{"id":1266286,"url":"https://alion.io/job/iitk-windows-security-research-engineer","title":"Windows Security Research Engineer","company":{"id":1764795,"name":"IIT Kanpur","domain":"iitk.ac.in","url":"https://alion.io/company/iitk","size_band":null,"is_staffing_agency":false,"employer_type":"direct","is_intermediary":false,"listed_via":null,"ats_vendor":null,"truth_index":null},"role":"AI/ML","role_family":"AI/ML","seniority":"junior","employment_type":null,"work_mode":"on_site","remote_scope":null,"remote_scope_basis":null,"remote_working_hours":null,"hiring_geo_confidence":"structured","locations":["Delhi, India"],"countries":["IN"],"hiring_countries":[],"hiring_countries_total":0,"salary":null,"salary_estimate":{"min_usd":12500,"max_usd":33000,"period":"year","method":"role_seniority_country_remote_cell","sample_n":11},"experience_years_min":2,"visa_sponsorship":false,"relocation_package":false,"has_equity":false,"technologies":[{"name":"C++","optional":false},{"name":"CVE","optional":false},{"name":"Ghidra","optional":false},{"name":"IDA Pro","optional":false},{"name":"Red Teaming","optional":false},{"name":"WinDbg","optional":false},{"name":"Windows","optional":false},{"name":"x64dbg","optional":false},{"name":"Assembly","optional":true},{"name":"Threat Modeling","optional":true}],"status":"live","first_seen_at":"2026-09-07T05:18:21Z","employer_posted_date":null,"last_verified_at":"2026-09-07T05:18:21Z","board_verified":false,"closed_at":null,"days_open":24,"trust":{"level":"not_scored","repost_count":null,"flags":[],"days_open":24},"description":"Description :\n\nWe are seeking a highly skilled Windows Security Engineer to join our advanced offensive security research team.\n\nThe ideal candidate will have deep expertise in Windows internals, strong C/C++ development skills, and handson experience conducting lowlevel attack research, kernel exploitation, and evasion of modern Windows defenses.\n\nThis role focuses on adversary simulation, Windows kernel attack surface research, and offensive tooling development to assess and improve the resilience of enterprise Windows environments.\n\nResponsibilities :\n\nOffensive Security Research & Exploitation :\n\n- Research historical and emerging Windows vulnerabilities (CVE analysis, exploitability assessment)\n\n- Analyze Windows kernel attack surfaces including :\n\ni. System calls\n\nii. Drivers\n\niii. Object manager\n\niv. Memory manager\n\n- Develop proofofconcept exploits for Windows kernel and privileged components (controlled research environment)\n\n- Study and bypass modern Windows exploit mitigations (DEP, ASLR, CFG, KASLR)\n\n- Research historical and emerging Windows vulnerabilities (CVE analysis, exploitability assessment)\n\n- Analyze Windows kernel attack surfaces including :\n\ni. System calls\n\nii. Drivers\n\niii. Object manager\n\niv. Memory manager\n\n- Develop proofofconcept exploits for Windows kernel and privileged components (controlled research environment)\n\n- Study and bypass modern Windows exploit mitigations (DEP, ASLR, CFG, KASLR)\n\nKernel & Low-Level Tooling :\n\n- Build lowlevel tooling in C/C++ for :\n\ni. Privilege escalation\n\nii. Kernel callback abuse\n\niii. Token manipulation\n\n- Develop usermode to kernelmode interaction tools using IOCTL interfaces\n\n- Build lowlevel tooling in C/C++ for :\n\ni. Privilege escalation\n\nii. Kernel callback abuse\n\niii. Token manipulation\n\n- Develop usermode to kernelmode interaction tools using IOCTL interfaces\n\nEvasion & Defense Bypass Research :\n\n- Research and simulate EDR / AV evasion techniques\n\n- Analyze and bypass :\n\ni. PatchGuard (Kernel Patch Protection)\n\nii. Driver Signature Enforcement (DSE)\n\niii. AMSI and