2 open positions available
Support federal customer onsite with ICS/OT threat intelligence, research, analysis, and operational guidance. | 5+ years threat intelligence experience, TS clearance, onsite Norfolk VA work, ICS/OT threat hunting, and intelligence reporting. | At Dragos, the mission is personal. The systems we protect deliver the water you drink, power your home, and keep the hospitals your community depends on running. Those critical infrastructure systems that power our civilization around the world are under attack every day by adversaries. When those systems fail, people are immediately at risk. We are the global leader in xOT cybersecurity, combining technology, threat intelligence, and expert services. The people here chose this work because they understand what is at stake. Here, you will find a remote-first mission-driven team across North America, Europe, the Middle East, and APAC built on authenticity, transparency, and trust. If safeguarding the systems that protect your family, friends, and community is the kind of work that matters to you, you are in the right place. About The Role Our Cyber Threat Intelligence Team is seeking a Cyber Threat Intelligence Analyst who will directly support a Dragos federal customer at their site in Norfolk, VA. In this role you'll partner closely with your assigned customer and deliver tailored ICS/OT threat intelligence products to their Security and Intel teams. You'll research and analyze threats against critical infrastructure and translate your findings into briefings, written reports and operational guidance. You'll work onsite with their staff, understand their systems and environment, and collaborate across their organization to ensure intelligence connects to real defensive action. Our ideal candidate will have a strong background in CTI, threat hunting and have an understanding of industrial control systems. Responsibilities • Directly support your customer with their respective ICS/OT security and cyber threat intelligence needs. • Conduct threat research, analysis, and hunting tasks using a variety of proprietary and commercial resources to respond to client inquiries and craft tailored deliverables based on priority intelligence requirements. • Develop expertise in ICS/OT threats and risks directly relevant to your customer's environment, including attack surface analysis, threat hunting strategies, and threat modeling. • Support your customer’s cybersecurity initiatives to include threat hunts, incident response, and exercises. • Partner with internal Threat Intelligence peers to craft operational and strategic content for global Dragos Worldview customers. • Provide support and feedback to other internal Dragos teams, such as Incident Response, OT-Watch, Professional Services and Customer Experience. Qualifications • Must have an active Top Secret (TS) Security Clearance. • Must be willing and able to work onsite in Norfolk, VA. • At least 5 years of hands-on experience in the threat intelligence field using multiple resources and disciplines including network-based data (ie, NetFlow), OSINT, SIEMs, malware repositories, and DFIR. • Proven ability to create effective intelligence analysis products relevant for government agencies, federal civilian organizations or critical infrastructure sectors. • Experience integrating unclassified and classified threat intelligence into cohesive deliverables. • Threat hunting experience within ICS/OT environments or related technology settings. • Proven experience producing operational and strategic intelligence reporting using confidence-based assessments. • Proficiency with data aggregation, hunting, and analysis tools (eg, Synapse). • Experience building threat models relevant to specific threat and risk profiles. Compensation • Salary: $165,000 • Competitive Equity Package • Comprehensive Benefits Plan Dragos is an Equal Opportunity Employer and considers applicants for employment without regard to race, color, religion, sex, orientation, national origin, age, disability, genetics, or any other basis forbidden under federal, state, or local laws. All new hires must pass a background check as a condition of employment.
Deploy and optimize Dragos Platform onsite for federal ICS/OT customers. | 5+ years ICS/OT cybersecurity, networking, Linux, scripting, onsite Washington DC, active Secret clearance. | Dragos is on a relentless mission to defend industrial organizations that provide us with the necessities of modern civilization; running water, functioning electricity, and safe industrial working environments. As the market leader in ICS/OT Cybersecurity, we are dedicated to arming our customers with best-in-class technology, threat intelligence, and services to protect their systems as effectively and efficiently as possible. We’re a remote-first culture with operations in North America, Europe, the Middle East, and APAC. We’re looking for mission-oriented teammates who embody our core values of authenticity, transparency, and trust. Are you ready to make a difference? Come join a mission that can save the world! About The Role Our Public Sector team is seeking a Resident Engineer who will partner with one of our strategic federal customers in Washington DC. In this role, you will serve as an onsite, customer-facing technical expert responsible for planning, deploying, and optimizing the Dragos Platform within the customer's industrial environment. You will work hands-on at customer facilities to install the platform, tune it to their operational needs, and ensure reliable security coverage across their ICS/OT systems. Serving as a trusted technical partner, you'll guide customers through deployment, troubleshooting, and ongoing platform adoption, enabling them to strengthen and sustain the security of their critical infrastructure. Responsibilities • Collaborate with Dragos Sales and Solution Architect teams to understand customer use cases, success criteria, and define Dragos Platform objectives. • Partner with client teams on network architecture, sensor placement, and integrations; coordinate and conduct full deployments including upgrades, patches, and configuration changes. • Tune, optimize, and monitor the Dragos Platform to meet defined customer objectives and ensure continuous availability. • Develop content, build foundational workflows, and provide troubleshooting and break/fix support; manage escalations as needed. • Provide knowledge transfer, training, and new release feature walkthroughs to key stakeholders while documenting processes. • Maintain ongoing client engagement by soliciting feedback on feature requests, communicating product roadmap updates, and identifying opportunities for additional Dragos products and services. • Coordinate and collaborate with internal Dragos teams including Intel and Threat Hunting to deliver comprehensive customer outcomes. Qualifications • Must living within commuting distance of Washington DC and be willing to work onsite 5 days per week. • Must have an active Secret security clearance (or higher). • 5+ years of ICS/OT cybersecurity experience. • Networking experience including strong knowledge of IP networks, OSI model, Purdue model, and ICS protocols. • Experience with Linux (command line), Docker, scripting languages (Python, shell, etc.), SIEMs, and ELK stack. • Experience with on-premise and cloud software solutions for the enterprise, with the ability to manage multiple stakeholders and projects. • Customer-oriented and attentive to client needs, with strong interpersonal and communication skills. • Willingness to travel up to 30%. Compensation • Salary: $155,000 • Competitive Equity Package • Comprehensive Benefits Plan Dragos is an Equal Opportunity Employer and considers applicants for employment without regard to race, color, religion, sex, orientation, national origin, age, disability, genetics, or any other basis forbidden under federal, state, or local laws. All new hires must pass a background check as a condition of employment.
Create tailored applications specifically for Dragos, Inc. with our AI-powered resume builder
Get Started for Free