Ekfrazo Technologies Private Limited
Ekfrazo Technologies - Research Engineer - AI Security
Bangalore, भारत
Vacancy description
C3iHub
Delhi, भारत
Description :We are seeking a highly skilled Windows Security Engineer to join our advanced offensive security research https://jobeax.com/link/GAQw2xZfHsdWGuLm ideal candidate will have deep expertise in Windows internals, strong C/C++ development skills, and handson experience conducting lowlevel attack research, kernel exploitation, and evasion of modern Windows https://jobeax.com/link/At9XLBkKmmChJMar role focuses on adversary simulation, Windows kernel attack surface research, and offensive tooling development to assess and improve the resilience of enterprise Windows https://jobeax.com/link/LzIFQTlWTPW7Ps8t :Offensive Security Research & Exploitation :- Research historical and emerging Windows vulnerabilities (CVE analysis, exploitability assessment)- Analyze Windows kernel attack surfaces including :i. System callsii. Driversiii. Object manageriv. Memory manager- Develop proofofconcept exploits for Windows kernel and privileged components (controlled research environment)- Study and bypass modern Windows exploit mitigations (DEP, ASLR, CFG, KASLR)- Research historical and emerging Windows vulnerabilities (CVE analysis, exploitability assessment)- Analyze Windows kernel attack surfaces including :i. System callsii. Driversiii. Object manageriv. Memory manager- Develop proofofconcept exploits for Windows kernel and privileged components (controlled research environment)- Study and bypass modern Windows exploit mitigations (DEP, ASLR, CFG, KASLR)Kernel & Low-Level Tooling :- Build lowlevel tooling in C/C++ for :i. Privilege escalationii. Kernel callback abuseiii. Token manipulation- Develop usermode to kernelmode interaction tools using IOCTL interfaces- Build lowlevel tooling in C/C++ for :i. Privilege escalationii. Kernel callback abuseiii. Token manipulation- Develop usermode to kernelmode interaction tools using IOCTL interfacesEvasion & Defense Bypass Research :- Research and simulate EDR / AV evasion techniques- Analyze and bypass :i. PatchGuard (Kernel Patch Protection)ii. Driver Signature Enforcement (DSE)iii. AMSI and ETWbased detections- Research and simulate EDR / AV evasion techniques- Analyze and bypass :i. PatchGuard (Kernel Patch Protection)ii. Driver Signature Enforcement (DSE)iii. AMSI and ETWbased detectionsAdversary Simulation & Red Team Operations :- Simulate advanced persistent threat (APT) techniques targeting Windows environments- Conduct privilege escalation and postexploitation research on Windows systems- Emulate realworld attack chains from userland to kernelDocumentation & Reporting :- Document vulnerabilities, exploitation paths, and attack methodologies clearly- Produce technical reports for internal stakeholders and leadership- Contribute to internal red team playbooks and attack frameworksEligibility :Bachelor's degree in Computer Science, Cybersecurity, or related fieldEquivalent handson offensive security experience will be consideredTechnical Skills :Windows Internals :- Windows kernel architecture- Process, thread, and token internals- Virtual memory management- System Service Descriptor Table (SSDT) conceptsProgramming :- Proficiency in C and C++ (kernelmode and usermode)- Experience developing Windows drivers and lowlevel tools- Familiarity with inline assembly and reverse engineering conceptsOffensive Security Experience :- Experience with :i. Windows vulnerability research and exploit developmentii. Privilege escalation techniquesiii. Kernel exploitation fundamentals- Strong understanding of :i. Windows security boundariesii. Attack surface reduction strategiesiii. Red team tradecraft at OS level- Experience with :i. Windows vulnerability research and exploit developmentii. Privilege escalation techniquesiii. Kernel exploitation fundamentals- Strong understanding of :i. Windows security boundariesii. Attack surface reduction strategiesiii. Red team tradecraft at OS levelTools & Platforms :- Debuggers - WinDbg , x64Dbg , GDB- IDA Pro / Ghidra- Sysinternals Suite- Process Monitor / Process Explorer- Custom exploit frameworks and fuzzersCertifications (Preferred) :- OSCP, OSEP, OSED, CRTO, or equivalent offensive certifications- Any advanced Windows or red teamfocused certifications are a plusRequired Skills : Cybersecurity windows (ref:hirist.tech)
Similar vacancies
Ekfrazo Technologies Private Limited
Bangalore, भारत
Sampoorna Consultants Pvt. Ltd
Bangalore, भारत
Lincoln Electric
Chennai, भारत
Netrix Global
Pune, भारत
Saint-Gobain India Private Limited
Chennai, भारत
Dialpad
Bangalore, भारत
Saint-Gobain India Private Limited
Chennai, भारत
Blue Machines AI
Bangalore, भारत
Barracuda Networks
Bangalore, भारत
Bangalore, भारत