Dragos’ Professional Services and R&D team serves as boots-on-the-ground on solving industrial control system security challenges. We then bring that expertise back and integrate it into our software technology: The Dragos Platform. Dragos is looking for a Senior Detection Engineer to join its Research and Development team. This position works closely with Threat Operations Center, Intelligence teams and Engineering teams to drive insights in industrial protocol analysis, network situational awareness, and threat behavioral analytics.
Responsibilities
- Grow our existing repository of asset identification characterizations, protocol parsers, and threat detections for the Dragos Platform
- Understand open and proprietary protocols to identify software, devices, configurations, and vulnerabilities
- Analyze and build detection logic collected from a variety of embedded devices, firewalls, network devices, and hosts
- Generate innovative asset identification capabilities, protocol parsers, and threat behavior analytics for the Dragos Platform
- Produce network focused analytics from threat intelligence and research-generated source data
- Work with customers and industry partners to collect, analyze and capitalize on new host and network analytic opportunities in production environments.
Requirements
- Willingness to be a team player on fast-moving team focused on rapidly innovating the state of industrial security
- 4+ years in security operations, threat hunting, detection development OR offensive operations, threat emulation, security tool development
- Prior development experience with python, rust, ruby, go, lua, etc
- Awareness of common operating system internals and the ability to identify analytic opportunities
- Comfort working with multi-terabyte host and network datasets
- Applied knowledge of network communication fundamentals
- Adept at both verbal presentation and technical writing
Nice to Have
- Experience with industrial control systems such as SCADA, distributed control systems, building automation, etc
- Ability to travel (< 25%) to customer sites to collect and analyze data
Our mission at Dragos is to protect the world’s most critical infrastructure from adversaries who wish to do it harm. We help defend industrial organizations that provide us with the tenets of modern civilization: running water, functioning electricity, and safe industrial working environments.
We are practitioners who have lived through and solved real security challenges. Our team members have responded to incidents including the Ukraine 2015 power grid attack, analyzed the CRASHOVERRIDE malware responsible for the Ukraine 2016 electric grid attack, analyzed the TRISIS malware responsible for the petrochemical facility attack in 2017, built and led the National Security Agency mission to identify nation-states breaking into ICS, and performed assessments on hundreds of assets around the world.
We offer competitive salaries, equity, and a comprehensive benefits package including medical, dental, vision, disability, 401K and life insurance.
Dragos is proud to be an equal opportunity workplace dedicated to pursuing and hiring a diverse workforce. Come join us!