Dragos is a computer and network security company specializing in industrial cybersecurity, incident response, threat intelligence, and security software. Past
Senior Device Engineer
Location
United States
Posted
4 days ago
Salary
$165K / year
Seniority
Senior
Job Description
Senior Device Engineer
Dragos
At Dragos, the mission is personal. The systems we protect deliver the water you drink, power your home, and keep the hospitals your community depends on running. Those critical infrastructure systems that power our civilization around the world are under attack every day by adversaries. When those systems fail, people are immediately at risk. We are the global leader in xOT cybersecurity, combining technology, threat intelligence, and expert services. The people here chose this work because they understand what is at stake. Here, you will find a remote-first mission-driven team across North America, Europe, the Middle East, and APAC built on authenticity, transparency, and trust. If safeguarding the systems that protect your family, friends, and community is the kind of work that matters to you, you are in the right place. We are looking for a Senior Device Engineer to join our team. Think of the role as device automation engineering: we build software that interacts with all kinds of network-connected devices, from printers and cameras to door controllers and industrial control systems. That might mean identifying a device, pulling information off it, changing its password, or performing any other action it supports. A big part of the job is figuring out how a device communicates (e.g. from a HAR or PCAP, vendor docs, or a device on the bench) and turning that understanding into reliable, automated capabilities. You will build within the core systems this automation runs on (the shared frameworks, interfaces, and tooling) and work across our scanning and fingerprinting engine, which finds and identifies the devices in the first place. Responsibilities - Design, build, and ship production software for identifying, fingerprinting, and interacting with network-connected devices across embedded, IoT, and OT/ICS endpoints - Build and maintain features within the shared frameworks and services that device support is built on, from design through testing and maintenance - Contribute to migrations and re-architectures of existing systems - Figure out how devices communicate (undocumented web interfaces and protocols, network traffic captures, hands-on experimentation) and turn that into automated, supported product capabilities - Troubleshoot complex device issues in production, including hard-to-reproduce and protocol-level problems - Leverage AI tools and coding assistants as a core part of your day-to-day workflow, including research, code generation, debugging, test creation, and documentation - Write and maintain automated test cases and frameworks that ensure the integrity of our device coverage - Mentor other engineers and contribute to code reviews and design discussions - Collaborate cross-functionally with product, security research, threat research, and customer-facing teams to translate field needs into engineering outcomes Qualifications - 5+ years of experience as a software engineer, with a track record of shipping production systems - Cybersecurity experience - Strong expertise developing and debugging in Node.js, with strong fundamentals in modern JavaScript/TypeScript - Experience with Go is strongly valued - Strong network protocol analysis skills: interpreting traffic captures, reconstructing device behavior, working out undocumented or vendor-specific protocols, and turning what you find into patterns and fingerprints (regex and the like) - Proficiency with relational databases - Solid command of Unix/Linux environments, including systems-level debugging and performance analysis - Working proficiency with Docker and containerized development and deployment workflows - Solid understanding of network transport and application layer protocols (TCP/IP, TLS, HTTP, common auth schemes, and common embedded/industrial protocols) - Experience using AI coding tools effectively, and judgment about when not to trust them - Good communication and collaboration skills, with the ability to work effectively in a fast-paced, evolving, remote-first environment - Experience applying cybersecurity best practices, including secure coding, data protection, and awareness of common threats and vulnerabilities. - Bonus: experience with ICS/OT environments, embedded systems, or xIoT device security Compensation: - Salary: 165,000.00 - Competitive Equity Package - Comprehensive Benefits Plan #LI-JF1 #LI-REMOTE #LI-NH1 #LI-REMOTE Dragos is an Equal Opportunity Employer and considers applicants for employment without regard to race, color, religion, sex, orientation, national origin, age, disability, genetics, or any other basis forbidden under federal, state, or local laws. All new hires must pass a background check as a condition of employment.
Related Guides
Related Categories
Related Job Pages
More Engineer Jobs
Project Engineer
Umdasch Group VenturesLet us shape the future! Innovator, investor and solution provider for construction and retail.
• Work closely with project managers and clients to understand project requirements and objectives. • Develop detailed plans and designs for formwork and shoring systems based on project specifications and structural requirements and utilize industry-standard software and tools (i.e., AutoCAD, Revit, ect.) to create accurate drawings, models, and calculations. • Provide technical expertise and guidance to project teams and clients regarding formwork and shoring solutions. • Collaborate with engineers, architects, and construction professionals to address technical challenges and optimize project performance. • Identify and select appropriate formwork and shoring materials based on project requirements, budget constraints, and site conditions. • Ensure that formwork and shoring systems comply with industry standards, building codes, and safety regulations. • Monitor project progress, identify potential risks or delays, and implement corrective actions as needed to keep projects on track.
Okta/SailPoint Engineer
Koniag Government Services, LLCKoniag Government Services (KGS) is an Alaska Native Owned corporation supporting the values and traditions of our native communities through an agile employee and corporate culture that delivers Enterprise Solutions, Professional Services and Operational Management to Federal Government Agencies.
