Principal Vulnerability Analyst
$170,000–$170,000 year
RemoteUnited States
Job Summary
Identify novel vulnerabilities in industrial products and control systems through strategic acquisition and rigorous analysis, assessing operational impact on both IT and ICS environments. Coordinate responsible disclosure with affected vendors and author clear, technically rigorous vulnerability reports for internal customers and public publication. Develop detection signatures and partner with product engineering to identify and close gaps in the Dragos Platform's vulnerability detection capabilities. Serve as a trusted internal resource to threat intelligence and incident response teams, assessing in-the-wild exploits and integrating findings into broader threat intelligence. Mentor other researchers and penetration testers while communicating Dragos expertise through public reporting and industry engagement. Champion the adoption of automated vulnerability analysis tools to scale research capabilities and optimize team workflows.
Required Qualifications
- 5+ years developing, deploying, or evaluating proof-of-concept code related to vulnerabilities
- Demonstrable expertise in embedded systems reverse engineering or binary reverse engineering of Windows and/or embedded applications
- Strong familiarity with binary network protocols and low-level networking concepts
- 3+ years writing customer-facing technical material and demonstrated ability to translate complex details to inform decision-makers and operators
- In-depth understanding of vulnerability scoring mechanisms, their benefits and limitations in OT context, and measured ability to assess real-world operational impact
- Proven ability to function independently to identify devices and software to assess, determine acquisition strategies, and develop analysis roadmaps
- Demonstrated proficiency developing software tooling or analytical automation using Python, C#, or similar languages to enhance team workflows and scale research
- All new hires must pass a background check as a condition of employment
Desired Qualifications
- Experience reverse engineering malware using static and dynamic analysis tools and techniques, with familiarity of malware code constructs
- Experience developing YARA, Snort, Suricata or Zeek detections rules
- Experience working with an operations center and incident response team during live engagements
- Track record of discovering and responsibly disclosing novel vulnerabilities
- Familiarity with ICS protocols (Modbus, DNP3, Profibus, etc.) and their security properties
- External presence or track record of knowledge sharing through publications, conference presentations, or industry engagement
Hiring someone like this?
Get your role in front of qualified candidates on Sorce.