At a Glance
- Tasks: Lead a team in monitoring and triaging alerts in operational technology environments.
- Company: Join Dragos, the leader in ICS/OT Cybersecurity, dedicated to protecting essential services.
- Benefits: Enjoy remote work flexibility, competitive pay, and a supportive team culture.
- Why this job: Make a real-world impact by defending critical infrastructure and mentoring junior analysts.
- Qualifications: 3-5 years in network security with strong communication skills and a passion for cybersecurity.
- Other info: Flexible shift options available, including a 4-day work week.
The predicted salary is between 48000 - 84000 £ per year.
Dragos is on a relentless mission to defend industrial organizations that provide us with the necessities of modern civilization; running water, functioning electricity, and safe industrial working environments. As the market leader in ICS/OT Cybersecurity, we are dedicated to arming our customers with best-in-class technology, threat intelligence, and services to protect their systems as effectively and efficiently as possible. We’re a remote-first culture with operations in North America, Europe, the Middle East, and APAC. We’re looking for mission-oriented teammates who embody our core values of authenticity, transparency, and trust. Are you ready to make a difference? Come join a mission that can save the world!
About the Role:
As a Se nior Security Analyst on the OT Watch Complete team, you will help lead a frontline monitoring and triage unit responsible for identifying potential adversary activity in customer operational technology (OT) environments. You will work closely with other experienced industrial defenders and mentor junior analysts to investigate anomalous network behaviors, validate detection triggers, and support threat hunters and incident responders with high-quality escalations. You will also operate and maintain the Dragos platform on behalf of customers, helping manage vulnerabilities, tune detections, properly classify OT assets, and provide input on response recommendations.
This is a great opportunity for experienced individuals passionate about cybersecurity – especially industrial security – who want to build hands-on experience in active security operations for OT networks.
Responsibilities :
- Lead shift operations where analysts triage detection alerts and network telemetry generated by the Dragos Platform in customer environments.
- Serve as a senior investigator for suspicious activity and assist with identification of misconfigurations, anomalies, and potential malicious behaviors in OT networks.
- Perform initial and deeper analysis, apply context, and escalate relevant findings to Dragos Incident Responders or threat hunters with appropriate detail and documentation.
- Collaborate with other security analysts, threat hunters, incident responders, and platform engineers to improve alert fidelity and detection performance.
- Tune and improve detection logic to minimize false positives and improve response workflows.
- Create and deliver incident summaries and operational reports to clearly communicate security observations to internal stakeholders and customers.
- Participate in continuous learning around ICS/OT protocols, adversary tactics, and threat intelligence specific to industrial environments.
- Support other functions of the OT Watch Complete service, to include asset classification, detection tuning, and vulnerability management within customers’ Dragos platforms.
- Deliver hardening and response recommendations and answer information requests from customers.
- Serve as shift leader for all OT Watch Complete analysts in your region with support from the OTW leadership when on shift.
- Work with the Detection Engineering team to provide feedback on detections and develop/update Detection Playbooks.
- Generate ideas for potential new Dragos Platform detections.
Requirements:
- 3-5 years of relevant work experience in network security.
- Strong understanding of networking concepts (e.g., TCP/IP, firewalls, DNS, packet analysis).
- Experience with cybersecurity monitoring tools or platforms (e.g., IDS/IPS, SIEM, network traffic analyzers).
- Excellent written and verbal communication skills, with a strong attention to detail.
- Enthusiasm for learning about ICS/OT cybersecurity and defending critical infrastructure.
- Ability to work independently in a remote environment and coordinate across distributed teams.
- Flexibility to participate in shift-based coverage and occasional weekend/on-call work as needed. Note: Initial scheduling for employees will start as a Monday-Friday 8am-5pm (MT for US, CEST for Europe, AEST for ANZ shifts), with on-call weekends. Schedule will later change to working a 4 day a week 10-hour shift model, which includes a day on the weekend. Shift schedules under the 4-day schedule will run Sunday-Wednesday and Wednesday-Saturday. Applicants will have the option to pick from either of the two shift schedules (Sunday-Wednesday or Wednesday-Saturday).
Preferred Qualifications :
- Experience working on a Security Operations Center (SOC) team.
- Familiarity with OT protocols (e.g., Modbus, DNP3, Ethernet/IP) and ICS environments.
