SlipstreamJobs tracks this role from the company's public career site. Apply directly on the employer's site.
Salary: USD 165,000 - 0 / annual
Dragos is seeking a Cyber Threat Intelligence Analyst to directly support a federal customer at their site in Norfolk, VA. You will partner closely with the customer's Security and Intel teams to deliver tailored ICS/OT (Industrial Control Systems/Operational Technology) threat intelligence products. Your work will involve researching and analyzing threats against critical infrastructure, translating findings into briefings, written reports, and operational guidance. You will work onsite with customer staff, develop deep understanding of their systems and environment, and collaborate across their organization to ensure intelligence connects to real defensive action.
Key responsibilities include:
- Directly supporting the customer with their ICS/OT security and cyber threat intelligence needs
- Conducting threat research, analysis, and hunting tasks using proprietary and commercial resources to respond to client inquiries and craft tailored deliverables
- Developing expertise in ICS/OT threats and risks relevant to the customer's environment, including attack surface analysis, threat hunting strategies, and threat modeling
- Supporting the customer's cybersecurity initiatives including threat hunts, incident response, and exercises
- Partnering with internal Threat Intelligence peers to craft operational and strategic content for global customers
- Providing support and feedback to internal teams such as Incident Response, OT-Watch, Professional Services, and Customer Experience
Requirements:
- Active Top Secret (TS) Security Clearance (must-have)
- Willingness and ability to work onsite in Norfolk, VA (must-have)
- At least 5 years of hands-on experience in the threat intelligence field using multiple resources and disciplines including network-based data (NetFlow), OSINT, SIEMs, malware repositories, and DFIR
- Proven ability to create effective intelligence analysis products relevant for government agencies, federal civilian organizations, or critical infrastructure sectors
- Experience integrating unclassified and classified threat intelligence into cohesive deliverables
- Threat hunting experience within ICS/OT environments or related technology settings
- Proven experience producing operational and strategic intelligence reporting using confidence-based assessments
- Proficiency with data aggregation, hunting, and analysis tools (e.g., Synapse)
- Experience building threat models relevant to specific threat and risk profiles