Associate Principal Cyber Threat Intelligence Analyst

4 weeks, 2 days ago
Full-time
Mid Level
Cybersecurity
Dragos

Dragos

Dragos is an industrial cybersecurity company focused on safeguarding civilization by securing industrial assets across vertical industries. Their integrated software platform provides critical visibility into ICS and OT networks, enabling clients in p...

Professional Services
251-1K
Founded 2016
$438M raised

Description

  • Directly support the client’s ICS/OT cyber threat intelligence needs in high-stakes national security contexts.
  • Lead ICS/OT cyber threat intelligence research, analysis, and threat hunting using proprietary and commercial resources.
  • Perform both freeform and hypothesis-driven hunts by analyzing network traffic and industrial protocols for anomalous behavior.
  • Establish baseline OT asset and network behaviors across Singapore’s critical infrastructure using Dragos Platform, Synapse, and related tools.
  • Contextualize ICS/OT threats and risks, and provide guidance on best practices and mitigations.
  • Translate hunt results into MITRE ATT&CK for ICS mappings and confidence-based assessments for non-technical stakeholders.
  • Support the client during incident response engagements and exercises.
  • Develop industry-focused technical and strategic ICS/OT CTI content.
  • Provide feedback to internal Dragos teams to improve intelligence impact across the organization.

Requirements

  • Must be a Singapore citizen and have an active Security Clearance.
  • Minimum 4 years of cyber threat intelligence experience using multiple data sources such as NetFlow, open-source intelligence, SIEMs, and malware repositories.
  • Hands-on threat hunting experience, including packet capture analysis and industrial protocol inspection.
  • Strong expertise in both freeform and hypothesis-driven threat hunting methodologies.
  • Experience in a customer-facing role with the ability to manage stakeholders independently and effectively.
  • Strong technical and strategic writing skills for CTI products, confidence-based assessments, and threat modeling frameworks such as Diamond Model of Intrusion Analysis.
  • Proficiency with data aggregation, hunting, and analysis tools such as Synapse.
  • Experience leveraging AI/LLM resources in CTI workflows.
  • Deep knowledge of ICS/OT threats across industrial verticals, including adversary TTPs, PLCs, HMIs, RTUs, and network protocols and topologies (preferred).
  • Ability to independently scope, develop, and deliver CTI analysis using frameworks such as MITRE ATT&CK for ICS, D3FEND, and ICS Cyber Kill Chain (preferred).

Benefits

  • Salary of 180,000 SGD.
  • Competitive equity package.
  • Comprehensive benefits plan.
  • Remote-first work environment.

Interested in this position?

Apply directly on the company website

Apply Now

Similar Roles

Security & Technology Risk Analyst

Moniepoint 1K-5K Diversified Financial Services

Moniepoint is seeking a Security & Technology Risk Analyst to assess and manage security and technology risks across its fintech ecosystem, supporting regulatory compliance, operational resilience, and informed executive decision-making.

Network Security
1 day, 7 hours ago

Middle Information Security Access Specialist

GR8 Tech 251-1K IT Services

GR8_TECH is hiring an IAM and access management professional to secure and automate employee access across its global B2B iGaming technology organization.

Active Directory AWS Azure
2 days, 8 hours ago

Investigations Analyst

Turing 251-1K Internet Software & Services

Turing is hiring an Investigations Analyst to support its security investigations function by handling fraud and insider-threat cases from initial signal through resolution, protecting the company and its customers.

Python SIEM SQL
2 days, 8 hours ago

Investigations Analyst

Turing 251-1K Internet Software & Services

Turing is hiring an Investigations Analyst to support its security investigations function by resolving fraud and insider-threat cases and protecting the company and its customers.

Python SIEM SQL
2 days, 8 hours ago

You're on a roll! Sign up now to keep applying.

Sign Up

Already have an account? Log in

Used by 14,729+ remote workers