Threat Intelligence Data Engineer – Automated Collection & Dark Web Intelligence

4 years

0 Lacs

Posted:2 days ago| Platform: Linkedin logo

Apply

Work Mode

Remote

Job Type

Full Time

Job Description

About the Role

: HEROIC Cybersecurity (HEROIC.com) is seeking a senior-level engineer to design, build, and operate fully automated intelligence collection systems that power our AI-driven cybersecurity and breach intelligence platforms.This role owns the end-to-end discovery, acquisition, and ingestion pipeline for continuously discovering, crawling, extracting, indexing, and normalizing millions of new artifacts daily—including documents, chats, forums, leaked datasets, repositories, threat actor communications, hacker marketplaces, unsecured infrastructure, and decentralized networks across the surface web, deep web, dark web, and anonymized networks.

achieve near-total coverage of global breach and leak data with 99%+ automation

What You Will Do:

Automated Intelligence Collection & Discovery

  • large-scale, distributed crawling and discovery systems

    • Surface web, deep web, and dark web

    • Hacker forums, underground marketplaces, and breach communities

    • Chat platforms (Telegram, Discord, IRC, WhatsApp, etc.)

    • Paste sites, code repositories, and social platforms used for breach disclosure

  • Continuously discover, archive, and download newly released datasets, logs, credentials, and artifacts the moment they appear

Dark Web, Anonymized & Decentralized Networks

  • Build automated collectors and archivers for anonymized and decentralized networks including:

    • Tor (.onion), I2P, ZeroNet, Freenet, IPFS, GNUnet, Lokinet, Yggdrasil, and similar systems

  • Design resilient workflows for unreliable, adversarial, or ephemeral data sources

  • Normalize and index data from non-traditional network protocols and formats

Infrastructure & Exposure Discovery

  • Develop automated scanning systems to identify:

    • Unsecured databases (Elasticsearch, MySQL, PostgreSQL, MongoDB, etc.)

    • Exposed cloud storage (S3, Azure, GCP, DigitalOcean Spaces)

    • Open FTP servers, backups, and misconfigured archives

  • Monitor and ingest data from file hosting and distribution platforms commonly used for breach dumps

Pipeline Engineering & Operations

  • Build ETL pipelines to clean, normalize, enrich, and index structured and unstructured data

  • anti-bot evasion strategies

  • Integrate collected intelligence into centralized databases and search systems

  • Design APIs and internal tooling to support downstream analysis and AI/ML workflows

  • Implement advanced anti-bot, evasion, and resiliency techniques (proxy rotation, fingerprinting, CAPTCHA mitigation, session handling)

  • Automate deployment, scaling, and monitoring using Docker, Kubernetes, and cloud infrastructure

  • Continuously optimize performance, reliability, and cost efficiency of crawler clusters

Requirements
  • data engineering, intelligence collection, crawling, or distributed data pipelines

  • Strong Python expertise and experience with frameworks such as Scrapy, Playwright, Selenium, or custom async systems

  • high-volume, automated data collection systems in production

  • Deep understanding of web protocols, HTTP, DOM parsing, and adversarial scraping environments

  • Experience with asynchronous, concurrent, and distributed architectures

  • Familiarity with SQL and NoSQL databases (PostgreSQL, MongoDB, Elasticsearch, Cassandra)

  • Strong Linux/Unix, shell scripting, and Git-based workflows

  • Experience deploying and operating systems using Docker, Kubernetes, AWS, or GCP

  • Excellent analytical, debugging, and problem-solving skills

  • Strong written and verbal communication skills.

Preferred / High-Value Experience

  • dark web intelligence, breach data, OSINT, or threat research

  • Familiarity with Tor, I2P, underground forums, stealer logs, or credential ecosystems

  • Experience processing large breach datasets or stealer logs

  • adversarial data environments

  • Exposure to AI/ML-driven intelligence platforms

Benefits
  • Position Type:

    Full-time
  • Location:

    Remote in India.

    Work from wherever you please! Your home, the beach, our offices, etc.

  • Compensation:

    USD 1300-2000 monthly
  • Professional Growth:

    Amazing upward mobility in a rapidly expanding company.
  • Innovative Culture:

    Be part of a team that leverages AI and cutting-edge technologies.

About Us:

HEROIC Cybersecurity (HEROIC.com) is building the future of cybersecurity. Unlike traditional cybersecurity solutions, HEROIC takes a predictive and proactive approach to intelligently secure our users before an attack or threat occurs. Our work environment is fast-paced, challenging, and exciting. At HEROIC, you’ll work with a team of passionate, engaged individuals dedicated to intelligently securing the technology of people all over the world.

Mock Interview

Practice Video Interview with JobPe AI

Start Python Interview
cta

Start Your Job Search Today

Browse through a variety of job opportunities tailored to your skills and preferences. Filter by location, experience, salary, and more to find your perfect fit.

Job Application AI Bot

Job Application AI Bot

Apply to 20+ Portals in one click

Download Now

Download the Mobile App

Instantly access job listings, apply easily, and track applications.

coding practice

Enhance Your Python Skills

Practice Python coding challenges to boost your skills

Start Practicing Python Now