About The Position MWDN is an international recruitment and outstaffing company with 23+ years of experience connecting exceptional tech talent with leading companies across Israel, the USA, Great Britain, and Western Europe. In this role, MWDN acts as the recruitment partner, and the selected candidate will work directly with the client’s team on their product in an international environment. Why does MWDN rock? Here’s what you can expect when you join MWDN: * Security: We carefully vet our clients to minimize risks and ensure reliability and timely payments—no fraud or unpleasant surprises. * Career support: If a project isn’t the right fit, we support you and actively help find new opportunities that match your skills and career goals. * Legal assistance: We provide guidance on legal matters, including opening and managing your independent contractor or sole proprietorship status, taxes, and related processes. * Professional development: We offer English courses and professional growth opportunities, as well as team-building events.
Why choose us? MWDN is ranked among the top 5 IT employers in our region according to DOU. We take pride in our transparency and strong commitment to our team. Curious to learn more? See what our employees say about working with us on DOU. What is your new project? * Domain: Identity and Access Management (IAM) software * Location: Israel * Company size: 200-500 employees * Founded in: 2014
What is your new project? Are you ready to join a game-changing force in identity and access management?
Our client is revolutionizing the way enterprises protect user identities in a passwordless world. You’ll be working at the intersection of cutting-edge biometrics, behavioral analytics, and next-gen identity orchestration — helping the world’s leading brands safeguard millions of users. Backed by more than 100 M Series A — one of the largest in cybersecurity history — and trusted by major global enterprises, they offer the agility of an innovator with the strength and backing of an industry leader.
Ready to take part in redefining IAM for the modern era? Let’s talk.
What makes you a great fit * 3+ years of hands-on experience in security research, mobile security, browser research, fraud research, detection research, reverse engineering, or a related technical role. * Experience with web browsers, mobile browsers, WebViews, browser APIs, JavaScript runtime behavior, browser automation, fingerprinting, client-side web security, and low-level browser technologies. * Familiarity with the architecture or codebase of modern open-source browsers and rendering engines, such as Chromium, WebKit, Blink, or Gecko, with the ability to reason about how browser internals can expose new security and fraud signals. * Experience with native Android and/or iOS applications, mobile OS behavior, app instrumentation, emulators, device spoofing, mobile automation, mobile security, and low-level platform APIs. * Attacker mindset and practical understanding of how malicious actors attempt to bypass detection using automation, AI agents, spoofing, and anti-detection techniques. * Ability to identify subtle technical signals and turn them into practical detection or data collection opportunities. * Experience designing technical experiments and validating research hypotheses. * Experience with one or more SDK development languages and environments, such as TypeScript/JavaScript for web, Kotlin/Java for Android, or Swift/Objective-C for iOS, with the ability to understand implementation constraints and collaborate effectively with SDK engineering teams. * Scripting ability, preferably in Python, for building research tools, automation, and analysis workflows. * Ability to work independently on ambiguous problems and communicate findings clearly to engineering, product, and research stakeholders.
Advantages * Experience with Web SDKs, Mobile SDKs, client-side telemetry, device intelligence, behavioral signals, AI agent detection, or fraud detection products. * Experience researching bots, credential stuffing, scraping, headless browsers, AI-assisted automation, app cloning, SDK abuse, phishing kits, malware, or * anti-detection frameworks. * Experience with reverse engineering Android or iOS applications. * Familiarity with detection quality measurement, feature evaluation, false-positive analysis, production monitoring, or machine learning concepts. * Bachelor’s degree in Computer Science, Cybersecurity, Data Science, or a related field— or equivalent hands-on experience.
Your day-to-day in this position * Research browser, WebView, Android, and iOS environments from an attacker’s perspective. * Identify new security signals, behavioral indicators, and technical patterns that can improve fraud, abuse, automation, and AI agent detection. * Investigate attacker techniques involving bots, browser automation, AI agents, emulators, device spoofing, hooking, instrumentation, remote access tools, and * anti-detection methods. * Design and run experiments to compare legitimate, automated, AI-assisted, and manipulated environments. * Evaluate proposed signals for reliability, stability, spoofability, privacy sensitivity, performance impact, and production feasibility. * Translate research findings into clear SDK feature requirements for web and mobile data collection. * Build internal tools, scripts, and lab environments to support signal research and validation. * Collaborate with SDK, engineering, product, and detection teams to move research from hypothesis to production.
Our next steps ✅ Intro call with a Recruiter — ✅ Intro call with client — ✅ Technical interview — ✅ CTO interview — ✅ HR interview — ✅ Reference check — ✅ Offer