MOMENTUS
모의면접
쿠팡 · Security & Privacy and Data Governance

Senior Staff Security Engineer, Mobile Security (Digital Trust)

#쿠팡 채용#쿠팡 데이터·AI 면접#데이터·AI 면접#쿠팡 iOS·안드로이드 면접#iOS·안드로이드 면접

이 공고, 이렇게 물어볼 겁니다

Q1
모바일 보안 위협을 식별하고 대응하는 방법에 대해 구체적으로 설명해주세요.
🎯 모바일 보안 위협에 대한 이해와 대응 능력을 평가
Q2
모바일 애플리케이션의 보안 취약점을 발견하고 해결하는 과정에서 어떤 방법론을 사용하시나요? 구체적인 사례를 하나 들어주세요.
🎯 보안 취약점 발견과 해결 능력을 평가
Q3
모바일 보안 아키텍처와 표준을 정의하고 구현하는 방법에 대해 설명해주세요. 특히, 애플리케이션 무결성과 기기 신뢰에 대한 접근법은 무엇인가요?
🎯 모바일 보안 아키텍처와 표준에 대한 이해를 평가
Q4
모바일 애플리케이션 보안 평가 프로그램을 구축하고 운영하는 방법에 대해 설명해주세요. 특히, 자동화와 엔지니어링 셀프서비스를 어떻게 활용하시나요?
🎯 모바일 애플리케이션 보안 평가 프로그램에 대한 이해를 평가
Q5
다른 조직과 협력하여 모바일 보안을 개선하는 방법에 대해 설명해주세요. 특히, 영향력과 리더십을 어떻게 발휘하시나요? 구체적인 사례를 하나 들어주세요.
🎯 모바일 보안 개선에 대한 협력과 리더십을 평가
질문만 읽으면 컨닝이에요. 소리 내어 답해보세요 — 어디서 틀어지는지 짚어드립니다.

공고 내용

Company Introduction

Job Overview

We are looking for an Mobile Security Specialist to establish and lead mobile security across the company, covering consumer-facing applications as well as seller, rider and logistics mobile products.

This will initially be a highly hands-on senior IC role. The person will be expected to understand the mobile threat landscape, identify systemic risks, build scalable security processes, and influence senior engineering leaders to improve the security posture of mobile applications across multiple organizations.

Key Responsibilities

Mobile Threat Landscape and Strategy

  • Build and maintain a comprehensive view of mobile threats, attack paths and systemic control gaps across the company's mobile estate.
  • Define the target mobile security posture, priorities and longer-term roadmap.
  • Track relevant changes in iOS, Android and mobile exploitation techniques and translate them into concrete security requirements.

Security Architecture and Standards

  • Define practical security standards for iOS and Android, including application integrity, device trust, authentication, credential protection, local data, WebViews, deep links and third-party SDKs.
  • Identify recurring weaknesses across applications and drive platform-level solutions rather than repeated app-specific fixes.
  • Provide senior technical judgement on complex vulnerabilities, incidents and architectural decisions.

Security Assessment and Review Program

  • Build a repeatable, evidence-based process for assessing mobile application security.
  • Own and run the mobile security review program, including methodology, prioritization, acceptance criteria and escalation.
  • Improve the program over time through automation, engineering self-service and better measurement of security coverage and residual risk.

Cross-Organization Influence

  • Act as an agent of change for mobile security across engineering teams.
  • Work directly with Senior Directors, Principal Engineers and senior mobile leaders to influence architecture, engineering practices and investment priorities.
  • Drive security improvements across organizational boundaries without relying on formal authority.

Function Building and Leadership

  • Start as a deeply hands-on technical leader, working directly with applications, code, devices and security controls where required.
  • Establish the operating model for mobile security and identify where additional specialist capability is needed.
  • Over time, help build and manage a small specialist mobile security team.

Qualifications

  • Deep hands-on mobile security expertise across both iOS and Android, ideally developed in a large-scale consumer technology environment.
  • Strong practical experience in areas such as mobile application security, reverse engineering, app integrity, device trust, authentication, secure storage, IPC, WebViews, deep links, networking and abuse resistance.
  • Experience building or running a mobile security assessment or review program, rather than only performing individual reviews.
  • Strong software engineering background, ideally including production mobile development or development of mobile security tooling.
  • Demonstrated ability to identify systemic issues across multiple applications and translate them into reusable platform controls, standards or engineering frameworks.
  • Proven experience influencing senior engineers and engineering leaders across organizational boundaries.
  • Experience with product security architecture and threat modelling at significant scale.
  • Evidence of driving changes in engineering practice, not only identifying security issues.
  • Prior people management is useful but not required. Strong technical leadership and the ability to grow into man

회사마다 모든 공고에 똑같이 붙는 안내 문구(지원 절차·서류 반환·개인정보 고지 1,252자)는 접어뒀어요. 원문에서 전체 보기 →

원문에서 전체 공고 보기 →

이 회사 다른 포지션 · 비슷한 공고