Jobiglo

No results.

Cybersecurity Research Engineer – Honeypot

C3iHub, IIT Kanpur · District de Kanpur Nagar

New
🇬🇧 English
Cowrie Dionaea Honeytrap Conpot OpenCanary T-Pot Linux TCP/IP DNS HTTP SMB SSH Python Bash MITRE ATT&CK Diamond Model Cyber Kill Chain Modbus DNP3 IEC 104 BACnet Memory forensics Sandboxing tools

Job description

About the role

We are looking for a highly skilled Cybersecurity Research Engineer specializing in honeypot technologies. The role focuses on designing deception‑based security systems, conducting deep adversary analysis, and providing actionable intelligence to support threat hunting and incident response.

Key responsibilities

  • Design, deploy, and manage low‑, medium‑, and high‑interaction honeypots across IT, cloud, and OT environments.
  • Develop custom honeypots and decoys to profile specific threat actors and track campaigns.
  • Monitor, analyze, and triage telemetry from honeypots, including network traffic, system logs, and malware artifacts.
  • Perform APT attribution using TTP analysis mapped to the MITRE ATT&CK framework.
  • Correlate honeypot intelligence with external threat feeds, OSINT, malware reports, and darknet sources.
  • Support incident response and threat hunting teams with actionable intelligence and research‑grade reports.
  • Continuously research emerging APT campaigns, zero‑day exploitation trends, and new deception techniques.

Required profile

  • B.Tech / M.Tech / MSc in Computer Science, Cybersecurity, or a related field.
  • Hands‑on experience with honeypot frameworks such as Cowrie, Dionaea, Honeytrap, Conpot, OpenCanary, or T‑Pot.
  • Strong understanding of APT tactics, techniques, and procedures, kill‑chain analysis, and adversary tradecraft.
  • Proficiency in Linux system administration and networking protocols (TCP/IP, DNS, HTTP, SMB, SSH).
  • Experience linking infrastructure, malware families, and behaviors to known or emerging threat groups.

Required skills

  • Python and Bash scripting for automation and data analysis.
  • MITRE ATT&CK, Diamond Model, and Cyber Kill Chain frameworks.
  • OT/ICS protocols such as Modbus, DNP3, IEC 104, BACnet.
  • Memory forensics and sandboxing tools.
  • Knowledge of C2 infrastructure, payload delivery mechanisms, and lateral movement techniques.

Questions fréquentes

Le salaire n'est pas communiqué publiquement par le recruteur. Vous pouvez postuler et négocier directement avec C3iHub, IIT Kanpur.
Cliquez sur "Postuler maintenant" en haut de la page. Vous pouvez importer votre CV en 1 clic — Jobiglo extrait automatiquement vos informations et postule pour vous.

Why are you reporting this job?

Thank you for your report. We will review this job.

Apply in 30 seconds

Enter your email to apply. An account will be created automatically.

By continuing, you accept our terms of use.

Already have an account? Login

Published 11 hours ago

Expires 1 month from now

1 views · 0 applications

Boost your chances

Upload your CV — we will match you with relevant openings.

Analyzing your CV...

C3iHub, IIT Kanpur

District de Kanpur Nagar