Nord Security
Application Security Engineer | Mid-Senior | iOS
Remote role where the employee must remain based in a particular country.
Poland only
Employer listed it 2 weeks ago · Found 3h ago
Been open since 2 weeks ago, still being checked, but it has been live a while.
Salary
$17,200 to $30,000 per month
Location
Poland only
Timezone
CET ±2
Contract
Full-time
Experience
Senior
Category
Software
Published by the employer
Remote flexibility
Work from home
This is a remote role, but the employee must be based in Poland. It is work from home rather than work from anywhere.
What the employer says
- Source listing states candidate location: "Poland, Remote"
- Job description states: "Work from anywhere"
What Nomaders makes of it
- Payroll and tax are likely handled in that country only
The quotes above are the employer's own words; the reading is ours. Always check the original listing and employment terms before working from another country.
About the role
At Nord Security, we’re creating a safer cyber future.
We help people and businesses take back control of their online security, privacy, and data. From VPNs to password managers, threat intelligence to eSIMs for travel—our teams turn complex problems into solutions trusted by millions worldwide.
Life is online. In this role, you’ll help people own it.
Main Responsibilities
Conduct security reviews of application designs, source code, and third-party libraries/SDKs;
Perform regular application vulnerability assessments using both automated tools and manual testing techniques (e.g., SAST, DAST, SCA, penetration testing);
Perform end-to-end security assessments of iOS applications, covering static and dynamic analysis, runtime instrumentation
Collaborate with development teams to design secure architectures and implement security controls;
Help maintain security tools, scripts, and processes to support secure development;
Stay current with industry trends, zero-day vulnerabilities, platform security changes in new iOS releases, and best practices in application security;
Develop scripts, security automation tools and instrumentation harnesses to enhance mobile application security testing processes;
Design and deliver training for security engineering awareness & adoption;
Actively look for internal security gaps within our products
Ensure mobile applications are sufficiently tested and support internal and external audits, including MASVS-aligned assessments.
Core Requirements
Proven experience in mobile application security assessment planning, testing, methodologies, and vulnerability reporting, with a focus on iOS;
Strong understanding of secure coding practices;
Ability to perform manual security code audit;
Proficiency in at least one mobile/native programming language (Swift, Objective-C), and comfort reading C/C++ where it appears in dependencies;
Practical knowledge of the OWASP MASVS and MASTG, and the ability to plan and execute assessments against them;
Solid understanding of the iOS security model: sandboxing, entitlements, code signing, Keychain, Data Protection classes, App Transport Security, IPC and inter-app communication (URL schemes, universal links, app extensions, app groups);
Hands-on experience with dynamic instrumentation and mobile testing tooling such as Frida, Objection, MobSF, Burp Suite, mitmproxy and class-dump/otool-style binary inspection;
Experience bypassing client-side controls such as certificate pinning, jailbreak detection and anti-tampering, and assessing their resilience;
Solid understanding of networking protocols such as TCP, UDP and the HTTP protocol, including TLS and traffic interception on mobile devices;
Requirements
- ·Proven experience in mobile application security assessment planning, testing, methodologies, and vulnerability reporting, with a focus on iOS;
- ·Strong understanding of secure coding practices;
- ·Ability to perform manual security code audit;
- ·Proficiency in at least one mobile/native programming language (Swift, Objective-C), and comfort reading C/C++ where it appears in dependencies;
- ·Practical knowledge of the OWASP MASVS and MASTG, and the ability to plan and execute assessments against them;
Benefits
- ·Sharpen your edge: training, mentorship, and room to grow — always.
- ·Take the time you need: extra vacation days, sick days, and time off when life calls.
- ·Get premium healthcare: private health insurance in Lithuania and Poland — fully covered.
- ·Protect your peace: enjoy free subscriptions to Calm, Headspace, and Mindletic, and our own resilience and mindfulness trainings.
How to apply
- 1Check the flexibility label above, work from home, matches where you plan to live and work.
- 2Tailor your CV to the role at Nord Security, mentioning your remote working experience and working hours (CET ±2).
- 3Apply directly on the employer's careers page using the button below. Nomaders never handles your application.
Found 3h ago. Last checked today. Always confirm the details on the original posting, salary and location can change after publication.
Listing sourced from Company boards.
Similar roles
Other open software roles with comparable remote rules.
Free to apply, no account needed.
$17,200 to $30,000 per month · You'll be taken to the employer's careers page.