Dragos Logo

Dragos

Associate Principal OT Penetration Tester

Reposted 4 Days Ago
Be an Early Applicant
Remote
Hiring Remotely in United States
150K-150K Annually
Senior level
Remote
Hiring Remotely in United States
150K-150K Annually
Senior level
The Associate Principal OT Penetration Tester will lead customer engagements in penetration testing, shape strategies, and mentor teams, focusing on ICS/OT cybersecurity.
The summary above was generated by AI

Dragos is on a relentless mission to defend industrial organizations that provide us with the necessities of modern civilization; running water, functioning electricity, and safe industrial working environments. As the market leader in ICS/OT Cybersecurity, we are dedicated to arming our customers with best-in-class technology, threat intelligence, and services to protect their systems as effectively and efficiently as possible. We’re a remote-first culture with operations in North America, Europe, the Middle East, and APAC. We’re looking for mission-oriented teammates who embody our core values of authenticity, transparency, and trust. Are you ready to make a difference? Come join a mission that can save the world! 

About the Role: 

Our Professional Services Team is seeking Associate Principal OT Penetration Tester who will provide technical leadership across vulnerability assessments, penetration testing, and adversary emulation activities supporting customer services engagements. You will shape engagement strategy and uncover real‑world attack paths across ICS/OT networks through hands‑on exploitation and deep technical analysis, working closely with customers across critical infrastructure sectors such as oil and gas, electric, water treatment, and manufacturing. You will also translate findings into clear, actionable remediation guidance, influencing detection and platform development. You will mentor team members and be an advisor and representative of Dragos within the broader OT security community.

Responsibilities:  

  • Lead customer‑facing professional services engagements centered on industrial penetration testing, acting as the primary technical lead and trusted advisor on high‑impact pen test, purple team, and vulnerability assessment engagements.
  • Shape engagement strategy and direction, aligning deep technical execution with customer business objectives to deliver meaningful, risk‑focused security value.
  • Set the technical standard for OT penetration testing across the organization by defining methodologies, assessment frameworks, and adversary emulation approaches informed by current threat intelligence.
  • Design and execute advanced offensive campaigns that uncover complex attack paths across IT/OT boundaries and within industrial environments.
  • Translate field insights into strategic inputs for Dragos R&D, influencing tooling, detection content, and analytics by identifying gaps in customer visibility, response, and prevention.
  • Mentor and guide cross‑functional teams while evolving internal playbooks and operational practices, and represent Dragos through executive engagements and industry thought leadership.

Qualifications:  

  • 5+ years of hands-on cybersecurity experience focused on OT/ICS environments, including vulnerability assessments, penetration testing, and red teaming engagements.
  • Deep expertise in OT penetration testing methodologies across white-, gray-, and black-box scenarios, with strong understanding of industrial protocols and control systems.
  • Hands-on experience with assessment and penetration testing tools such as Metasploit, NMAP, Kali Linux, Cobalt Strike, Burp Suite Pro, and common LOTL toolsets
  • Advanced networking and threat analysis expertise, covering network infrastructure components, traffic analysis, attack paths, exploits, adversary TTPs, and host-based data analysis.
  • Strong communication, reporting, and customer-facing skills, with the ability to clearly present technical findings to both technical and non-technical audiences.
  • Self-motivated, team-oriented and able to work independently in a remote/distributed environment. 
  • Willing to travel up to 30% for customer engagements.

Compensation: 

  • Salary: $170,000
  • Competitive Equity Package  
  • Comprehensive Benefits Plan 

 

#LI-JF1 #LI-REMOTE   



Dragos is an Equal Opportunity Employer and considers applicants for employment without regard to race, color, religion, sex, orientation, national origin, age, disability, genetics, or any other basis forbidden under federal, state, or local laws. All new hires must pass a background check as a condition of employment.

Similar Jobs

6 Hours Ago
Remote
United States
100K-160K Annually
Entry level
100K-160K Annually
Entry level
Artificial Intelligence • Blockchain • Professional Services • Security • Consulting • Cybersecurity • Defense
Perform hands-on application and system security assessments: discover and validate vulnerabilities, develop proof-of-concepts and custom tooling, conduct threat modeling and architecture reviews, and communicate clear remediation guidance to clients while contributing to security research.
Top Skills: AslrCC++CfiDepGoJavaScriptPythonRustTypescript
7 Hours Ago
Remote or Hybrid
140K-165K Annually
Senior level
140K-165K Annually
Senior level
AdTech • Cloud • Digital Media • Information Technology • News + Entertainment • App development
Create reusable "paved paths" (documentation, reference architectures, IaC modules, code templates, and tools) to simplify building on enterprise platforms. Partner with architects and platform teams, develop and maintain templates and AI-assisted developer workflows, gather feedback from application teams, and iterate to maximize usability and adoption across a large, federated engineering organization.
Top Skills: Agent-Based ToolsAWSAzureCi/CdCloudformation (Cft)GCPInfrastructure As Code (Iac)Internal Developer AssistantsPrompt EngineeringPulumiTerraform
9 Hours Ago
Remote
United States
155K-170K Annually
Senior level
155K-170K Annually
Senior level
Software
The role involves leading projects as a full-stack engineer, focusing on SaaS products, enhancing user experiences, and building accessible software.
Top Skills: CSSHTMLPostgresTypescript

What you need to know about the Los Angeles Tech Scene

Los Angeles is a global leader in entertainment, so it’s no surprise that many of the biggest players in streaming, digital media and game development call the city home. But the city boasts plenty of non-entertainment innovation as well, with tech companies spanning verticals like AI, fintech, e-commerce and biotech. With major universities like Caltech, UCLA, USC and the nearby UC Irvine, the city has a steady supply of top-flight tech and engineering talent — not counting the graduates flocking to Los Angeles from across the world to enjoy its beaches, culture and year-round temperate climate.

Key Facts About Los Angeles Tech

  • Number of Tech Workers: 375,800; 5.5% of overall workforce (2024 CompTIA survey)
  • Major Tech Employers: Snap, Netflix, SpaceX, Disney, Google
  • Key Industries: Artificial intelligence, adtech, media, software, game development
  • Funding Landscape: $11.6 billion in venture capital funding in 2024 (Pitchbook)
  • Notable Investors: Strong Ventures, Fifth Wall, Upfront Ventures, Mucker Capital, Kittyhawk Ventures
  • Research Centers and Universities: California Institute of Technology, UCLA, University of Southern California, UC Irvine, Pepperdine, California Institute for Immunology and Immunotherapy, Center for Quantum Science and Engineering

Sign up now Access later

Create Free Account

Please log in or sign up to report this job.

Create Free Account