remediation guidance for engineering and product teams
  • Collaborate closely with mobile engineers, product, and security teams to translate findings into practical fixes
  • Provide code‑level and architectural guidance to improve mobile application security
  • Validate remediations and ensure vulnerabilities are effectively addressed
  • Contribute to improving detection capabilities within iProov’s security ecosystem (including iSOC)
  • Mentor engineers on secure mobile development practices and threat modelling
  • Ensure all activities align with rules of engagement, legal, and regulatory requirements
What we would like to see from you
  • 5+ years’ experience in Red Teaming, penetration testing, or mobile security research
  • Strong hands‑on expertise in mobile application security (iOS and/or Android)
  • Experience with:
    • Reverse engineering tools (e.g. Frida, Objection, Ghidra, Hopper, IDA Pro)
    • Mobile testing frameworks and interception tools (e.g. Burp Suite, mitmproxy)
    • Analysing mobile binaries (APK/IPA), obfuscation, and runtime protections
  • Deep understanding of:
    • Mobile OS internals (Android/iOS security models)
    • Secure storage, keychains/keystores, and cryptographic implementations
    • Authentication protocols and identity flows (OAuth, biometrics, session handling)
  • Experience identifying and exploiting:
    • Client‑side trust issues
    • Certificate pinning bypasses
    • Anti‑tampering and anti‑debugging controls
  • Ability to build or customise tooling and scripts for…
Note that applications are not being accepted from your jurisdiction for this job currently via this jobsite. Candidate preferences are the decision of the Employer or Recruiting Agent, and are controlled by them alone.
To Search, View & Apply for jobs on this site that accept applications from your location or country, tap here to make a Search:
 
 
 
Search for further Jobs Here:
(Try combinations for better Results! Or enter less keywords for broader Results)
Location
Increase/decrease your Search Radius (miles)
0
200
Filters
Education Level
Experience Level (years)
Posted in last:
Salary