Make an impact
of your own.

Mobile Security Engineer

Yoco

Yoco

Amsterdam, Netherlands
Posted on Jun 24, 2023
Yoco is on a mission to help the businesses of tomorrow get started, and get paid – be a part of the team that changes financial services in Africa. Curious. Data-driven. Purposeful. Sound like you? It sounds a lot like us too.We are a fast-growing African technology company made up of over 350 team members globally. All with a bias for boldness, and a passion for simple, progressive solutions.Founded in 2015, Yoco is now the payments provider for over 200 000 business owners and processes over $2bn annually. Your home team at Yoco:The security team at Yoco forms part of our rapidly growing Cloud Engineering & ICT function and is responsible for infrastructure, cloud, platform, application and security operations. Working closely with the DevOps team, other foundation teams, our IT team and product delivery teams you’d ensure that our mobile systems, internal IT systems, and external-facing APIs are following best practices regarding security and remain secure. Similarly to the other teams which make up the function, one of the Security team’s key goals is to enable and contribute to a solid foundation upon which all our products and services can be built. The teams strive to not be blockers and provide as much autonomy as possible to the areas they support and work alongside.Yoco is operating as a distributed company with growing global talent hubs and will accept applications from Africa, Europe, UK and the Middle East. ROLE | WHAT YOU WILL BE DOING? Working at one of the fastest-growing fintech’s in Africa means you’ll be solving some unique challenges that we’re faced with. Mobile Security Engineers are responsible for the continuous assessment of our systems, and recommend or provide solutions to address current and future threats relating to our mobile environment.Importantly, this role will engage closely with the teams within our mobile engineering environment and make recommendations on security controls, frameworks, tooling and secure coding best practice. Security concerns are ever-evolving, making the security team an extremely dynamic environment to work in. Key responsibilities:
  • You'll be hands-on with both iOS and Android applications
  • Secure and harden our hardware
  • Ensuring our terminal landscape is secure and safe
  • You'll be helping to develop new features as well as securing existing ones
  • Review and make recommendations on areas not limited to but including application security, secrets management, anti-scam/phishing, and CI/CD pipelines
  • Work closely with third-party security and auditing firms and help implement and recommend security controls to the mobile team
  • Perform product security reviews on existing and new features being built by the mobile team
  • Ensure identified security risks are remediated in line with internal SLA and industry best practice.
IDEAL CANDIDATE | WHAT WE ARE LOOKING FOR?
  • 3+ years of full-time security engineering experience with iOS and/or Android
  • Experience with cardholder or terminal device security
  • Experience with mobile security, threat modeling, secure coding, authentication, cryptography, reverse engineering and network security
  • Strong communication and teamwork skills, you should be able to guide others in the team through security best practices and exercises
  • Offensive knowledge in relation to mobile security attack vectors
  • Is passionate about mobile security and has an understanding of how mobile security differs from application security
  • Experience with implementing security controls on Android and iOS devices
  • Experience with CI/CD tooling & dependency management as it relates to security
Beneficial:
  • OSCP
  • Focus on Android security
THE YOCO FORMULAThe Yoco formula is a validated approach to work and a set of behaviours that create maximum value for our customers and help us grow. Core Values - Our way of working to create value & grow
  • Stay Connected
  • Make Space to Explore
  • Keep it Simple
  • Master your Craft
Core Behaviours - How we show up, engage & treat each other
  • Get to know each other personally
  • Say what you think
  • Be courageous and focus forward
  • Don’t let ego get in the way
To support this, we have built a role-based organisation where every individual is given the space to focus and develop their innate strengths. Everyone at Yoco has the opportunity to lead a project and become a specialist, enabling flexibility, collaboration and accountability at all levels. You will be working with a diverse, motivated and skilled team who will continuously stretch you as an individual. To learn more about our culture, subscribe to our Exposure Gallery. Join us on a meaningful journey at Yoco, and help enable our merchants to thrive through Open Commerce!Yoco is a growing African Fintech, enabling people to thrive through open commerce.Founded in 2015, Yoco now processes over US$2 billion annually, and we’re the payments provider for over 200 000 self-employed.By 2024 we aim to serve 3 million entrepreneurs, becoming the leading Open Commerce ecosystem for small business, across Africa and the Middle East.