Listing Description
Have you spent time hunting threats inside and outside networks? Have you developed and tracked activity groups? Do you want to use your skills to hunt those who threaten civilization by targeting industrial control systems? Dragos Threat Intelligence works to discover these threats, to develop innovative analytics for detection, to support investigations and incident response, and to provide customers with industry-leading situational awareness.
Unlike many other teams with a broader mission, we focus intensely on operational threats to industrial control networks; this gives our analysts the time and space necessary to do world-class research and intelligence on the most advanced and significant threats in the world. We are seeking an experienced Adversary Hunter to fill this highly technical and crucial role. You will become one of the few true ICS Threat Hunters in the world. A rare opportunity!
Location: Remote (USA, Canada, Australia, or the UK)
Minimal travel is required
Responsibilities:
- Design, conduct, and continuously improve hypothesis-based hunts in pursuit of adversaries impacting industrial sectors
- Contribute to continual improvement and automation of adversary hunting practices, sources, and tools
- Develop industry expertise into at least one key industrial sector, including the threats, key assets and processes, common OT equipment, and architecture
- Produce high-value intelligence reports detailing threat activity of concerns that convey the nature of the threat, impact to industrial environments, and mitigation strategies
- Create threat detection signatures to detect adversary activities, protecting Dragos customers worldwide
- Provide mentorship to other hunters and intelligence analysts
- Support joint hunt operations with other Dragos operational groups, partners, and customers
- Deliver industry-leading perspective through conference presentations, webinars, white papers, and blogs
- Regularly update key reference material on threats to assigned sectors and specific threat activity groups
- Track and follow assigned threat activity groups through continuous hunting in Dragos sources, alerting, monitoring of external sources.
Requirements:
- 5+ years hunting and tracking targeted threats
- 5+ years experience with network-based intrusion analysis
- 5+ years developing analytics to enable threat hunting and detection
- Knowledge of common malware functionality and operations; comfortable working with static and dynamic binary analysis output
- Experience pivoting across the Diamond Model, all stages of the Kill Chain, and ATT&CK
- Demonstrable experience producing customer-facing intelligence reports with strong writing skills
- Experience developing indicators of compromise (IOCs) for customer-facing applications
- Able to work well with a remote team of collaborators and deliver the product on time and within quality guidelines
- Good research and documentation skills including knowledge of major OSINT sources and their investigatory value
Compensation:
- Base Salary: $180,000
- Base + Benefits + Equity = $290,000
- Comprehensive benefits plan (medical, dental, vision, disability, life insurance, 401K with match)
- Equity at Dragos is quickly growing and the total compensation under-represents the future growth and refresh program. This will be discussed on the first call with the Dragos recruiter.
Dragos is the Industrial Cybersecurity expert on a relentless mission to safeguard civilization. In a world of rising cybersecurity threats, Dragos protects the most critical infrastructure – those that provide us with the tenets of modern civilization – from increasingly capable adversaries who wish to do it harm. Devoted to codifying and sharing our in-depth industry knowledge of ICS/OT systems, Dragos arms industrial defenders around the world with the knowledge and tools to protect their systems as effectively and efficiently as possible. Founded by world-class industrial intelligence experts, Dragos has the industry’s largest team of ICS/OT practitioners who have been on the front lines of the world’s most significant industrial cyber-attacks.
Diversity, Equity, and Inclusion is a core value at Dragos, and we are passionate about building and sustaining an inclusive and equitable working environment for all. We know that every member of our team enriches our diversity by exposing us to a broad range of ways to understand and engage with the world, identify challenges, and discover, design, and deliver solutions. Not only does a Diversity, Equity, and Inclusion focus enrich our environment and teams, but it is also critical in our success as we defend adversaries all over the world. The broad range of ideas, experiences, and perspectives is critical to our success.
Dragos is an Equal Opportunity Employer and considers applicants for employment without regard to race, color, religion, sex, orientation, national origin, age, disability, genetics, or any other basis forbidden under federal, state, or local laws.
Listing Details
- Salary: $180000 - $180001
- Citizenship: Not Provided
- Incentives: Stock Options
- Education: Not Provided
- Travel: Not Provided
- Telework: Full Telecommute