Senior OT Threat Hunter

Dragos
United States
Workplace: RemoteFull timeUSD 140,000+Function: Administration & Executive AssistanceSkills: ["Communication","Mentoring","Escalation","Collaboration","Analytical thinking"]

Lead hands-on, hypothesis-driven threat hunts in customer OT/ICS networks to identify sophisticated adversaries and improve detection quality. Operate as the escalation point for high-severity alerts, configure and optimize the Dragos Platform and hunt profiles to reduce false alarms, and translate suspicious activity into clear incident summaries and custom reports. Collaborate with Intelligence, Services, and Engineering to refine hunting hypotheses, indicators, and platform outputs.

Loading

Loading job details...

Preparing the role view and application actions.

FursaFursa
Dragos
Dragos
21 hours ago

Senior OT Threat Hunter

✓ Verified Job

Canonical indexed version, validated from employer's careers page.

Source: Company careers pageValidated by: Fursa AI
Last checked: 12 hours agoStatus: Live

Job Summary

Lead hands-on, hypothesis-driven threat hunts in customer OT/ICS networks to identify sophisticated adversaries and improve detection quality. Operate as the escalation point for high-severity alerts, configure and optimize the Dragos Platform and hunt profiles to reduce false alarms, and translate suspicious activity into clear incident summaries and custom reports. Collaborate with Intelligence, Services, and Engineering to refine hunting hypotheses, indicators, and platform outputs.
Location: United States
Workplace: Remote
Employment Type: Full time
Job Function: Administration & Executive Assistance
Seniority: Mid level

Key Responsibilities

  • •Lead hands-on, hypothesis-driven threat hunts across industrial (ICS/OT) networks with Intelligence, R&D, and Engineering.
  • •Serve as the top escalation point for high-severity alerts, guiding OT Hunters/analysts and communicating directly with clients.
  • •Configure and optimize the Dragos Platform and hunt profiles to detect real threats and reduce false alarms.
  • •Develop new hunting hypotheses and hunt content, and provide structured feedback to Detection Engineering and Intelligence teams to sharpen indicators and outputs.
  • •Create scripts, workflows, and tooling to improve hunting speed and repeatability, while mentoring junior team members in OT protocols and threat intelligence.

Pay and Benefits

Salary: USD 140,000
Equity and Bonus:Equity

Key Requirements

  • •Demonstrated experience with hypothesis-based threat hunting and reasoning from an intelligence source to a testable hunt and successful investigation.
  • •Experience analyzing network telemetry to identify behavioral deviations/anomalies, not solely endpoint-focused.
  • •Strong networking knowledge (e.g., TCP/IP, firewalls, DNS, packet analysis).
  • •Experience with PCAP analysis and/or IDS/IPS, SIEM platforms, or other network traffic analysis tools in an OT context.
  • •Deep familiarity with OT-relevant adversary TTPs, including MITRE ATT&CK for ICS, and ability to communicate complex findings to clients and internal stakeholders.
Experience:CybersecurityThreat huntingOT securityICSIndustrial networksSIEMMITRE ATT&CK
Skills:CommunicationMentoringEscalationCollaborationAnalytical thinking
Tech Stack:Dragos PlatformICS/OTMITRE ATT&CK for ICSPCAP analysisIDS/IPSSIEMTCP/IPFirewallsDNSPacket analysis

Company Brief

Dragos
Provides industrial cybersecurity solutions protecting operational technology (OT) and industrial control systems (ICS) with threat detection, incident response, and asset visibility to secure critical infrastructure and manufacturing environments.
Industry: Cybersecurity
Company Size: Large (251 to 1,000 employees)
Growth: Scaleup
Valuation: Unicorn (USD 1B+)
Funding: Series D
Headquarters: Washington, D.C., United States
Founded: 2016
WebsiteLinkedIn