Senior Adversary Hunter - Capabilities Development

Posted 19 Hours Ago
Easy Apply
Be an Early Applicant
Hiring Remotely in United States
Remote
135K-135K Annually
Mid level
Security • Cybersecurity
The Role
The Senior Adversary Hunter will analyze adversarial capabilities impacting ICS/OT systems, develop tools for analysis, and contribute to threat detection and reporting.
Summary Generated by Built In

Dragos is on a relentless mission to defend industrial organizations that provide us with the necessities of modern civilization; running water, functioning electricity, and safe industrial working environments. As the market leader in ICS/OT Cybersecurity, we are dedicated to arming our customers with best-in-class technology, threat intelligence, and services to protect their systems as effectively and efficiently as possible. We’re a remote-first culture with operations in North America, Europe, the Middle East, and APAC. We’re looking for mission-oriented teammates who embody our core values of authenticity, transparency, and trust. Are you ready to make a difference? Come join a mission that can save the world! 

About the Role: 

Our Threat Intelligence Team is seeking a Senior Adversary Hunter who will hunt for, identify, and analyze the tools, techniques, and capabilities that adversaries develop to disrupt ICS/OT systems and devices across critical infrastructure sectors. You will serve as a technical specialist in understanding how threat actors build and deploy their arsenals against industrial environments—from custom malware and exploits to novel attack methodologies and tradecraft. In this role, you will partner closely with our Adversary Hunters and collaborate with teams across the organization to provide critical intelligence on adversary capabilities that inform detection strategies, threat assessments, and customer advisories. You will maintain and develop your own tools and scripts for capability identification and analysis, with opportunities to productize these solutions for internal use across Dragos, enhancing our collective ability to understand and defend against evolving threats to critical infrastructure. 

Responsibilities: 

  • Contribute to the development of complex features that enhance system performance, reliability, and usability. 
  • Author design documentation for small-to-medium projects, collaborating closely with threat hunt, research, intelligence, product and engineering teams.
  • Support technical excellence by refining coding standards, building processes and testing frameworks.
  • Diagnose and resolve complex defects, delivering robust solutions independently.
  • Communicate progress clearly, present demos, and coordinate timely feature releases within the team.
  • Support multiple Threat Groups and TATs concurrently, contributing to WorldView reporting and Synapse-based assessments.
  • Assist in representing the team in Year in Review and webinars, preparing materials and supporting senior SMEs.
  • Improve and document analysis methodologies, identify opportunities for automation in Synapse, and recommend solutions to visibility gaps in telemetry and data sources.
  • Apply expertise in network telemetry tools (e.g., NetFlow, Censys, Shodan) and file-based analysis platforms (e.g., VirusTotal, Joe Sandbox) to support threat hunting and adversary tracking.
  • Utilize Synapse and Storm Query Language for data modeling, threat hunting, and investigative workflows, while contributing to improvements in data interrogation tools.
  • Contribute to external intel-sharing relationships aligned with assigned industries, supporting senior staff in fostering collaboration.
  • Provide hunting support during surge events and incident response engagements, including triage under supervision. 

Qualifications:  

  • 2–3 years of experience in Capabilities Development, Threat Hunting, Network-Based Intrusion Analysis, Vulnerability Analysis, and/or Detections Development.
  • Experience with software development in C#, Python, or similar languages.
  • Familiarity with pivoting across the Diamond Model, all stages of the Kill Chain, and MITRE ATT&CK.
  • Strong report writing skills, with experience producing technical intelligence reports for operational teams and customer-facing audiences.
  • Demonstrated knowledge of adversarial Threat Groups, including tactics, techniques, procedures, and the adversary lifecycle.
  • Experience contributing to cross-functional projects and collaborating with internal and external teams.
  • Knowledge of network analysis and common malware functionality and operations. 

Compensation: 

  • Salary: $135,000
  • Competitive Equity Package  
  • Comprehensive Benefits Plan 

 

#LI-JF1 #LI-REMOTE   



Dragos is an Equal Opportunity Employer and considers applicants for employment without regard to race, color, religion, sex, orientation, national origin, age, disability, genetics, or any other basis forbidden under federal, state, or local laws. All new hires must pass a background check as a condition of employment.

Top Skills

C#
Censys
Joe Sandbox
Netflow
Python
Shodan
Storm Query Language
Synapse
Virustotal
Am I A Good Fit?
beta
Get Personalized Job Insights.
Our AI-powered fit analysis compares your resume with a job listing so you know if your skills & experience align.

The Company
Hanover, MD
295 Employees
Year Founded: 2016

What We Do

Dragos is an industrial (OT/ICS/IIoT) cybersecurity company on a mission to safeguard civilization. Our integrated software platform provides critical visibility into ICS and OT networks so that threats are identified, and can be addressed before they become significant events, our solutions are optimized for emerging applications like the Industrial Internet of Things (IIoT), enabling our clients in power and water utilities, energy, and manufacturing industries to establish a resilient and adaptable security posture.

Similar Jobs

Zapier Logo Zapier

Senior Product Manager

Artificial Intelligence • Productivity • Software • Automation
Remote
2 Locations
760 Employees

Unanet Logo Unanet

Principal Software Engineer

Enterprise Web • Fintech • Marketing Tech • Software
Remote
United States
450 Employees
160K-175K Annually

Digible Logo Digible

Director of Product

AdTech • Agency • Artificial Intelligence • Digital Media • Marketing Tech • Social Media • PropTech
Easy Apply
Remote or Hybrid
Englewood, CO, USA
145 Employees
210K-240K Annually

Samsara Logo Samsara

Marketing Manager

Artificial Intelligence • Cloud • Computer Vision • Hardware • Internet of Things • Software
Easy Apply
Remote or Hybrid
United States
4000 Employees
111K-168K Annually

Similar Companies Hiring

Silverfort Thumbnail
Security • Sales • Information Technology • Cybersecurity • Automation
GB
507 Employees
Oso Thumbnail
Software • Security • Infrastructure as a Service (IaaS)
New York, New York
36 Employees
Credal.ai Thumbnail
Software • Security • Productivity • Machine Learning • Artificial Intelligence
Brooklyn, NY

Sign up now Access later

Create Free Account

Please log in or sign up to report this job.

Create Free Account