Dragos Logo

Dragos

Senior Threat Intelligence Analyst

Posted 12 Days Ago
Be an Early Applicant
Easy Apply
Remote
Hiring Remotely in United Kingdom
Senior level
Easy Apply
Remote
Hiring Remotely in United Kingdom
Senior level
The role involves delivering threat intelligence, conducting threat hunting and analysis in ICS/OT environments, and providing customer support while producing tailored intelligence reports and insights.
The summary above was generated by AI

Dragos is on a relentless mission to defend industrial organizations that provide us with the necessities of modern civilization; running water, functioning electricity, and safe industrial working environments. As the market leader in ICS/OT Cybersecurity, we are dedicated to arming our customers with best-in-class technology, threat intelligence, and services to protect their systems as effectively and efficiently as possible. We’re a remote-first culture with operations in North America, Europe, the Middle East, and APAC. We’re looking for mission-oriented teammates who embody our core values of authenticity, transparency, and trust. Are you ready to make a difference? Come join a mission that can save the world! 

About the Role: 

We’re seeking a Senior Cyber Threat Intelligence Analyst to partner directly with Dragos customers and deliver tailored, high‑impact threat intelligence through written reports, briefings, and in‑person engagement. In this role, you’ll serve as the customer’s dedicated CTI resource - providing relevant intelligence that guides their OT security journey and collaborating across Dragos delivery teams to maximize the value of each engagement. Our ideal candidate has experience delivering threat intelligence in a service‑oriented environment, a working knowledge of industrial control systems and familiarity with incident response functions. You’ll also contribute to research on emerging OT threats and help shape security outcomes in a rapidly evolving industrial cybersecurity landscape. 

Responsibilities:  

  • Integrate directly with client ICS/OT security workflows, providing hands‑on threat intelligence support, hunting, and guidance aligned to each customer’s operational environment.
  • Conduct ICS/OT threat hunting, research, and analysis to identify adversary activity, assess risk, and support response and mitigation efforts within client environments.
  • Produce tailored intelligence deliverables--including recurring reports, deep‑dive analyses, alerts, and advisories--based on client priority intelligence requirements.
  • Leverage Dragos intelligence, platform data, and OSINT to inform client‑focused analysis, hunting activities, and actionable reporting.
  • Develop deep expertise in ICS/OT threats and risks relevant to specific industries and environments, including attack surface analysis, threat modeling, and hunting strategies.
  • Create industry‑focused technical, operational, and strategic intelligence content that supports individual clients and the broader Dragos WorldView customer community, while collaborating with internal teams to enhance overall outcomes.
  • Provide support and feedback to internal Dragos teams including Incident Response, OT‑Watch, Customer Experience, Intelligence and Professional Services. 

Qualifications:  

  • 4+ years of experience in Cyber Threat Intelligence (CTI), using multiple data sources such as network data (e.g., NetFlow), OSINT, SIEMs, malware repositories, and DFIR techniques.
  • Hands‑on experience performing threat hunting in ICS/OT or closely related environments (minimum 2 years), with an understanding of how adversaries target operational systems.
  • Experience working in customer‑facing roles (e.g., consulting or managed services), including presenting intelligence findings and supporting client needs.
  • Strong CTI writing and communication skills, with experience producing clear, confidence‑based intelligence assessments and deliverables.
  • Knowledge of ICS/OT threats and adversary behavior, including TTPs, major historical attacks, and impacts across industrial sectors such as energy, manufacturing, utilities, or government.
  • Solid understanding of ICS/OT technologies, including industrial networks, common protocols, and OT assets such as PLCs, HMIs, and RTUs.
  • Knowledge of security and defender frameworks, such as MITRE ATT&CK, D3FEND, and the ICS Cyber Kill Chain.

Compensation: 

  • Salary: £75,000
  • Competitive Equity Package  
  • Comprehensive Benefits Plan 

 

#LI-JF1 #LI-REMOTE   



Dragos is an Equal Opportunity Employer and considers applicants for employment without regard to race, color, religion, sex, orientation, national origin, age, disability, genetics, or any other basis forbidden under federal, state, or local laws. All new hires must pass a background check as a condition of employment.

Top Skills

Cyber Threat Intelligence
D3Fend
Dfir
Hmis
Ics/Ot Technologies
Industrial Networks
Mitre Att&Ck
Osint
Plcs
Rtus
SIEM

Similar Jobs

3 Hours Ago
Remote or Hybrid
United Kingdom
Senior level
Senior level
Cloud • Computer Vision • Information Technology • Sales • Security • Cybersecurity
The role involves monitoring and analyzing security alerts, conducting incident handling across various platforms, performing malware analysis, and improving incident detection processes. Candidates need strong communication skills, team management experience, and a background in cybersecurity.
Top Skills: .NetCC#PerlPowershellPythonRuby On RailsVb
5 Hours Ago
In-Office or Remote
Senior level
Senior level
Cloud • Information Technology • Internet of Things • Machine Learning • Software • Cybersecurity • Infrastructure as a Service (IaaS)
The Compliance Officer will promote compliance culture, advise on ethical practices, manage compliance programs, assess risks, and ensure effective communication across departments.
Top Skills: AmlAntitrustCompliance FrameworksData PrivacyGovernanceRegulatory RequirementsTrade Compliance
5 Hours Ago
In-Office or Remote
Senior level
Senior level
Cloud • Information Technology • Internet of Things • Machine Learning • Software • Cybersecurity • Infrastructure as a Service (IaaS)
As a BO Access Engineer, you will maintain and improve mobile network performance, configure RAN changes, monitor performance, and resolve issues. You'll collaborate with teams, support customer requests, and implement process improvements.
Top Skills: 2G5GLteExcelMicrosoft OutlookMicrosoft WordPythonRan Technologies

What you need to know about the Edinburgh Tech Scene

From traditional pubs and centuries-old universities to sleek shopping malls and glass-paneled office buildings, Edinburgh's architecture reflects its unique blend of history and modernity. But the fusion of past and future isn't just visible in its buildings; it's also shaping the city's economy. Named the United Kingdom's leading technology ecosystem outside of London, Edinburgh plays host to major global companies like Apple and Adobe, as well as a growing number of innovative startups in fields like cybersecurity, finance and healthcare.

Sign up now Access later

Create Free Account

Please log in or sign up to report this job.

Create Free Account