The opportunity
We are looking for a Sr. Full Stack Application Security Engineer with deep expertise in mobile application security to join our Product Security team.
What you'll do
Build and improve security capabilities, automation, and guardrails for: mobile applications and backend/API services
Perform application or API/backend penetration testing
Identify, triage, and help remediate vulnerabilities across Chime products
Partner closely with engineering and product teams to embed security into the: development lifecycle across mobile apps, APIs, and backend services
Perform architecture and code reviews across the stack (iOS/Android, APIs,: backend) with a focus on secure data storage, authentication, authorization, secure communication, and session/token handling
Leverage AI to accelerate security workflows (e.g., code review support,: triage, threat modeling), and partner with teams building AI-enabled features to define and implement production-grade AI security controls
What they're looking for
- + years of experience in application security, with strong hands-on: experience across both mobile and backend systems
- Hands on experience securing iOS and Android applications in production environments
- Strong understanding of mobile threat models and common attack techniques
- Experience with mobile security testing techniques, including static and dynamic analysis