<div class="content-intro"><p><span class="TextRun SCXW107525881 BCX8" lang="EN-US" data-contrast="none"><span class="NormalTextRun SCXW107525881 BCX8">At Dragos, the mission is personal. The systems we protect deliver the water you drink, power your home, and keep the hospitals your community depends on running. Those critical infrastructure systems that power our civilization around the world are under attack every day by adversaries. When those systems fail, people are </span><span class="NormalTextRun SCXW107525881 BCX8">immediately</span><span class="NormalTextRun SCXW107525881 BCX8"> at risk. </span><span class="NormalTextRun SCXW107525881 BCX8">We are the global leader in </span><span class="NormalTextRun SCXW107525881 BCX8">xOT</span><span class="NormalTextRun SCXW107525881 BCX8"> cybersecurity, combining technology, threat intelligence, and expert services. The people here chose this work because they understand </span><span class="NormalTextRun SCXW107525881 BCX8">what is</span><span class="NormalTextRun SCXW107525881 BCX8"> at stake</span><span class="NormalTextRun SCXW107525881 BCX8">. Here, you will find a remote-first mission-driven team across North America, Europe, the Middle East, and APAC built on authenticity, transparency, and trust. If safeguarding the systems that protect your family, friends, and community is the kind of work that matters to you, you are in the right place.</span></span><span class="EOP Selected SCXW107525881 BCX8" data-ccp-props="{"134233117":false,"134233118":false,"201341983":0,"335551550":1,"335551620":1,"335559685":0,"335559737":0,"335559738":120,"335559739":160,"335559740":360}"> </span></p></div><p><strong><span data-contrast="auto">About the Role</span></strong><span data-contrast="auto">:</span><span data-ccp-props="{}"> </span></p>
<p><span data-contrast="auto">As a Senior OT Security Analyst on the </span><span data-contrast="auto">OT Watch Complete</span><span data-contrast="auto"> team, you will help lead a frontline monitoring and triage unit responsible for identifying potential adversary activity in customer operational technology (OT) environments. You will work closely with other experienced industrial defenders and mentor junior analysts to investigate anomalous network behaviors, validate detection triggers, and support threat hunters and incident responders with high-quality escalations. You will also operate and maintain the Dragos platform on behalf of customers, helping manage vulnerabilities, tune detections, properly classify OT assets, and provide input on response recommendations.</span><span data-ccp-props="{"201341983":0,"335559738":240,"335559739":240,"335559740":279}"> This is a great opportunity for experienced cybersecurity professionals β especially those passionate about industrial security β to build hands-on experience in active OT security operations.</span></p>
<p><strong><span data-contrast="auto">Responsibilities</span></strong><span data-contrast="auto">:</span><span data-ccp-props="{}"> </span></p>
<ul>
<li>Lead shift operations, guiding analysts as they triage detection alerts and network telemetry from the Dragos Platform across customer OT environments β stepping in as shift leader for your region when needed.</li>
<li>Serve as a senior investigator, digging into suspicious activity to identify misconfigurations, anomalies, and potential malicious behavior across industrial networks.</li>
<li>Apply deep analysis and context to escalate findings to Incident Responders and threat hunters with clear, actionable documentation. </li>
<li>Partner across teams β analysts, threat hunters, incident responders, platform engineers, and Detection Engineering β to tune detection logic, reduce false positives, and shape new Dragos Platform detections and playbooks.</li>
<li>Write and deliver incident summaries and operational reports that give internal stakeholders and customers a clear read on what's happening in their environment.</li>
<li>Support the full scope of OT Watch Complete, from asset classification and vulnerability management to hardening recommendations and direct customer information requests.</li>
<li>Build expertise continuously in ICS/OT protocols, adversary tradecraft, and threat intelligence specific to industrial environments.</li>
</ul>
<p><strong><span data-contrast="auto">Qualifications</span></strong><span data-contrast="auto">:</span> <span data-ccp-props="{}"> </span></p>
<ul>
<li>3β5 years of experience in network security, ideally with hands-on exposure to real-world threat investigation.</li>
<li>Solid understanding of core networking concepts β TCP/IP, firewalls, DNS, packet analysis.</li>
<li>Hands-on experience with security monitoring tools, such as IDS/IPS, SIEM platforms, or network traffic analyzers.</li>
<li>Strong written and verbal communication skills, with close attention to detail β you'll be translating technical findings for both internal teams and customers.</li>
<li>Genuine interest in ICS/OT cybersecurity and a drive to defend critical infrastructure, paired with the ability to pick up complex, industrial-specific concepts quickly and apply them. </li>