- Applied knowledge of adversary tactics and frameworks relevant to OT (e.g., MITRE ATT&CK for ICS).
- Hands-on lab or internship experience in cybersecurity operations, threat hunting, or digital forensics.
- Experience in packet capture (PCAP) analysis or basic scripting (e.g., Python, Bash).
Compensation :
- Competitive Equity Package
#LI-JF1 #LI-REMOTE
Dragos is an Equal Opportunity Employer and considers applicants for employment without regard to race, color, religion, sex, orientation, national origin, age, disability, genetics, or any other basis forbidden under federal, state, or local laws. All new hires must pass a background check as a condition of employment.
Create a Job Alert
Interested in building your career at Dragos? Get future opportunities sent straight to your email.
Apply for this job
*
indicates a required field
First Name *
Last Name *
Preferred First Name
Email *
Phone *
Location (City) *
Resume/CV *
Enter manually
Accepted file types: pdf, doc, docx, txt, rtf
Enter manually
Accepted file types: pdf, doc, docx, txt, rtf
LinkedIn Profile
Do you currently live in the UK? * Select…
Are you eligible to work in the UK without employer sponsorship? * Select…
Are you willing to participate in shift work that includes working weekends? * Select…
#J-18808-Ljbffr
Senior OT Network Security Analyst United Kingdom employer: Dragos, Inc
Contact Detail:
Dragos, Inc Recruiting Team
StudySmarter Expert Advice 🤫
We think this is how you could land Senior OT Network Security Analyst United Kingdom
✨Tip Number 1
Familiarise yourself with the specific OT protocols mentioned in the job description, such as Modbus and DNP3. Understanding these protocols will not only help you during interviews but also demonstrate your commitment to the role.
✨Tip Number 2
Engage with online communities or forums focused on ICS/OT cybersecurity. Networking with professionals in the field can provide insights into current trends and challenges, which you can discuss during your interview.
✨Tip Number 3
Consider setting up a home lab to practice your skills in packet capture analysis and basic scripting. This hands-on experience will not only boost your confidence but also give you practical examples to share in your discussions with us.
✨Tip Number 4
Stay updated on the latest adversary tactics relevant to OT environments, particularly those outlined in the MITRE ATT&CK framework. Being knowledgeable about these tactics will show your proactive approach to cybersecurity and your readiness for the role.
We think you need these skills to ace Senior OT Network Security Analyst United Kingdom
Some tips for your application 🫡
Understand the Role: Before applying, make sure to thoroughly read the job description for the Senior OT Network Security Analyst position at Dragos. Understand the responsibilities and requirements, especially the emphasis on cybersecurity in industrial environments.
Tailor Your CV: Customise your CV to highlight relevant experience in network security, particularly in operational technology (OT) environments. Emphasise your familiarity with cybersecurity monitoring tools and any specific protocols mentioned in the job description.
Craft a Compelling Cover Letter: Write a cover letter that showcases your passion for cybersecurity and your understanding of the importance of protecting critical infrastructure. Mention specific experiences that align with the responsibilities of the role, such as leading investigations or collaborating with teams.
Highlight Communication Skills: Since excellent written and verbal communication skills are crucial for this role, ensure that your application reflects your ability to communicate complex security concepts clearly. Provide examples of how you've effectively communicated findings or recommendations in previous roles.
How to prepare for a job interview at Dragos, Inc
✨Understand the Role and Responsibilities
Make sure you thoroughly understand the job description and responsibilities of a Senior OT Network Security Analyst. Familiarise yourself with key terms like ICS/OT cybersecurity, network telemetry, and detection tuning, as these will likely come up during your interview.
✨Showcase Your Technical Skills
Be prepared to discuss your experience with networking concepts and cybersecurity monitoring tools. Highlight any specific tools you've used, such as IDS/IPS or SIEM, and be ready to explain how you've applied them in real-world scenarios.
✨Demonstrate Your Problem-Solving Abilities
Expect questions that assess your analytical skills and ability to handle suspicious activity. Prepare examples of past experiences where you identified misconfigurations or anomalies in networks, and explain how you approached those situations.
✨Emphasise Your Communication Skills
Since you'll need to create incident summaries and operational reports, it's crucial to demonstrate your written and verbal communication skills. Practice explaining complex technical concepts in simple terms, as this will show your ability to communicate effectively with both technical and non-technical stakeholders.