Dragos Logo

Dragos

Associate Principal Incident Responder

Posted 17 Days Ago
Be an Early Applicant
Easy Apply
Remote
Hiring Remotely in United States
170K-170K Annually
Senior level
Easy Apply
Remote
Hiring Remotely in United States
170K-170K Annually
Senior level
Leads OT incident response investigations as Incident Commander, including triage, threat hunting, compromise assessments, root-cause analysis, and customer advisory work. Develops incident response plans, playbooks, maturity assessments, and tabletop exercises; manages customer relationships and communications; contributes to threat research and thought leadership; mentors responders and improves IR methodologies. The role requires extensive ICS/OT cybersecurity, digital forensics, consulting, incident management, and communication experience.
The summary above was generated by AI

At Dragos, the mission is personal. The systems we protect deliver the water you drink, power your home, and keep the hospitals your community depends on running. Those critical infrastructure systems that power our civilization around the world are under attack every day by adversaries. When those systems fail, people are immediately at risk. We are the global leader in xOT cybersecurity, combining technology, threat intelligence, and expert services. The people here chose this work because they understand what is at stake. Here, you will find a remote-first mission-driven team across North America, Europe, the Middle East, and APAC built on authenticity, transparency, and trust. If safeguarding the systems that protect your family, friends, and community is the kind of work that matters to you, you are in the right place. 

About the Role: 

Our Professional Services team is hiring an Associate Principal Incident Responder to lead Operational Technology (OT) incident response investigations and advance customer OT IR maturity. This is primarily an incident response role with a strong consulting component: you will lead active response engagements and deliver advisory work, including maturity assessments, incident response planning workshops, tabletop exercises, retainer onboarding, and purple team engagement.  You will be responsible for supporting improvements to the Dragos IR methodology.  You will represent Dragos as a thought leader through community engagement. This role suits practitioners who are equally strong at executing investigations and advising customers on strategy, and who treat incident response planning and maturity work as core expertise rather than a secondary responsibility.

Responsibilities:  

  • Lead and execute incident response engagements for OT customers as Incident Commander, including triage, investigations, threat hunts, compromise assessments, and on-call response across onsite and remote environments.
  • Conduct post-incident reviews, root-cause analysis, and integrate lessons learned into playbooks, standard operating procedures, and response methodologies
  • Develop and deliver advisory services including incident response planning workshops, maturity assessments, playbook design, and tabletop exercises that advance customer readiness.
  • Manage customer relationships across onboarding, strategic advisory engagements, and stakeholder communication to align response capabilities with evolving business risk.
  • Contribute to research, threat analysis, and thought leadership (whitepapers, webinars, presentations) that influence Dragos methodology and training.
  • Mentor and develop teammates through hands-on training and incident guidance; serve as technical escalation point and role model for operational excellence.
  • Drive delivery accountability for quality, timeliness, and utilization; partner with internal teams on service expansion, scalability improvements, and represent Dragos mission to customers and industry.

Qualifications:  

  • 8+ years of hands-on incident response and digital forensics experience with proficiency in at least two forensics domains (network, hardware, memory, disk) -- methodology is more important than tool specialization.
  • Proven experience in ICS/OT cybersecurity including knowlege of industrial architecture, threat landscapes, vulnerabilities, and applicable frameworks and standards.
  • Proven ability to lead end-to-end investigations, correlate events across multiple data types, and uncover threats through methodical analysis and pivoting.
  • Proven incident management and communication ability: able to manage coordination during incidents, guide customers calmly and confidently through high-pressure situations, and author customer-facing documentation, playbooks, and executive briefings.
  • Consulting and advisory experience translating technical depth into strategic customer guidance, incident response planning, and recommendations for advancing incident readiness and response maturity.
  • Ability to work independently and remotely while coordinating effectively across distributed teams.
  • Willingness to travel up to 40% (domestic and some international), 

Compensation: 

  • Salary: $170,000
  • Competitive Equity Package  
  • Comprehensive Benefits Plan 

 

#LI-JF1 #LI-REMOTE   



Dragos is an Equal Opportunity Employer and considers applicants for employment without regard to race, color, religion, sex, orientation, national origin, age, disability, genetics, or any other basis forbidden under federal, state, or local laws. All new hires must pass a background check as a condition of employment.

Similar Jobs at Dragos

3 Days Ago
Easy Apply
Remote
United States
Easy Apply
110K-110K Annually
Senior level
110K-110K Annually
Senior level
Security • Cybersecurity
Lead OT security monitoring and triage operations, investigate suspicious activity across industrial networks, tune detections, manage vulnerabilities and asset classification, and escalate findings to incident responders and threat hunters. Produce customer-facing reports, support platform operations, mentor analysts, and collaborate across cybersecurity teams. The role requires shift-based coverage, remote coordination, and expertise in network security with a strong interest in ICS/OT environments.
Top Skills: BashDnp3DnsDragos PlatformEthernet/IpFirewallsIds/IpsMitre Att&Ck For IcsModbusNetwork Traffic AnalyzersPacket AnalysisPcapPythonSIEMTcp/Ip
7 Days Ago
Easy Apply
Remote
United States
Easy Apply
125K-125K Annually
Senior level
125K-125K Annually
Senior level
Security • Cybersecurity
Leads accounting operations for Dragos Public Sector, including financial close, reporting, revenue recognition, government contract compliance, audits, internal controls, timekeeping, billing, and accounting systems administration. Partners on budgeting and forecasting, manages accounting staff, supports tax and regulatory filings, and drives process improvements across a multi-entity environment.
Top Skills: Asc 606ConcurDcaa Cost Accounting StandardsFarGaapGaasExcelMicrosoft WordNavanNetSuiteSalesforceUnanet
13 Days Ago
Easy Apply
Remote
United States
Easy Apply
140K-140K Annually
Senior level
140K-140K Annually
Senior level
Security • Cybersecurity
Manage FP&A activities including headcount reporting, annual operating planning, rolling forecasts, variance analysis, financial modeling, sales and revenue forecasting, and budget-to-actual reviews. Provide analytical insights and decision support to operational leaders, partner cross-functionally on company initiatives, and communicate business drivers, KPIs, and financial results to stakeholders.
Top Skills: AdaptiveExcelNetSuitePower BISalesforceTableauVena

What you need to know about the Boston Tech Scene

Boston is a powerhouse for technology innovation thanks to world-class research universities like MIT and Harvard and a robust pipeline of venture capital investment. Host to the first telephone call and one of the first general-purpose computers ever put into use, Boston is now a hub for biotechnology, robotics and artificial intelligence — though it’s also home to several B2B software giants. So it’s no surprise that the city consistently ranks among the greatest startup ecosystems in the world.

Key Facts About Boston Tech

  • Number of Tech Workers: 269,000; 9.4% of overall workforce (2024 CompTIA survey)
  • Major Tech Employers: Thermo Fisher Scientific, Toast, Klaviyo, HubSpot, DraftKings
  • Key Industries: Artificial intelligence, biotechnology, robotics, software, aerospace
  • Funding Landscape: $15.7 billion in venture capital funding in 2024 (Pitchbook)
  • Notable Investors: Summit Partners, Volition Capital, Bain Capital Ventures, MassVentures, Highland Capital Partners
  • Research Centers and Universities: MIT, Harvard University, Boston College, Tufts University, Boston University, Northeastern University, Smithsonian Astrophysical Observatory, National Bureau of Economic Research, Broad Institute, Lowell Center for Space Science & Technology, National Emerging Infectious Diseases Laboratories

Sign up now Access later

Create Free Account

Please log in or sign up to report this job.

Create Free Account