Shopee
Mobile Security Engineer
Jakarta, Indonesia· ONSITE
About the role
You review mobile applications before release: how data is stored on the device, how the app communicates with its backend, and whether the client can be modified to reach functionality it should not. You also test the APIs the app depends on, since that is where most exploitable issues are found. Part of the role is advising the mobile teams on which protections are worth their engineering cost.
What you will do
- Assess Android and iOS builds before release
- Test the API surface behind the app, not just the app
- Advise which protections justify their engineering cost
What they ask for
- Mobile reverse engineering with Frida or equivalent
- Understands platform security models rather than checklists
- Reads Java or Kotlin and Swift or Objective-C
Nice to have
- Published mobile research
- Payments or banking apps
What applying with Rooted means
This role accepts applications with Rooted context. Instead of sending only a resume, you can attach a verifiable credential with your proofs, rank, and technical evidence.
Your application includes your Rooted credential: rank, verified proofs, and supporting evidence.
You can read this role without an account. To apply you need a Rooted credential.
This role is curated by Rooted. Rooted is not the hiring company unless explicitly stated. The hiring company is Shopee. Confirm the final details with the original source or during the application process.
Posted 2026-08-13