Dragos Logo

Dragos

Senior Threat Intelligence Analyst

Posted 12 Days Ago
Be an Early Applicant
Easy Apply
Remote
Hiring Remotely in United Kingdom
Senior level
Easy Apply
Remote
Hiring Remotely in United Kingdom
Senior level
The role involves delivering threat intelligence, conducting threat hunting and analysis in ICS/OT environments, and providing customer support while producing tailored intelligence reports and insights.
The summary above was generated by AI

Dragos is on a relentless mission to defend industrial organizations that provide us with the necessities of modern civilization; running water, functioning electricity, and safe industrial working environments. As the market leader in ICS/OT Cybersecurity, we are dedicated to arming our customers with best-in-class technology, threat intelligence, and services to protect their systems as effectively and efficiently as possible. We’re a remote-first culture with operations in North America, Europe, the Middle East, and APAC. We’re looking for mission-oriented teammates who embody our core values of authenticity, transparency, and trust. Are you ready to make a difference? Come join a mission that can save the world! 

About the Role: 

We’re seeking a Senior Cyber Threat Intelligence Analyst to partner directly with Dragos customers and deliver tailored, high‑impact threat intelligence through written reports, briefings, and in‑person engagement. In this role, you’ll serve as the customer’s dedicated CTI resource - providing relevant intelligence that guides their OT security journey and collaborating across Dragos delivery teams to maximize the value of each engagement. Our ideal candidate has experience delivering threat intelligence in a service‑oriented environment, a working knowledge of industrial control systems and familiarity with incident response functions. You’ll also contribute to research on emerging OT threats and help shape security outcomes in a rapidly evolving industrial cybersecurity landscape. 

Responsibilities:  

  • Integrate directly with client ICS/OT security workflows, providing hands‑on threat intelligence support, hunting, and guidance aligned to each customer’s operational environment.
  • Conduct ICS/OT threat hunting, research, and analysis to identify adversary activity, assess risk, and support response and mitigation efforts within client environments.
  • Produce tailored intelligence deliverables--including recurring reports, deep‑dive analyses, alerts, and advisories--based on client priority intelligence requirements.
  • Leverage Dragos intelligence, platform data, and OSINT to inform client‑focused analysis, hunting activities, and actionable reporting.
  • Develop deep expertise in ICS/OT threats and risks relevant to specific industries and environments, including attack surface analysis, threat modeling, and hunting strategies.
  • Create industry‑focused technical, operational, and strategic intelligence content that supports individual clients and the broader Dragos WorldView customer community, while collaborating with internal teams to enhance overall outcomes.
  • Provide support and feedback to internal Dragos teams including Incident Response, OT‑Watch, Customer Experience, Intelligence and Professional Services. 

Qualifications:  

  • 4+ years of experience in Cyber Threat Intelligence (CTI), using multiple data sources such as network data (e.g., NetFlow), OSINT, SIEMs, malware repositories, and DFIR techniques.
  • Hands‑on experience performing threat hunting in ICS/OT or closely related environments (minimum 2 years), with an understanding of how adversaries target operational systems.
  • Experience working in customer‑facing roles (e.g., consulting or managed services), including presenting intelligence findings and supporting client needs.
  • Strong CTI writing and communication skills, with experience producing clear, confidence‑based intelligence assessments and deliverables.
  • Knowledge of ICS/OT threats and adversary behavior, including TTPs, major historical attacks, and impacts across industrial sectors such as energy, manufacturing, utilities, or government.
  • Solid understanding of ICS/OT technologies, including industrial networks, common protocols, and OT assets such as PLCs, HMIs, and RTUs.
  • Knowledge of security and defender frameworks, such as MITRE ATT&CK, D3FEND, and the ICS Cyber Kill Chain.

Compensation: 

  • Salary: £75,000
  • Competitive Equity Package  
  • Comprehensive Benefits Plan 

 

#LI-JF1 #LI-REMOTE   



Dragos is an Equal Opportunity Employer and considers applicants for employment without regard to race, color, religion, sex, orientation, national origin, age, disability, genetics, or any other basis forbidden under federal, state, or local laws. All new hires must pass a background check as a condition of employment.

Top Skills

Cyber Threat Intelligence
D3Fend
Dfir
Hmis
Ics/Ot Technologies
Industrial Networks
Mitre Att&Ck
Osint
Plcs
Rtus
SIEM

Similar Jobs

4 Hours Ago
Remote or Hybrid
United Kingdom
Mid level
Mid level
Cloud • Computer Vision • Information Technology • Sales • Security • Cybersecurity
The Security Advisor II ensures customer security posture by assessing their Falcon environment, providing recommendations, resolving issues, and coordinating with internal teams to improve overall security.
Top Skills: LinuxmacOSWindows
6 Hours Ago
In-Office or Remote
United Kingdom
Mid level
Mid level
Machine Learning • Natural Language Processing
The Hebrew Linguist manages translation quality and processes, coordinates linguists, performs edits, and ensures client satisfaction while meeting project deadlines.
Top Skills: Cat ToolsJIRAOffice ApplicationsSdl StudioWindowsXtm
6 Hours Ago
Remote
United Kingdom
Entry level
Entry level
Edtech • Healthtech • Information Technology • Hospitality
Provide fast and empathetic support to workplace customers, resolving issues via voice and email while collaborating with cross-functional teams to enhance customer experience.
Top Skills: Zendesk

What you need to know about the London Tech Scene

London isn't just a hub for established businesses; it's also a nursery for innovation. Boasting one of the most recognized fintech ecosystems in Europe, attracting billions in investments each year, London's success has made it a go-to destination for startups looking to make their mark. Top U.K. companies like Hoptin, Moneybox and Marshmallow have already made the city their base — yet fintech is just the beginning. From healthtech to renewable energy to cybersecurity and beyond, the city's startups are breaking new ground across a range of industries.

Sign up now Access later

Create Free Account

Please log in or sign up to report this job.

Create Free Account