SlipstreamJobsFresh Startup & VC-Backed Jobs

Senior OT Security Analyst

Dragos - Remote - Remote - posted 2026-09-28

Apply on the company site

SlipstreamJobs tracks this role from the company's public career site. Apply directly on the employer's site.

Salary: USD 110,000 - 0 / annual

Dragos is the global leader in operational technology (OT) cybersecurity, protecting critical infrastructure systems including water, power, and healthcare. As a Senior OT Security Analyst on the OT Watch Complete team, you will lead frontline monitoring and triage operations responsible for identifying adversary activity in customer OT environments. You will serve as a senior investigator and shift leader, guiding junior analysts through detection alert triage and network telemetry analysis from the Dragos Platform. Your responsibilities include investigating suspicious activity to identify misconfigurations, anomalies, and potential malicious behavior across industrial networks; escalating findings to incident responders and threat hunters with clear, actionable documentation; and writing incident summaries and operational reports for internal stakeholders and customers. You will partner across teams—analysts, threat hunters, incident responders, platform engineers, and detection engineering—to tune detection logic, reduce false positives, and shape new platform detections and playbooks. You will also support the full scope of OT Watch Complete services, including asset classification, vulnerability management, hardening recommendations, and direct customer information requests. The role offers continuous learning in ICS/OT protocols, adversary tradecraft, and industrial threat intelligence. Initially, the schedule is Monday-Friday 8am-5pm (with on-call weekends in your regional timezone: MDT for US, CEST for Europe, AEST for Australia). The schedule will later transition to a 4-day/week, 10-hour shift model with weekend coverage, offering flexibility to choose between Sunday-Wednesday or Wednesday-Saturday shifts. **Requirements:** - 3–5 years of experience in network security with hands-on exposure to real-world threat investigation - Solid understanding of core networking concepts (TCP/IP, firewalls, DNS, packet analysis) - Hands-on experience with security monitoring tools such as IDS/IPS, SIEM platforms, or network traffic analyzers - Strong written and verbal communication skills with close attention to detail - Genuine interest in ICS/OT cybersecurity and critical infrastructure defense, with ability to quickly learn complex industrial-specific concepts - Comfortable working independently in a remote environment while coordinating across distributed teams - Flexibility to participate in shift-based coverage and occasional weekend/on-call work **Preferred Qualifications:** - Experience working on a Security Operations Center (SOC) team - Familiarity with OT protocols (Modbus, DNP3, Ethernet/IP) and ICS environments - Applied knowledge of adversary tactics and frameworks relevant to OT (e.g., MITRE ATT&CK for ICS) - Hands-on lab or internship experience in cybersecurity operations, threat hunting, or digital forensics - Experience in packet capture (PCAP) analysis or basic scripting (Python, Bash)

Similar roles