ETWbased detections\n\n- Research and simulate EDR / AV evasion techniques\n\n- Analyze and bypass :\n\ni. PatchGuard (Kernel Patch Protection)\n\nii. Driver Signature Enforcement (DSE)\n\niii. AMSI and ETWbased detections\n\nAdversary Simulation & Red Team Operations :\n\n- Simulate advanced persistent threat (APT) techniques targeting Windows environments\n\n- Conduct privilege escalation and postexploitation research on Windows systems\n\n- Emulate realworld attack chains from userland to kernel\n\nDocumentation & Reporting :\n\n- Document vulnerabilities, exploitation paths, and attack methodologies clearly\n\n- Produce technical reports for internal stakeholders and leadership\n\n- Contribute to internal red team playbooks and attack frameworks\n\nEligibility :\n\nBachelor's degree in Computer Science, Cybersecurity, or related field\n\nEquivalent handson offensive security experience will be considered\n\nTechnical Skills :\n\nWindows Internals :\n\n- Windows kernel architecture\n\n- Process, thread, and token internals\n\n- Virtual memory management\n\n- System Service Descriptor Table (SSDT) concepts\n\nProgramming :\n\n- Proficiency in C and C++ (kernelmode and usermode)\n\n- Experience developing Windows drivers and lowlevel tools\n\n- Familiarity with inline assembly and reverse engineering concepts\n\nOffensive Security Experience :\n\n- Experience with :\n\ni. Windows vulnerability research and exploit development\n\nii. Privilege escalation techniques\n\niii. Kernel exploitation fundamentals\n\n- Strong understanding of :\n\ni. Windows security boundaries\n\nii. Attack surface reduction strategies\n\niii. Red team tradecraft at OS level\n\n- Experience with :\n\ni. Windows vulnerability research and exploit development\n\nii. Privilege escalation techniques\n\niii. Kernel exploitation fundamentals\n\n- Strong understanding of :\n\ni. Windows security boundaries\n\nii. Attack surface reduction strategies\n\niii. Red team tradecraft at OS level\n\nTools & Platforms :\n\n- Debuggers - WinDbg , x64Dbg , GDB\n\n- IDA Pro / Ghidra\n\n- Sysinternals Suite\n\n- Process Monitor / Process Explorer\n\n- Custom exploit frameworks and fuzzers\n\nCertifications (Preferred) :\n\n- OSCP, OSEP, OSED, CRTO, or equivalent offensive certifications\n\n- Any advanced Windows or red teamfocused certifications are a plus\n\nRequired Skills : Cybersecurity windows\n\nSkills\nSecurity, R&D - Security, C, C++, Kernel, Vulnerability Assessment, Cyber Security, Threat Modeling, OSCP","description_format":"text","description_chars":4476,"description_truncated":false,"requirements":{"experience_years_min":2,"management_years_min":null,"team_size_min":null,"manages_managers":false,"education":null,"security_clearance":false,"languages":[]},"benefits":[],"hiring_locations":[],"hiring_excludes":[],"relocation_offered":false,"industries":["Penetration Testing"],"lifecycle":[{"event":"open","at":"2026-09-25T22:00:00Z"}],"liveness":{"score":22,"band":"cold","label":"Long shot","p_open":0.85,"p_active":0.565,"p_room":0.45,"age_days":24,"expected_fill_days":15,"reasons":["seen:24","win:tail","comp:junior"],"computed_at":"2026-10-01T05:45:00Z"},"pay":null,"html_url":"https://alion.io/job/iitk-windows-security-research-engineer","json_url":"https://alion.io/job/iitk-windows-security-research-engineer.json","meta":{"generated_at":"2026-10-01T09:58:27Z","cache_seconds":300,"methodology":"https://alion.io/methodology","terms":"https://alion.io/terms","contact":"https://alion.io/contact","api":"https://alion.io/developers","usage":{"tier":"crawler","counted_by":"address","units_charged":1,"used_today":923,"day_limit":5000,"remaining_today":4077,"minute_limit":60,"resets_at":"2026-10-02T00:00:00Z"}}}