<li>Comfortable working independently in a remote environment while coordinating across distributed teams.</li>
<li data-leveltext="ο·" data-font="Symbol" data-listid="2" data-list-defn-props="{"335552541":1,"335559685":720,"335559991":360,"469769226":"Symbol","469769242":[8226],"469777803":"left","469777804":"ο·","469777815":"hybridMultilevel"}" data-aria-posinset="2" data-aria-level="1">Flexibility to participate in shift-based coverage and occasional weekend/on-call work as needed. Note: The initial schedule will be Monday-Friday 8am-5pm, with on-call weekends (MDT for US, CEST for Europe, AEST for AUS). The schedule will later change to a 4 day/week, 10 hour shift model, which includes a day on the weekend. Shift schedules under the 4-day schedule will run Sunday-Wednesday and Wednesday-Saturday. Applicants will have the option to pick from either of the two shift schedules (Sunday-Wednesday or Wednesday-Saturday).<span data-ccp-props="{"201341983":0,"335559738":240,"335559739":240,"335559740":279}"> </span></li>
</ul>
<p><span data-ccp-props="{"201341983":0,"335559738":240,"335559739":240,"335559740":279}"><strong>Preferred Qualifications</strong>:</span></p>
<ul>
<li><span data-contrast="auto">Experience working on a Security Operations Center (SOC) team.</span><span data-ccp-props="{"201341983":0,"335559738":240,"335559739":240,"335559740":279}"> </span></li>
<li data-leveltext="ο·" data-font="Symbol" data-listid="1" data-list-defn-props="{"335552541":1,"335559685":720,"335559991":360,"469769226":"Symbol","469769242":[8226],"469777803":"left","469777804":"ο·","469777815":"hybridMultilevel"}" data-aria-posinset="2" data-aria-level="1"><span data-contrast="auto">Familiarity with OT protocols (e.g., Modbus, DNP3, Ethernet/IP) and ICS environments.</span></li>
<li data-leveltext="ο·" data-font="Symbol" data-listid="1" data-list-defn-props="{"335552541":1,"335559685":720,"335559991":360,"469769226":"Symbol","469769242":[8226],"469777803":"left","469777804":"ο·","469777815":"hybridMultilevel"}" data-aria-posinset="2" data-aria-level="1">Applied knowledge of adversary tactics and frameworks relevant to OT (e.g., MITRE ATT&CK for ICS).</li>
<li data-leveltext="ο·" data-font="Symbol" data-listid="1" data-list-defn-props="{"335552541":1,"335559685":720,"335559991":360,"469769226":"Symbol","469769242":[8226],"469777803":"left","469777804":"ο·","469777815":"hybridMultilevel"}" data-aria-posinset="2" data-aria-level="1">Hands-on lab or internship experience in cybersecurity operations, threat hunting, or digital forensics.</li>
<li data-leveltext="ο·" data-font="Symbol" data-listid="1" data-list-defn-props="{"335552541":1,"335559685":720,"335559991":360,"469769226":"Symbol","469769242":[8226],"469777803":"left","469777804":"ο·","469777815":"hybridMultilevel"}" data-aria-posinset="2" data-aria-level="1">Experience in packet capture (PCAP) analysis or basic scripting (e.g., Python, Bash).<span data-ccp-props="{"201341983":0,"335559738":240,"335559739":240,"335559740":279}"> </span></li>
</ul>
<p><strong><span data-contrast="auto">Compensation</span></strong><span data-contrast="auto">:</span><span data-ccp-props="{}"> </span></p>
<ul>
<li data-leveltext="ο·" data-font="Symbol" data-listid="3" data-list-defn-props="{"335552541":1,"335559683":0,"335559684":-2,"335559685":720,"335559991":360,"469769226":"Symbol","469769242":[8226],"469777803":"left","469777804":"ο·","469777815":"hybridMultilevel"}" data-aria-posinset="1" data-aria-level="1"><span data-contrast="none">Salary: Β£60,000</span></li>
<li data-leveltext="ο·" data-font="Symbol" data-listid="3" data-list-defn-props="{"335552541":1,"335559683":0,"335559684":-2,"335559685":720,"335559991":360,"469769226":"Symbol","469769242":[8226],"469777803":"left","469777804":"ο·","469777815":"hybridMultilevel"}" data-aria-posinset="1" data-aria-level="1">Competitive Equity Package <span data-ccp-props="{"134233117":false,"134233118":false,"335551550":0,"335551620":0,"335557856":16777215,"335559738":0,"335559739":0}"> </span></li>
<li data-leveltext="ο·" data-font="Symbol" data-listid="3" data-list-defn-props="{"335552541":1,"335559683":0,"335559684":-2,"335559685":720,"335559991":360,"469769226":"Symbol","469769242":[8226],"469777803":"left","469777804":"ο·","469777815":"hybridMultilevel"}" data-aria-posinset="1" data-aria-level="1">Comprehensive Benefits Plan<span data-ccp-props="{"134233117":false,"134233118":false,"335551550":0,"335551620":0,"335557856":16777215,"335559738":0,"335559739":0}"> </span></li>
</ul>
<p><span data-ccp-props="{}"> </span></p>
<p><span data-contrast="none">#LI-JF1 #LI-REMOTE </span></p><div class="content-conclusion"><p>Dragos is an Equal Opportunity Employer and considers applicants for employment without regard to race, color, religion, sex, orientation, national origin, age, disability, genetics, or any other basis forbidden under federal, state, or local laws. All new hires must pass a background check as a condition of employment.</p></div>
Find Jobs in United Kingdom on Arbeitnow