Dragos Logo

Dragos

Associate Principal Malware Analyst

Posted One Month Ago
Be an Early Applicant
Easy Apply
Remote
Hiring Remotely in United States
182K-182K Annually
Senior level
Easy Apply
Remote
Hiring Remotely in United States
182K-182K Annually
Senior level
Lead deep analysis of ICS-targeting malware and firmware, perform advanced reverse engineering and deobfuscation, develop Yara signatures and novel detections, produce customer-facing technical reports, refine the malware analysis pipeline, and collaborate with hunters, detection engineers, and intelligence analysts to turn research into deployable defenses.
The summary above was generated by AI

At Dragos, the mission is personal. The systems we protect deliver the water you drink, power your home, and keep the hospitals your community depends on running. Those critical infrastructure systems that power our civilization around the world are under attack every day by adversaries. When those systems fail, people are immediately at risk. We are the global leader in xOT cybersecurity, combining technology, threat intelligence, and expert services. The people here chose this work because they understand what is at stake. Here, you will find a remote-first mission-driven team across North America, Europe, the Middle East, and APAC built on authenticity, transparency, and trust. If safeguarding the systems that protect your family, friends, and community is the kind of work that matters to you, you are in the right place. 

About the Role: 

The Dragos Malware Analysis team provides critical defense against the most sophisticated threats targeting critical infrastructure by analyzing adversary tools, building detections, and delivering intelligence that shapes how the industry understands ICS security. As an Associate Principal Malware Analyst, you'll lead deep-dive analysis of ICS-related malware and firmware, develop novel detection methods, and produce Yara signatures and technical reports that translate findings into action. You'll partner closely with detection engineers, hunters, and intelligence analysts to turn your research into deployable defenses while helping refine the malware analysis pipeline itself. This is a role where your expertise directly impacts how Dragos and the wider industry detect and defend against the most consequential threats in the space.

Responsibilities: 

  • Identify and assess highly sophisticated threats targeting ICS and critical infrastructure, evaluating their operational impact and severity.
  • Develop innovative analysis methods and conduct advanced reverse engineering and deobfuscation of ICS-specific malware, software, and firmware.
  • Create Yara signatures and partner closely with detection engineers to develop novel, ICS-specific threat detections informed by deep malware analysis findings.
  • Write persuasive customer-facing technical reports and internal documentation that translates complex malware findings into clear operational impact for diverse audiences.
  • Refine and evolve the malware analysis pipeline with new methods and procedures to address emerging techniques and tooling as they surface in the threat landscape.
  • Collaborate across teams—with hunters, intelligence analysts, and detection engineers—to drive malware-related threat research and solve complex technical problems.
  • Exercise independent judgment in selecting analytical methods and serve as a trusted technical advisor on complex malware analysis and detection questions across the organization.

Qualifications:  

  • 5-8 years of experience in malware analysis, reverse engineering, or a related ICS/OT cybersecurity discipline.
  • Advanced proficiency in static and dynamic malware reverse engineering using tools such as disassemblers, debuggers, and decompilers (e.g., IDA Pro, Ghidra, x64dbg).
  • Demonstrated experience analyzing ICS-specific software, firmware, and embedded systems.
  • Strong Yara signature development skills, with experience building detection analytics for novel malware and attack techniques.
  • Proven ability to write clear, persuasive, customer-facing technical reports on complex malware findings.
  • Experience contributing to or improving a malware analysis pipeline, tooling, or workflow.
  • Comfortable collaborating with detection engineers, hunters, and intelligence analysts on cross-team technical problems.
  • Familiarity with ICS/OT protocols, threat groups, and the broader critical infrastructure threat landscape is a major plus. 

Compensation: 

  • Salary: $182,000  
  • Competitive Equity Package  
  • Comprehensive Benefits Plan 

 

#LI-JF1 #LI-REMOTE   



Dragos is an Equal Opportunity Employer and considers applicants for employment without regard to race, color, religion, sex, orientation, national origin, age, disability, genetics, or any other basis forbidden under federal, state, or local laws. All new hires must pass a background check as a condition of employment.

Similar Jobs at Dragos

2 Days Ago
Easy Apply
Remote
United States
Easy Apply
140K-140K Annually
Senior level
140K-140K Annually
Senior level
Security • Cybersecurity
Manage FP&A activities including headcount reporting, annual operating planning, rolling forecasts, variance analysis, financial modeling, sales and revenue forecasting, and budget-to-actual reviews. Provide analytical insights and decision support to operational leaders, partner cross-functionally on company initiatives, and communicate business drivers, KPIs, and financial results to stakeholders.
Top Skills: AdaptiveExcelNetSuitePower BISalesforceTableauVena
4 Days Ago
Easy Apply
Remote
United States
Easy Apply
108K-108K Annually
Senior level
108K-108K Annually
Senior level
Security • Cybersecurity
Support sales territory planning, quota alignment, compensation processes, revenue operations, CRM data integrity, reporting, audits, and process improvements. Analyze market and account data to design equitable territories, reconcile discrepancies, improve workflows, support system implementations, troubleshoot issues, and develop training and documentation. Partner with sales leadership and cross-functional teams to optimize territory structure and revenue operations capabilities.
Top Skills: Business Intelligence ToolsCrm SystemsSalesforceTerritory Management Systems
5 Days Ago
Easy Apply
Remote
United States
Easy Apply
145K-145K Annually
Senior level
145K-145K Annually
Senior level
Security • Cybersecurity
Design, deploy, and maintain Google Cloud infrastructure supporting internal IT. Build repeatable Terraform-based deployments, manage GCP architecture and networking, implement security and compliance controls, monitor performance and costs, troubleshoot cloud environments, and maintain documentation. Collaborate with IT, security, and engineering teams while supporting Azure, AWS, on-premises connectivity, Kubernetes workloads, and infrastructure integration during acquisitions.
Top Skills: AWSBashClaude CodeCloud InterconnectCloud MonitoringCloud StorageCompute EngineDatadogDnsEntra IdFirewallsGoogle Cloud Platform (Gcp)Google Kubernetes Engine (Gke)IamInfrastructure As Code (Iac)KubernetesLoad BalancingAzureNistPythonRoutingSecurity Command CenterSoc 2SwitchingTcp/IpTerraformVlansVpcVpc Service ControlsVpn

What you need to know about the Seattle Tech Scene

Home to tech titans like Microsoft and Amazon, Seattle punches far above its weight in innovation. But its surrounding mountains, sprinkled with world-famous hiking trails and climbing routes, make the city a destination for outdoorsy types as well. Established as a logging town before shifting to shipbuilding and logistics, the Emerald City is now known for its contributions to aerospace, software, biotech and cloud computing. And its status as a thriving tech ecosystem is attracting out-of-town companies looking to establish new tech and engineering hubs.

Key Facts About Seattle Tech

  • Number of Tech Workers: 287,000; 13% of overall workforce (2024 CompTIA survey)
  • Major Tech Employers: Amazon, Microsoft, Meta, Google
  • Key Industries: Artificial intelligence, cloud computing, software, biotechnology, game development
  • Funding Landscape: $3.1 billion in venture capital funding in 2024 (Pitchbook)
  • Notable Investors: Madrona, Fuse, Tola, Maveron
  • Research Centers and Universities: University of Washington, Seattle University, Seattle Pacific University, Allen Institute for Brain Science, Bill & Melinda Gates Foundation, Seattle Children’s Research Institute

Sign up now Access later

Create Free Account

Please log in or sign up to report this job.

Create Free Account