Dragos Logo

Dragos

Senior Adversary Hunter - Capabilities Development

Posted 5 Days Ago
Be an Early Applicant
Easy Apply
Remote
Hiring Remotely in United States
135K-135K Annually
Mid level
Easy Apply
Remote
Hiring Remotely in United States
135K-135K Annually
Mid level
The Senior Adversary Hunter will analyze adversarial capabilities impacting ICS/OT systems, develop tools for analysis, and contribute to threat detection and reporting.
The summary above was generated by AI

Dragos is on a relentless mission to defend industrial organizations that provide us with the necessities of modern civilization; running water, functioning electricity, and safe industrial working environments. As the market leader in ICS/OT Cybersecurity, we are dedicated to arming our customers with best-in-class technology, threat intelligence, and services to protect their systems as effectively and efficiently as possible. We’re a remote-first culture with operations in North America, Europe, the Middle East, and APAC. We’re looking for mission-oriented teammates who embody our core values of authenticity, transparency, and trust. Are you ready to make a difference? Come join a mission that can save the world! 

About the Role: 

Our Threat Intelligence Team is seeking a Senior Adversary Hunter who will hunt for, identify, and analyze the tools, techniques, and capabilities that adversaries develop to disrupt ICS/OT systems and devices across critical infrastructure sectors. You will serve as a technical specialist in understanding how threat actors build and deploy their arsenals against industrial environments—from custom malware and exploits to novel attack methodologies and tradecraft. In this role, you will partner closely with our Adversary Hunters and collaborate with teams across the organization to provide critical intelligence on adversary capabilities that inform detection strategies, threat assessments, and customer advisories. You will maintain and develop your own tools and scripts for capability identification and analysis, with opportunities to productize these solutions for internal use across Dragos, enhancing our collective ability to understand and defend against evolving threats to critical infrastructure. 

Responsibilities: 

  • Contribute to the development of complex features that enhance system performance, reliability, and usability. 
  • Author design documentation for small-to-medium projects, collaborating closely with threat hunt, research, intelligence, product and engineering teams.
  • Support technical excellence by refining coding standards, building processes and testing frameworks.
  • Diagnose and resolve complex defects, delivering robust solutions independently.
  • Communicate progress clearly, present demos, and coordinate timely feature releases within the team.
  • Support multiple Threat Groups and TATs concurrently, contributing to WorldView reporting and Synapse-based assessments.
  • Assist in representing the team in Year in Review and webinars, preparing materials and supporting senior SMEs.
  • Improve and document analysis methodologies, identify opportunities for automation in Synapse, and recommend solutions to visibility gaps in telemetry and data sources.
  • Apply expertise in network telemetry tools (e.g., NetFlow, Censys, Shodan) and file-based analysis platforms (e.g., VirusTotal, Joe Sandbox) to support threat hunting and adversary tracking.
  • Utilize Synapse and Storm Query Language for data modeling, threat hunting, and investigative workflows, while contributing to improvements in data interrogation tools.
  • Contribute to external intel-sharing relationships aligned with assigned industries, supporting senior staff in fostering collaboration.
  • Provide hunting support during surge events and incident response engagements, including triage under supervision. 

Qualifications:  

  • 2–3 years of experience in Capabilities Development, Threat Hunting, Network-Based Intrusion Analysis, Vulnerability Analysis, and/or Detections Development.
  • Experience with software development in C#, Python, or similar languages.
  • Familiarity with pivoting across the Diamond Model, all stages of the Kill Chain, and MITRE ATT&CK.
  • Strong report writing skills, with experience producing technical intelligence reports for operational teams and customer-facing audiences.
  • Demonstrated knowledge of adversarial Threat Groups, including tactics, techniques, procedures, and the adversary lifecycle.
  • Experience contributing to cross-functional projects and collaborating with internal and external teams.
  • Knowledge of network analysis and common malware functionality and operations. 

Compensation: 

  • Salary: $135,000
  • Competitive Equity Package  
  • Comprehensive Benefits Plan 

 

#LI-JF1 #LI-REMOTE   



Dragos is an Equal Opportunity Employer and considers applicants for employment without regard to race, color, religion, sex, orientation, national origin, age, disability, genetics, or any other basis forbidden under federal, state, or local laws. All new hires must pass a background check as a condition of employment.

Top Skills

C#
Censys
Joe Sandbox
Netflow
Python
Shodan
Storm Query Language
Synapse
Virustotal

Similar Jobs

2 Hours Ago
Remote or Hybrid
Chicago, IL, USA
147K-258K Annually
Senior level
147K-258K Annually
Senior level
Artificial Intelligence • Cloud • HR Tech • Information Technology • Productivity • Software • Automation
The Engineering Manager will lead a team to enhance backend systems, focus on customer adoption, manage project risks, and ensure software quality and performance.
Top Skills: JavaJavaScriptJunitSeleniumTestng
2 Hours Ago
Remote or Hybrid
USA
Senior level
Senior level
Cloud • Computer Vision • Information Technology • Sales • Security • Cybersecurity
The Senior Global Event Strategy Manager will develop and execute strategies for Fal.Con, optimize event experiences, and ensure alignment with CrowdStrike's strategic goals. Responsibilities include defining success metrics and collaborating with various teams.
Top Skills: Ai-Based TechnologiesData-Driven Insights
2 Hours Ago
Remote or Hybrid
USA
Senior level
Senior level
Cloud • Computer Vision • Information Technology • Sales • Security • Cybersecurity
As a UI Engineer, you will maintain the Falcon platform's user interface, build applications in JavaScript using Ember.js, and collaborate with cross-functional teams.
Top Skills: CSSEmberHTMLJavaScript

What you need to know about the Colorado Tech Scene

With a business-friendly climate and research universities like CU Boulder and Colorado State, Colorado has made a name for itself as a startup ecosystem. The state boasts a skilled workforce and high quality of life thanks to its affordable housing, vibrant cultural scene and unparalleled opportunities for outdoor recreation. Colorado is also home to the National Renewable Energy Laboratory, helping cement its status as a hub for renewable energy innovation.

Key Facts About Colorado Tech

  • Number of Tech Workers: 260,000; 8.5% of overall workforce (2024 CompTIA survey)
  • Major Tech Employers: Lockheed Martin, Century Link, Comcast, BAE Systems, Level 3
  • Key Industries: Software, artificial intelligence, aerospace, e-commerce, fintech, healthtech
  • Funding Landscape: $4.9 billion in VC funding in 2024 (Pitchbook)
  • Notable Investors: Access Venture Partners, Ridgeline Ventures, Techstars, Blackhorn Ventures
  • Research Centers and Universities: Colorado School of Mines, University of Colorado Boulder, University of Denver, Colorado State University, Mesa Laboratory, Space Science Institute, National Center for Atmospheric Research, National Renewable Energy Laboratory, Gottlieb Institute

Sign up now Access later

Create Free Account

Please log in or sign up to report this job.

Create Free Account