Senior OT Security Analyst

Company: Dragos
Apply for the Senior OT Security Analyst
Location:
Job Description:

Overview

In this role you will lead frontline OT monitoring and triage for customer environments, mentoring junior analysts and collaborating with threat hunters and incident responders. You will operate the Dragos platform to manage assets, vulnerabilities, and detections while shaping response recommendations. The position emphasizes hands-on industrial security, cross-team collaboration, and continuous learning in ICS/OT security to protect critical infrastructure. This is a mission-driven, remote-friendly opportunity to impact OT defenses at scale.

Pay / Benefits

  • Competitive salary
  • Equity package
  • Comprehensive benefits plan

Responsibilities

  • Lead shift operations, triaging detection alerts and network telemetry across OT environments, stepping in as regional shift leader when needed.
  • Serve as a senior investigator to identify misconfigurations, anomalies, and potential malicious activity in industrial networks.
  • Provide clear, actionable escalation documentation to Incident Responders and threat hunters.
  • Collaborate with analysts, threat hunters, incident responders, platform engineers, and Detection Engineering to tune detections and develop new platform detections and playbooks.
  • Produce incident summaries and operational reports for internal teams and customers.
  • Support the full OT Watch Complete scope, including asset classification, vulnerability management, and hardening recommendations.
  • Continuously grow expertise in ICS/OT protocols, adversary tradecraft, and threat intelligence for industrial environments.

Key requirements

  • 3–5 years in network security with hands-on threat investigation experience.
  • Solid grounding in TCP/IP, firewalls, DNS, and packet analysis.
  • Hands-on experience with IDS/IPS, SIEM, or network traffic analysis tools.
  • Strong written and verbal communication with attention to detail.
  • Genuine interest in ICS/OT cybersecurity and ability to grasp industrial concepts quickly.
  • Ability to work independently in a remote setting and coordinate across distributed teams.
  • Willingness to participate in shift-based coverage and occasional weekends/on-call.
  • strong communication
  • attention to detail
  • cross-functional collaboration
  • IDS/IPS
  • SIEM
  • packet analysis

…

Posted: October 1st, 2026