Location: Annapolis Junction, MD, US
Job Number: R0000829
Share job via:
Location: Annapolis Junction, MD, US
Job Number: R0000829
Share job via:
Key Role:
Perform security testing on iOS and Android mobile applications for smart phones and tablets using a variety of custom and third party mobile security testing tools. Lead a small team of security analysts to drive mobile application security assessments for the premier enterprise provider within the DoD. Apply knowledge of USG security requirements to identify vulnerabilities and risk mitigations and document all findings in security test reports.
Basic Qualifications:
-3+ years of experience with software development and testing life cycle processes
-2+ years of experience with security and network analysis tools, including Wireshark or Burp Suite
-2+ years of experience with conducting statics and dynamic testing on mobile and desktop applications
-Experience with mobile end-point security, including various attack vectors, such as network, device, and apps
-Ability to monitor and capture mobile network traffic within a standardized process
-Ability to determine and document mobile application dependencies, including infrastructure, accounts, and test scenarios
-Secret clearance
-BA or BS degree
Additional Qualifications:
-Experience with the NIAP Protection Profile for application software and the application of it to mobile applications
-Experience with previous DoD guidance, including the Mobile App Security Requirements Guide (SRG)
-Experience with identifying and mitigating OWASP Mobile Top 10
-Experience with black box testing
-Experience with mobile device management and enterprise mobile management infrastructure
-Experience with mobile app and mobile OS penetration testing
-Experience with Mobile Application Management (MAM), Mobile Device Management (MDM), and Mobile Application Store (MAS) controls, security, and compliance and the distribution and monitoring of mobile applications and mobile devices
-Ability to present to senior–level clients
-Ability to reverse engineer binaries a plus
-Possession of excellent oral and written communication skills
-Security+ Certification a plus
Clearance:
Applicants selected will be subject to a security investigation and may need to meet eligibility requirements for access to classified information; Secret clearance is required.
We’re an EOE that empowers our people—no matter their race, color, religion, sex, gender identity, sexual orientation, national origin, disability, veteran status, or other protected characteristic—to fearlessly drive change.
CMDNot ready to apply? Join our talent community and sign up for job alerts.
At Booz Allen, we harness our collective ingenuity to solve our clients’ toughest management and technology problems. We work with governments, Fortune 500 corporations, and not-for-profits around the globe, in industries ranging from defense to health, energy to international development. We believe there is no product, code, or strategy that can create progress—only people can. That’s why for more than 100 years we’ve empowered our team: over 24,000 dreamers, drivers, and doers who work together to change the world.
If you are an individual with a disability and would like to request a reasonable workplace accommodation for any part of our employment process, please send an email to disability-accommodations@bah.com. Please indicate the specifics of the assistance needed. This option is reserved only for individuals who are requesting a reasonable workplace accommodation. It is not intended for other purposes or inquiries. We’re an EOE that empowers our people no matter their race, color, religion, sex, gender identity, sexual orientation, national origin, disability, or veteran status or other protected characteristic to fearlessly drive change.