Logo for Zimperium

Detection Researcher (Coding Focused)

Role overview

Qualifications

  • Proven ability to collaborate effectively within a team environment
  • Proficiency in reverse engineering using tools such as IDA Pro, Ghidra, or equivalent
  • Solid programming experience in C, C++, Python and Java
  • Good knowledge of the ELF and MachO file formats

Responsibilities

  • Research and analyze advanced detection bypass techniques to assess threats to our detection systems
  • Evaluate and reverse-engineer tools and frameworks used to attack or evade our products
  • Lead and participate in structured brainstorming sessions to generate novel detection ideas
  • Help design, prototype, and implement new detection techniques and algorithms for different operating systems

About the company

Zimperium logo

Zimperium

Cybersecurity

Zimperium enables companies to realize the full potential of mobile-powered business by activating a Mobile-First Security Strategy. Built for the demands of mobile business, Zimperium’s Mobile-First Security Platform delivers unmatched security across both applications and devices. Only Zimperium delivers autonomous mobile security that dynamically adapts to changing environments so companies can securely capitalize on the new world of mobile-powered opportunities. Zimperium offers the only platform for both mobile device and mobile application security. The Zimperium Mobile-First Security Platform consists of the following solutions: The MAPS solution helps enterprises build compliant, secure, and resilient mobile applications. It has three key capabilities: Mobile App Security Testing (MAST) to help identify mobile-specific exploitable vulnerabilities. Application Shielding to secure app code, data, and cryptographic keys from tampering and abuse. Runtime Protection to protect the app on-device from malware, phishing, compromised devices, and rogue networks. MAPS is the only unified solution that offers comprehensive in-app protection and threat visibility across the entire lifecycle of an application. Zimperium Mobile Threat Defense (MTD) -formerly known as zIPS- is an on-device, privacy-first application that provides comprehensive mobile security to the enterprise. It is designed to protect an employee’s device and information from device, network, app, and phishing attacks. Zimperium’s Dynamic Detection Engine, enhanced by machine learning and continuous research, is capable of scaling with the needs of the modern workforce, securing devices against the most advanced threats. Zimperium enables enterprises to support and secure BYO and corporate-owned devices without sacrificing employees' privacy or personal data.

Company details

Company typeSME
IndustryCybersecurity
Company size201 - 500

Your match analysis

See how your profile stacks up against this role.

We compared the job requirements to your profile to show where you're strong and where you fall short.

Job description

Zimperium® is the world leader in mobile security, purpose-built to protect the modern mobile enterprise. Trusted by leading organizations and governments, our AI-driven platform delivers real-time, on-device protection for mobile applications and devices. We help organizations stay ahead with proactive defense against evolving threats—including mobile-targeted phishing (mishing), malware, app vulnerabilities, and zero-day exploits. Our mission is to empower organizations to operate securely and confidently in today’s dynamic digital environment.

Location: Worldwide with preference for candidates in Europe
 
 
Zimperium® is an industry leader in enterprise mobile security, being the first and only company to provide a complete mobile threat defense system that offers real-time, on device world-class protection against both known and unknown next generation of advanced mobile cyberattacks and malware. Our MTD and award-winning machine learning-based engine protects against device, network, phishing and application attacks for IOS, Android and Windows devices, using a non-intrusive approach to always protect privacy of users.
 
We are currently looking for a Detection Researcher. This role involves researching, developing, and maintaining advanced detection and analysis capabilities to counter complex tampering and evasion techniques. The successful candidate will design new tools, improve existing ones, perform thorough code reviews, and help define and uphold high coding standards across the team. Strong programming skills and a collaborative mindset are essential. Experience with the LLVM framework and knowledge of code obfuscation and de-obfuscation techniques are considered strong assets.

Key Responsibilities
  • Research and analyze advanced detection bypass techniques (e.g., rooting, hooking, and runtime application/system tampering) to assess threats to our detection systems.
  • Evaluate and reverse-engineer tools and frameworks used to attack or evade our products, documenting findings and attack vectors.
  • Lead and participate in structured brainstorming sessions to generate novel detection ideas and countermeasures.
  • Help design, prototype, and implement new detection techniques and algorithms for different operating systems.
  • Help develop, maintain, and improve internal tooling and automation to accelerate analysis, triage, and detection development.
  • Perform and contribute to internal penetration testing and adversary emulation of newly introduced security features to validate effectiveness.
  • Conduct thorough code reviews and technical reviews of detection-related contributions to ensure quality, maintainability, and correctness.

  • Required Skills & Experience
  • Proven ability to collaborate effectively within a team environment, including forming and leading focused sub-groups to deliver specific project features or research objectives.
  • Proficiency in reverse engineering using tools such as IDA Pro, Ghidra, or equivalent, including experience writing scripts, leveraging their SDKs, and isolating and reporting technical issues.
  • Solid programming experience in C, C++, Python and Java, with the ability to produce efficient, maintainable, and secure code.
  • Good knowledge of the ELF and MachO file formats and a general good understanding on how to consult the official documentation.
  • Familiarity with the LLVM framework is considered a plus.
  • Knowledge of code obfuscation and de-obfuscation techniques, along with awareness of community tools and methodologies in this area, is a valuable asset.
  • Zimperium is an Equal Opportunity employer. All qualified applicants will receive consideration for employment without regard to race, color, religion, sex including sexual orientation and gender identity, national origin, disability, protected veteran status, or any other characteristic protected by applicable federal, state, or local law.

    Apply once. Then go straight to the hiring manager.

    After you apply, unlock the direct contact details of the people who actually make the call. A quick follow-up makes you 5x more likely to land an interview.

    MR

    Marcus Rivera

    Chief Revenue Officer

    m.rivera@company.com
    linkedin.com/in/marcusrivera
    Unlocked after you apply
    ·

    Researcher Related jobs

    Other jobs at Zimperium

    Premium

    Reach out to the hiring manager directly.

    Gain access to the contact details of the hiring managers who actually decide, and reach out to network with them directly. That, plus more when you upgrade:

    • Full match report with fit score and gaps
    • Career diagnostics on how recruiters read you
    • Curated company matches and warm intros
    • 48h early access to new roles

    Cancel anytime.