925,716open jobs
56,515companies
155,668added this week
Browse all
Salary
$110k per year
Location
Remote (United States, UTC+1 – UTC+10 hours)also open in Australia, United Kingdom
Seniority
Senior · 3+ years exp

Confirmed on the employer's own hiring board on Sep 29, 2026. First seen by Alion on Sep 28, 2026. Dragos scores B on the Alion truth index.

Overview
Company
Impact
Profile match
Secure your critical infrastructure with Dragos, our industrial cybersecurity solutions provide unmatched visibility and threat detection for OT environments.

At Dragos, the mission is personal. The systems we protect deliver the water you drink, power your home, and keep the hospitals your community depends on running. Those critical infrastructure systems that power our civilization around the world are under attack every day by adversaries. When those systems fail, people are immediately at risk. We are the global leader in xOT cybersecurity, combining technology, threat intelligence, and expert services. The people here chose this work because they understand what is at stake. Here, you will find a remote-first mission-driven team across North America, Europe, the Middle East, and APAC built on authenticity, transparency, and trust. If safeguarding the systems that protect your family, friends, and community is the kind of work that matters to you, you are in the right place. 

About the Role: 

As a Senior OT Security Analyst on the OT Watch Completeteam, you will help lead a frontline monitoring and triage unit responsible for identifying potential adversary activity in customer operational technology (OT) environments. You will work closely with other experienced industrial defenders and mentor junior analysts to investigate anomalous network behaviors, validate detection triggers, and support threat hunters and incident responders with high-quality escalations. You will also operate and maintain the Dragos platform on behalf of customers, helping manage vulnerabilities, tune detections, properly classify OT assets, and provide input on response recommendations.This is a great opportunity for experienced cybersecurity professionals - especially those passionate about industrial security - to build hands-on experience in active OT security operations.

Responsibilities: 

  • Lead shift operations, guiding analysts as they triage detection alerts and network telemetry from the Dragos Platform across customer OT environments - stepping in as shift leader for your region when needed.
  • Serve as a senior investigator, digging into suspicious activity to identify misconfigurations, anomalies, and potential malicious behavior across industrial networks.
  • Apply deep analysis and context to escalate findings to Incident Responders and threat hunters with clear, actionable documentation. 
  • Partner across teams - analysts, threat hunters, incident responders, platform engineers, and Detection Engineering - to tune detection logic, reduce false positives, and shape new Dragos Platform detections and playbooks.
  • Write and deliver incident summaries and operational reports that give internal stakeholders and customers a clear read on what's happening in their environment.
  • Support the full scope of OT Watch Complete, from asset classification and vulnerability management to hardening recommendations and direct customer information requests.
  • Build expertise continuously in ICS/OT protocols, adversary tradecraft, and threat intelligence specific to industrial environments.

Qualifications: 

  • 3-5 years of experience in network security, ideally with hands-on exposure to real-world threat investigation.
  • Solid understanding of core networking concepts - TCP/IP, firewalls, DNS, packet analysis.
  • Hands-on experience with security monitoring tools, such as IDS/IPS, SIEM platforms, or network traffic analyzers.
  • Strong written and verbal communication skills, with close attention to detail - you'll be translating technical findings for both internal teams and customers.
  • Genuine interest in ICS/OT cybersecurity and a drive to defend critical infrastructure, paired with the ability to pick up complex, industrial-specific concepts quickly and apply them. 
  • Comfortable working independently in a remote environment while coordinating across distributed teams.
  • Flexibility to participate in shift-based coverage and occasional weekend/on-call work as needed. Note: The initial schedule will be Monday-Friday 8am-5pm, with on-call weekends (MDT for US, CEST for Europe, AEST for AUS). The schedule will later change to a 4 day/week, 10 hour shift model, which includes a day on the weekend. Shift schedules under the 4-day schedule will run Sunday-Wednesday and Wednesday-Saturday. Applicants will have the option to pick from either of the two shift schedules (Sunday-Wednesday or Wednesday-Saturday). 

Preferred Qualifications:

  • Experience working on a Security Operations Center (SOC) team. 
  • Familiarity with OT protocols (e.g., Modbus, DNP3, Ethernet/IP) and ICS environments.
  • Applied knowledge of adversary tactics and frameworks relevant to OT (e.g., MITRE ATT&CK for ICS).
  • Hands-on lab or internship experience in cybersecurity operations, threat hunting, or digital forensics.
  • Experience in packet capture (PCAP) analysis or basic scripting (e.g., Python, Bash). 

Compensation: 

  • Salary: $110,000
  • Competitive Equity Package  
  • Comprehensive Benefits Plan 

#LI-JF1 #LI-REMOTE  

Dragos is an Equal Opportunity Employer and considers applicants for employment without regard to race, color, religion, sex, orientation, national origin, age, disability, genetics, or any other basis forbidden under federal, state, or local laws. All new hires must pass a background check as a condition of employment.

