Associate Principal Malware Analyst New

Dragos, Inc.

Northern (KY)

Hybrid

USD 120,000 - 190,000

Full time

11 days ago

Get more replies from employers

Send a job-specific resume in minutes.

Job summary

Dragos, Inc. is seeking an Associate Principal Malware Analyst to lead deep-dive analysis of IC-related malware and firmware, develop detections, and produce reports that translate findings into actionable defenses.

You will partner with detection engineers, hunters, and intelligence analysts to turn research into deployable safeguards. This remote-first role supports collaboration across North America, Europe, the Middle East, and APAC, helping evolve the malware analysis pipeline and mentor

Qualifications

  • 5-8 years of malware analysis or IC/OT cybersecurity experience.
  • Advanced proficiency with static and dynamic reverse engineering tools (ID A Pro, Ghidra, x64dbg).
  • Experience analyzing IC-specific software, firmware, and embedded systems.
  • Strong Yara signature development skills and detection analytics.
  • Ability to write clear, customer-facing technical reports.
  • Experience improving malware analysis pipelines and tooling.
  • Collaborative with detection engineers, hunters, and intelligence analysts.
  • Familiarity with IC/OT protocols is a plus.

Responsibilities

  • Identify and assess highly sophisticated threats targeting IC/critical infrastructure.
  • Develop novel analysis methods and conduct advanced reverse engineering of IC-specific malware, software, and firmware.
  • Create Yara signatures and partner with detection engineers to develop novel detections.
  • Write persuasive customer-facing technical reports and internal documentation.
  • Refine and evolve the malware analysis pipeline with new methods and procedures.
  • Collaborate across teams—to drive malware-related threat research and solve complex problems.
  • Exercise independent judgment in selecting analytical methods and serve as a trusted advisor.

Skills

Malware analysis
Reverse engineering
IC/OT cybersecurity
Technical reporting
Cross-team collaboration
Threat research

Tools

IDA Pro
Ghidra
x64dbg

Job description

At Dragos, the mission is personal. The systems we protect deliver the water you drink, power your home, and keep the hospitals your community depends on running. Those critical infrastructure systems that power our civilization around the world are under attack every day by adversaries. When those systems fail, people are immediately at risk. We are the global leader in xOT cybersecurity, combining technology, threat intelligence, and expert services. The people here chose this work because they understand what is at stake . Here, you will find a remote-first mission-driven team across North America, Europe, the Middle East, and APAC built on authenticity, transparency, and trust. If safeguarding the systems that protect your family, friends, and community is the kind of work that matters to you, you are in the right place.

About the Role

The Dragos Malware Analysis team provides critical defense against the most sophisticated threats targeting critical infrastructure by analyzing adversary tools, building detections, and delivering intelligence that shapes how the industry understands IC security. As an Associate Principal Malware Analyst, you'll lead deep-dive analysis of IC-related malware and firmware, develop novel detection methods, and produce Yara signatures and technical reports that translate findings into action. You'll partner closely with detection engineers, hunters, and intelligence analysts to turn your research into deployable defenses while helping refine the malware analysis pipeline itself. This is a role where your expertise directly impacts how Dragos and the wider industry detect and defend against the most consequential threats in the space.

Responsibilities
  • Identify and assess highly sophisticated threats targeting IC and critical infrastructure, evaluating their operational impact and severity.
  • Develop innovative analysis methods and conduct advanced reverse engineering and deobfuscation of IC-specific malware, software, and firmware.
  • Create Yara signatures and partner closely with detection engineers to develop novel, IC-specific threat detections informed by deep malware analysis findings.
  • Write persuasive customer-facing technical reports and internal documentation that translates complex malware findings into clear operational impact for diverse audiences.
  • Refine and evolve the malware analysis pipeline with new methods and procedures to address emerging techniques and tooling as they surface in the threat landscape.
  • Collaborate across teams—with hunters, intelligence analysts, and detection engineers—to drive malware-related threat research and solve complex technical problems.
  • Exercise independent judgment in selecting analytical methods and serve as a trusted technical advisor on complex malware analysis and detection questions across the organization.
Qualifications
  • 5-8 years of experience in malware analysis, reverse engineering, or a related IC/OT cybersecurity discipline.
  • Advanced proficiency in static and dynamic malware reverse engineering using tools such as disassemblers, debuggers, and decompilers (e.g., IDA Pro, Ghidra, x64dbg).
  • Demonstrated experience analyzing IC-specific software, firmware, and embedded systems.
  • Strong Yara signature development skills, with experience building detection analytics for novel malware and attack techniques.
  • Proven ability to write clear, persuasive, customer-facing technical reports on complex malware findings.
  • Experience contributing to or improving a malware analysis pipeline, tooling, or workflow.
  • Comfortable collaborating with detection engineers, hunters, and intelligence analysts on cross-team technical problems.
  • Familiarity with IC/OT protocols, threat groups, and the broader critical infrastructure threat landscape is a major plus.
Compensation
  • Competitive Equity Package

#LI-JF1 #LI-REMOTE

Dragos is an Equal Opportunity Employer and considers applicants for employment without regard to race, color, religion, sex, orientation, national origin, age, disability, genetics, or any other basis forbidden under federal, state, or local laws. All new hires must pass a background check as a condition of employment.

Get your free, confidential resume review.
or drag and drop your file here.
Similar jobs

Similar jobs worth comparing

Principal Vulnerability Analyst New
Principal Vulnerability Analyst New

Dragos, Inc. • Northern (KY)

Hybrid
USD 130,000 - 180,000
Competitive Equity Package
Senior Malware Analyst - IC/OT Defense (Remote, Equity)
Senior Malware Analyst - IC/OT Defense (Remote, Equity)

Dragos • United States

On-site
USD 140,000 - 190,000
Competitive Equity Package
Remote Associate Principal Malware Analyst (IC/OT Defense)
Remote Associate Principal Malware Analyst (IC/OT Defense)

Dragos, Inc. • Northern (KY)

Hybrid
USD 120,000 - 190,000
Associate Principal Incident Responder
Associate Principal Incident Responder

Dragos, Inc. • United States

On-site
USD 131,000 - 179,000
Senior Malware Analyst — ICS & Critical Infra (Remote)
Senior Malware Analyst — ICS & Critical Infra (Remote)

Dragos, Inc. • Lennox Park (MD)

Remote
USD 164,000 - 200,000
Senior Capabilities Developer
Senior Capabilities Developer

Dragos, Inc. • Northern (KY)

Hybrid
USD 140,000 - 200,000
Competitive Equity Package
Remote Principal Malware Analyst: ICSS & OT Threats
Remote Principal Malware Analyst: ICSS & OT Threats

Socket.dev • United States

On-site
USD 120,000 - 160,000
Associate Principal Resident Engineer (Federal)
Associate Principal Resident Engineer (Federal)

Dragos, Inc. • Washington

On-site
USD 155,000
Competitive Equity Package
Comprehensive Benefits Plan
Senior Software Engineer
Senior Software Engineer

Clutch Canada • United States

Remote
USD 140,000 - 165,000
Competitive Equity Package
Comprehensive Benefits Plan
Principal Resident Engineer (Federal)
Principal Resident Engineer (Federal)

AllegisCyber Capital • Washington

On-site
USD 180,000 - 220,000
Salary: $200,000
Competitive Equity Package
Comprehensive Benefits Plan