Skip to main content
Dragos

Associate Principal Malware Analyst

RemoteUnited States only
Published
Role
Security
Experience
Principal
$182k+/yr
Check eligibility

Open to US only. Set where you work from to check your eligibility.

No BS summary

Malware analyst with 5–8 years in malware analysis, reverse engineering, or ICS/OT cybersecurity. Must be strong in static/dynamic reversing, ICS software/firmware/embedded systems, Yara signatures, and customer-facing technical reporting. US-based remote role.

Core skills

YaraMalware reverse engineering

Required skills

IDA ProGhidrax64dbg

Optional skills

ICS/OT protocols

What you'll do

  • Identify and assess highly sophisticated threats targeting ICS and critical infrastructure, evaluating their operational impact and severity.
  • Develop innovative analysis methods and conduct advanced reverse engineering and deobfuscation of ICS-specific malware, software, and firmware.
  • Create Yara signatures and partner closely with detection engineers to develop novel, ICS-specific threat detections informed by deep malware analysis findings.
  • Write persuasive customer-facing technical reports and internal documentation that translates complex malware findings into clear operational impact for diverse audiences.
  • Refine and evolve the malware analysis pipeline with new methods and procedures to address emerging techniques and tooling as they surface in the threat landscape.
  • Collaborate across teams—with hunters, intelligence analysts, and detection engineers—to drive malware-related threat research and solve complex technical problems.
  • Exercise independent judgment in selecting analytical methods and serve as a trusted technical advisor on complex malware analysis and detection questions across the organization.

What they require

  • 5-8 years of experience in malware analysis, reverse engineering, or a related ICS/OT cybersecurity discipline.
  • Advanced proficiency in static and dynamic malware reverse engineering using tools such as disassemblers, debuggers, and decompilers (e.g., IDA Pro, Ghidra, x64dbg).
  • Demonstrated experience analyzing ICS-specific software, firmware, and embedded systems.
  • Strong Yara signature development skills, with experience building detection analytics for novel malware and attack techniques.
  • Proven ability to write clear, persuasive, customer-facing technical reports on complex malware findings.
  • Experience contributing to or improving a malware analysis pipeline, tooling, or workflow.
  • Comfortable collaborating with detection engineers, hunters, and intelligence analysts on cross-team technical problems.
  • Familiarity with ICS/OT protocols, threat groups, and the broader critical infrastructure threat landscape is a major plus.
  • All new hires must pass a background check as a condition of employment.

Benefits

  • Competitive Equity Package
  • Comprehensive Benefits Plan

Dragos is the global leader in xOT cybersecurity, combining technology, threat intelligence, and expert services to protect critical infrastructure systems.

CybersecurityEnterprise

What people say about this company

4.1/ 5

Details

Apply routeGreenhouse
$182k+/yr