Remote Jobs RockRemote Jobs Rock

Associate Principal Cyber Threat Intelligence Analyst

๐Ÿ•’ 18 days ago
Cyber Threat IntelligenceICS/OTThreat HuntingNetwork Traffic Analysis

๐Ÿ“œ Description

  • Support the client with ICS/OT cyber threat intelligence needs, focusing on national security priorities.
  • Conduct ICS/OT CTI research, analysis, and threat hunting using proprietary and commercial resources.
  • Establish baseline OT asset and network behaviors across Singapore's critical infrastructure.
  • Contextualize ICS/OT threats and risks, providing guidance on best practices and mitigations.
  • Translate technical hunt results into actionable insights for non-technical stakeholders.
  • Support incident response engagements and develop industry-focused CTI content.

๐Ÿ› ๏ธ Requirements

  • Must be a Singapore citizen and have an active Security Clearance.
  • Minimum 4 years of cyber threat intelligence experience using multiple data sources.
  • Hands-on threat hunting experience, including packet capture analysis and industrial protocol inspection.
  • Strong expertise with both freeform and hypothesis-driven threat hunting methodologies.
  • Experience in a customer-facing role with effective stakeholder management.
  • Strong technical and strategic writing skills for developing CTI analysis products.

โœจ Benefits

  • Competitive Equity Package
Full job description

At Dragos, the mission is personal. The systems we protect deliver the water you drink, power your home, and keep the hospitals your community depends on running. Those critical infrastructure systems that power our civilization around the world are under attack every day by adversaries. When those systems fail, people are immediately at risk. We are the global leader in xOT cybersecurity, combining technology, threat intelligence, and expert services. The people here chose this work because they understand what is at stake. Here, you will find a remote-first mission-driven team across North America, Europe, the Middle East, and APAC built on authenticity, transparency, and trust. If safeguarding the systems that protect your family, friends, and community is the kind of work that matters to you, you are in the right place.

About the Role:

Dragos Global Threat Intelligence defends the infrastructure that powers civilizationโ€”from clean water and reliable power to food processing and oil & gas production. Every day, our team detects and defeats threats that could disrupt the operations millions of people depend on. We're seeking an OT Cyber Threat Intelligence Analyst to embed with a Singapore government security team as a trusted, autonomous expert. You'll lead threat hunts, deliver tailored intelligence across multiple formats, and represent Dragos inside cleared environmentsโ€”making independent judgment calls that directly shape government strategy while collaborating across Dragos delivery teams to amplify intelligence impact. Our ideal candidate brings a proven track record delivering tailored threat intelligence in service organizations, hands-on threat hunting experience (both structured and exploratory), and working knowledge of industrial control systems (ICS).

Responsibilities:

  • Directly support the client with ICS/OT cyber threat intelligence needs, including high-stakes moments involving national security priorities, while establishing credibility to drive priorities rather than simply respond to tasking.
  • Drive ICS/OT CTI research, analysis, and threat hunting using proprietary and commercial resources, performing both freeform and hypothesis-driven hunts by analyzing network traffic and industrial protocols to surface anomalous behavior.
  • Support the client in establishing baseline OT asset and network behaviors across Singapore's critical infrastructure using Dragos Platform, Synapse, and complementary tools to validate and prioritize leads.
  • Contextualize ICS/OT threats and risks relevant to the client's objectives, provide guidance on best practices and mitigations, and develop deep expertise in threats specific to the client's OT environment.
  • Translate technical hunt results into MITRE ATT&CK for ICS mappings and confidence-based assessments that non-technical stakeholders can act on.
  • Support the client during incident response engagements and exercises.
  • Develop industry-focused technical and strategic ICS/OT CTI content and provide feedback to internal Dragos teams to maximize intelligence impact across the organization.