Free account
Stop reading job ads. Get the ones that fit.
One free account turns this page into a shortlist built around your stack, your level and your pay.
Match on every job. Stack, seniority, pay and location, scored against your profile.
925,716 open roles. Read straight off company career pages, refreshed every day.
Unlimited applications. Every one you send is tracked in one place, on-site or on a company board.
3 tailored CVs a month. Rewritten for the exact job you are applying to. Included free.
Create a free account Continue with Google
Free forever. No card. Under a minute.

Your match

How well do you fit this role?
Two answers are enough for a real match. No account needed.
Check my fit
Answers stay in this browser until you create an account.

Recommended for you based on this role

Security
Similar stack
Same company
In your city
≈ $119k – $246k per year (Estimated) • Hybrid • 7+ years exp • High School Diploma • Irving
Python
Go
Ruby
DevOps
GCP
Azure
CI/CD
Kubernetes
Management
Agile
Apply
≈ $109k – $214k per year (Estimated) • Hybrid • 5+ years exp • High School Diploma • Arlington
AI/ML
Machine Learning
DevOps
Azure
Platform Engineering
IAM
Cybersecurity
Okta
CyberArk
Zero Trust
Least Privilege
Active Directory
PKI
Management
ServiceNow
Apply
≈ $106k – $208k per year (Estimated) • Hybrid • 3+ years exp • High School Diploma • Arlington
Python
Go
Ruby
DevOps
Terraform
GCP
Azure
CI/CD
Kubernetes
Immutable Infrastructure
Linux
TCP/IP
DNS
VLAN
Cybersecurity
ISO 27001
SIEM
DLP
Management
SharePoint
Agile
UML
ITSM
Microsoft Office
Apply
≈ $121k – $219k per year (Estimated) • Remote (United States) • Full-Time
AI/ML
Function Calling
Tool Use
DevOps
GCP
Azure
CI/CD
AWS
Cybersecurity
SOC 2
HIPAA
Least Privilege
Threat Modeling
Apply
$155k – $185k per year • In office • Full-Time • 5+ years exp • Bachelor's Degree • Arlington
Python
JavaScript
AI/ML
Model Context Protocol
LLM
NIST AI RMF
DevOps
CI/CD
AWS
Kubernetes
Cybersecurity
OWASP Top 10
NIST 800-53
OWASP ASVS
Threat Modeling
OWASP
Apply
NOC Shift 1 Lead 12 hours ago
≈ $99k – $220k per year (Estimated) • In office • Full-Time • Bachelor's Degree • Ashburn
JavaScript
Node JS
Node JS
Commander.js
DevOps
Splunk
Zabbix
Azure
AWS
Nagios
Incident Management
Linux
Windows
TCP/IP
DNS
DHCP
VPN
VLAN
BGP
OSPF
Cybersecurity
IBM QRadar
SIEM
Management
Jira
ServiceNow
SharePoint
ITIL
Microsoft Office
Apply
Network Engineer 11 hours ago
≈ $52k – $129k per year (Estimated) • In office • Full-Time • 5+ years exp • Lima
DevOps
Zabbix
TCP/IP
DNS
DHCP
Cybersecurity
Wireshark
Management
ITIL
Apply
$51k – $122k per year • In office • Secret • Full-Time • 4+ years exp • High School Diploma • Elkridge
DevOps
TCP/IP
Management
Microsoft Office
Apply
$142k – $213k per year • In office • Secret • Full-Time • Bachelor's Degree • San Diego
Python
Bash
DevOps
Splunk
Ansible
Red Hat
OpenShift
VMWare
Docker
Kubernetes
KVM
Hyper-V
Linux
Windows
Unix
DNS
Cybersecurity
LDAP
Management
Agile
Apply
≈ $104k – $188k per year (Estimated) • Remote (Germany) • Full-Time
Python
DevOps
VMWare
Azure
AWS
OpenStack
Linux
TCP/IP
VPN
BGP
OSPF
MPLS
Cybersecurity
LDAP
DLP
Apply
≈ $121k – $274k per year (Estimated) • Equity • Remote (Australia, UTC+1 – UTC+10 hours) • 3+ years exp
Python
DevOps
TCP/IP
DNS
Cybersecurity
SIEM
Apply
$80k per year • Equity • Remote (United Kingdom, UTC+1 – UTC+10 hours) • 3+ years exp
Python
DevOps
TCP/IP
DNS
Cybersecurity
SIEM
Apply
$140k per year • Equity • Remote (United States)
DevOps
TCP/IP
DNS
Cybersecurity
SIEM
Apply
≈ $64k – $150k per year (Estimated) • Equity • Remote (Singapore) • 10+ years exp • Singapore
Cybersecurity
SIEM
Apply
$152k per year • Equity • Remote (United States) • 8+ years exp
Python
Rust
Ruby
YARA
Lua
Databases
ElasticSearch
DevOps
Splunk
Amazon ECS
Linux
Windows
Cybersecurity
Wireshark
Tcpdump
Snort
Suricata
Zeek
YARA
Scapy
Cyber Kill Chain
Apply
See all jobs
This is one of many
925,716 more open roles from verified company boards, updated every day.