
Sr.Client Security Engineer
Job description
About the role
Sr. Client Security Engineer, China
Scopely's security organization in China is seeking a Sr. Client Security Engineer to establish a dedicated client security function. This role focuses on designing and deploying client and server protections for large-scale mobile games, disrupting sophisticated cheating ecosystems, and preserving fair play for millions of players. You will define technical direction, set operational standards, and own end-to-end security workflows for the China market.
This position is based in Shanghai, China, as a full-time engagement. The compensation for this role is 350000 CNY per year. The role requires five days per week in the office and readiness for relocation to Tokyo.
What You Will Do
You will architect and implement client-side protections that defend against third-party cheating tools, modified clients, hooking frameworks, and emulators on Android and iOS. Your work will center on designing, implementing, and maintaining robust client-side detections integrated into Scopely's anti-cheat platforms. You will define and evolve obfuscation and hardening strategies for China mobile builds, including binary protection, anti-debugging, anti-tamper, and integrity verification mechanisms. You will also evaluate and integrate third-party hardening vendors where appropriate to strengthen the overall security posture.
A core responsibility will be building and maintaining comprehensive coverage for the diverse China mobile ecosystem. This includes supporting distribution across multiple Android app stores and OEM devices, addressing varied OS and ROM variants, and accounting for rooted or jailbroken environments. You will also account for local PC and emulator-based cheating patterns. You will contribute hands-on code in C++, Java/Kotlin, and Objective-C/Swift, focusing on security-sensitive paths such as detection logic, integrity checks, and secure client-server protocols.
You will analyze large-scale telemetry and anti-abuse data to tune detection rules, reduce false positives, and improve detection accuracy across device and OS variations. You will champion the integration of client-side detections into internal platforms, ensuring that findings are actionable and scalable across engineering teams. You will also direct small engineering workflows in China, including intake reviews, technical guidance, and establishing operational best practices for client security. Partnering with vendors will be essential to evaluate, integrate, and maintain third-party hardening tools while balancing performance and stability for mobile games.
What You Will Need
You must bring experience in mobile security, game anti-cheat, or client-side security engineering, with a focus on native Android or iOS development. You need direct reverse engineering skills and hands-on experience with hooking and instrumentation frameworks. Deep proficiency in Android and iOS internals, common attack vectors, and mobile security threats is required.
You must demonstrate strong proficiency in C/C++ and at least one mobile native language, such as Java/Kotlin for Android or Objective-C/Swift for iOS, with a record of shipping production code in large applications. A proven history of designing and shipping client-side anti-cheat or integrity systems that integrate with server-side enforcement or analytics pipelines is essential. Prior experience technically directing a small engineering team is required. You must be comfortable working with large-scale telemetry, using data to refine detections, and maintaining low false positive rates.
Professional proficiency in both Mandarin and English, in written and spoken communication, is required. The role requires five days per week in the office and relocation to Tokyo.
Nice to Have
A Bachelor's or Master's degree in Computer Science or Software Engineering, or equivalent experience, is a plus. Background in mobile game security, especially within the Chinese market, is valuable. Experience shipping mobile games across varied Chinese app stores, OEM devices, and emulator usage patterns is a strong advantage.
Contributions to CTF exercises, CVE publishing, and client obfuscation pipelines, including vendor evaluation and integration, are viewed favorably. Experience with performance and stability tradeoffs in client hardening workflows is also beneficial. Familiarity with large-scale cloud environments, streaming data processing, and monitoring or alerting systems is a plus.
Tools and Ecosystem
This role operates within a portfolio of major live titles, including Scopely's MONOPOLY GO!, Pokémon GO, Stumble Guys, Star Trek Fleet Command, MARVEL Strike Force, WWE Champions, the Scrabble franchise, and Yahtzee With Buddie. You will work closely with product and engineering teams across these titles to ensure security controls keep pace with evolving threats.
Practical Notes
Please This role represents a foundational duty to protect player fairness and secure the integrity of Scopely's games in China.
What you'll do
- Meet the bar Client Security Engineer.