We're looking for a driven and skilled Mobile DevSecOps Engineer to take end-to-end ownership of mobile CI/CD, security, and release processes. You'll play a key role in deploying secure, high- performance Android and iOs apps in regulated environments like Fintech and Payments, ensuring
compliance and automation across every release.
Responsibilities
- Own and manage mobile app releases to the Google Play Store and Apple App Store.
- Set up and maintain robust CI/CD pipelines for development, staging, and production (e.g., GitHub Actions, Bitrise, Fastlane).
- Monitor app performance using tools like Firebase, Crashlytics, and Sentry, and respond to incidents quickly and effectively.
- Implement and enforce mobile app security best practices, including secure code signing, API protection, secrets management, and certificate handling
- Automate mobile release workflows to improve consistency and reduce human error.
- Ensure compliance with Google/Apple platform policies, data privacy regulations, and vulnerability management standards.
- Conduct and support mobile application security reviews (e.g., static analysis, secure coding).
- Collaborate with product, QA, and development teams to ensure smooth, secure release cycles.
- Apply DevSecOps principles by integrating security checks (e.g., static code analysis, secrets scanning) into CI/CD pipelines.
- Support ethical hacking, security testing, and threat modeling to proactively identify and address vulnerabilities in mobile and backend systems.
- Participate in internal or external CTFs, mobile security research, or industry-aligned pentesting challenges to stay up to date with emerging threats.
- Support infrastructure needs using tools like Docker, AWS, and Firebase Functions.
- Create thorough documentation and contribute to internal knowledge-sharing on mobile security and deployment practices.
Qualifications
- Minimum of 2 years of experience managing mobile app releases for both Android and iOS platforms.
- Proficiency with App Store Connect and Google Play Console.
- Strong hands-on experience with tools such as Fastlane, Bitrise, GitHub Actions, Firebase, Crashlytics, and TestFlight.
- Experience in managing development, staging, and production environments using CI/CD pipelines.
- Solid understanding of mobile app architecture, authentication flows, and backend integrations.
- Familiarity with secure development workflows and security scanning tools (e.g., OWASP ZAP, Git Secrets, dependency scanners).
- Strong problem-solving and incident response skills.
- Comfortable working in agile, cross-functional, and remote teams.
Additional Skills
- Experience working in Fintech, Payments, or other secure mobile environments.
- Interest or experience in mobile app security testing,
- Ethical hacking, or finding vulnerabilities.
- Basic understanding of DevSecOps, including secure Cl/CD and cloud-based tools.
- Familiar with tools like OWASP ZAP, Git Secrets, or other security scanners.
- Participated in CT events, bug bounty
- programs, or security competitions.
- Motivated to learn, work independently, and grow in mobile security and DevSecOps.
Generating Apply Link...