Qualifications:

  • Must be a Singapore citizen and have an active Security Clearance.
  • Minimum 4 years of cyber threat intelligence experience using multiple data sources (eg, NetFlow, open-source intelligence, SIEMs, malware repositories) to develop analysis products.
  • Hands-on threat hunting experience, including packet capture analysis and industrial protocol inspection.
  • Strong hands-on expertise with both freeform and hypothesis-driven threat hunting methodologies.
  • Experience serving in a customer-facing role with demonstrated ability to manage stakeholders independently and effectively.
  • Strong technical and strategic writing skills for developing CTI analysis products, including confidence-based assessments and threat modeling frameworks (such as Diamond Model of Intrusion Analysis).
  • Proficiency with data aggregation, hunting, and analysis tools (e.g., Synapse) and experience leveraging AI/LLM resources in CTI workflows.

Preferred Qualifications:

  • Deep knowledge of ICS/OT threats across industrial verticals, including adversary TTPs, historical attacks, relevant technologies (PLCs, HMIs, RTUs), and network protocols and topologies.
  • The ability to independently scope, develop, and deliver CTI analysis using industry frameworks (MITRE ATT&CK for ICS, D3FEND, ICS Cyber Kill Chain).

Compensation:

  • Salary: 180,000 SGD
  • Competitive Equity Package
  • Comprehensive Benefits Plan

#LI-JF1 #LI-REMOTE

Dragos is an Equal Opportunity Employer and considers applicants for employment without regard to race, color, religion, sex, orientation, national origin, age, disability, genetics, or any other basis forbidden under federal, state, or local laws. All new hires must pass a background check as a condition of employment.

Dragos

Associate Principal Cyber Threat Intelligence Analyst

Dragos๐Ÿ‘ฅ 201 - 500 employees๐Ÿข Computer & Network Security
๐Ÿ•’ 11 days ago

The Cyber Threat Intelligence Analyst will support a federal customer by delivering tailored ICS/OT threat intelligence products and conducting threat research and analysis.

Cyber Threat IntelligenceICS/OT SecurityThreat ResearchThreat Analysis
Cybervance

HSEEP Cybersecurity/Infrastructure Protection Exercise Professional

Cybervance๐Ÿ‘ฅ 11 - 50 employees๐Ÿข Security And Investigations
๐Ÿ“… Jul 21

The HSEEP Cybersecurity/Infrastructure Protection Exercise Professional will develop, execute, and evaluate cybersecurity exercises using HSEEP standards, ensuring effective security measures for organizations.

HSEEP StandardsCybersecurityInfrastructure ProtectionExercise Development
Atbayjobs

Cyber Analyst, Digital Forensics Incident Response

Atbayjobs๐Ÿ‘ฅ 201 - 500 employees๐Ÿข Insurance
๐Ÿ“… Nov 3, 2025

Cybersecurity Analysts specializing in Digital Forensics and Incident Response (DFIR) provide critical incident investigation and response services to safeguard At-Bay insureds from digital threats.

Digital ForensicsIncident ResponseCybersecurity OperationsDigital Evidence Collection
Dragos

Senior Capabilities Hunter

Dragos๐Ÿ‘ฅ 201 - 500 employees๐Ÿข Computer & Network Security
๐Ÿ“… Jul 21

As a Senior Capabilities Hunter, you will analyze and identify adversary tools and techniques targeting critical infrastructure, enhancing Dragos' defense against advanced threats.

Capabilities DevelopmentThreat HuntingNetwork-based Intrusion AnalysisVulnerability Analysis
Anthropic

Technical Cyber Threat Investigator

Anthropic๐Ÿ‘ฅ 10,000+ employees๐Ÿข Research Services๐Ÿค B2B
๐Ÿ•’ 17 days ago

As a Technical Cyber Threat Investigator, you will detect, investigate, and disrupt the misuse of AI systems, enhancing cybersecurity against malicious operations.

SQLPythonLarge Language ModelsCybersecurity

Trusted by Remote Workers