Role Description Koniag IT Systems, LLC, a Koniag Government Services company, is seeking an experienced Okta/SailPoint Engineer with a Secret security clearance to support a critical Government Identity, Credential, and Access Management (ICAM) initiative. This role supports a large-scale Application and Systems Enablement effort issued under an ICAM Enterprise Master IDIQ Contract. The Okta/SailPoint Engineer will serve as a dedicated platform specialist responsible for: - Configuration, administration, integration, and sustainment of the centralized ICAM technical stack. - Leveraging Okta for Identity Provider (IdP) services and SailPoint IdentityIQ (IIQ) for Identity Governance and Administration (IGA). - Supporting the Department of Defense (DoD) Zero Trust Execution Roadmap. The ideal candidate is a technically deep platform engineer with hands-on expertise in Okta and SailPoint IdentityIQ, a strong understanding of enterprise identity protocols, and a demonstrated ability to deliver complex integration solutions in a federal IT environment. This individual must be comfortable operating in a fast-paced, high-volume program where platform reliability, security, and scalability are mission-critical priorities. This position requires an active Secret clearance and may require occasional travel to Government facilities. Primary work will be performed remotely. The Okta/SailPoint Engineer will serve as the primary platform subject matter expert (SME) for the ICAM technical stack, responsible for: - Hands-on configuration, administration, troubleshooting, and continuous improvement of the Okta and SailPoint IdentityIQ platforms. - Working closely with migration engineers, the migration team lead, and application owners to ensure proper configuration and performance of the ICAM technical stack. - Delivering technically sound, secure, and scalable platform solutions while maintaining rigorous documentation standards and supporting program compliance requirements. Principal responsibilities will include but are not limited to: - Serve as the primary technical SME for the Okta Identity Provider (IdP) platform. - Serve as the primary technical SME for SailPoint IdentityIQ (IIQ). - Design, configure, and deploy application integrations with the Okta IdP using industry-standard protocols. - Design, configure, and deploy application integrations with SailPoint IIQ. - Engineer and develop custom connectors, scripts, APIs, and middleware solutions. - Develop, implement, and sustain identity protocol connectors and APIs. - Provide deep technical guidance and platform-specific expertise. - Support the configuration and management of alternative credential solutions. - Administer and maintain Okta Universal Directory as the Authoritative Directory Aggregator. - Implement and enforce access control models. - Support the establishment and ongoing maintenance of Single Sign-On (SSO) integrations. - Monitor platform health, performance, and security. - Contribute to the development and maintenance of platform runbooks and documentation. - Support the testing program by developing integration test cases. - Ensure compliance with applicable DoD security requirements. - Vet all third-party connectors and enhancements. - Maintain current knowledge of Okta and SailPoint platform updates. Qualifications - Bachelor's degree in Computer Science, Information Technology, Cybersecurity, Information Systems, or a related field from an accredited college or university. - Minimum of 5 years of hands-on experience in information technology. - At least 3 years of direct, production-level experience administering and configuring Okta and/or SailPoint IdentityIQ. - Demonstrated experience designing and implementing SSO integrations using SAML, OAuth 2.0, and OIDC. - Demonstrated experience configuring automated provisioning and deprovisioning workflows. - Active Secret clearance. Requirements - Deep, hands-on technical expertise with the Okta Identity Provider platform. - Deep, hands-on technical expertise with SailPoint IdentityIQ (IIQ). - Strong working knowledge and practical implementation experience with identity and authorization protocols. - Experience developing custom integration solutions. - Proficiency in one or more scripting or programming languages. - Familiarity with Active Directory and LDAP directory services. - Experience implementing and managing RBAC and ABAC access control frameworks. - Ability to troubleshoot and resolve complex platform-level issues. - Strong attention to detail with the ability to maintain accurate documentation. - Familiarity with DoD security requirements. - Strong communication skills in English. - Ability to work effectively both independently and as part of a team. - Proficiency with Microsoft Office Suite and collaboration tools. - Ability to obtain and maintain required DoD cybersecurity certifications. Benefits - Competitive compensation. - Extraordinary benefits package including health, dental, and vision insurance. - 401K with company matching. - Flexible spending accounts. - Paid holidays. - Three weeks paid time off. - And more.
Middleware Engineer
Koniag Government Services, LLCKoniag Government Services (KGS) is an Alaska Native Owned corporation supporting the values and traditions of our native communities through an agile employee and corporate culture that delivers Enterprise Solutions, Professional Services and Operational Management to Federal Government Agencies.
Role Description Koniag IT Systems, LLC, a Koniag Government Services company, is seeking an experienced Middleware Engineer with a Secret security clearance to support a critical Government Identity, Credential, and Access Management (ICAM) initiative. This position is remote. The Middleware Engineer will serve as a specialized technical contributor responsible for: - Designing, developing, and deploying custom middleware solutions, integration tools, connectors, and scripts. - Enabling legacy and non-standard applications to integrate with the centralized ICAM technical stack. - Supporting the Department of Defense (DoD) Zero Trust Execution Roadmap. Principal responsibilities will include but are not limited to: - Design, develop, test, and deploy custom middleware solutions, integration proxies, protocol translators, and adapter components. - Engineer custom connectors, REST and SOAP APIs, scripts, and integration libraries. - Analyze legacy application architectures, authentication mechanisms, and data flows. - Develop and maintain reusable integration libraries, sample code repositories, and middleware components. - Collaborate with migration engineers to support technical triage of assigned applications. - Provide technical guidance and engineering support to Application Owners. - Support the design and implementation of automated provisioning and deprovisioning workflows. - Develop and implement solutions for Role-Based Access Control (RBAC) and Attribute-Based Access Control (ABAC). - Participate in the engineering and development of self-service and automated enablement pathway tooling. - Conduct rigorous unit testing, integration testing, and security testing of all developed middleware solutions. - Ensure compliance with supply chain risk management requirements. - Produce and maintain comprehensive technical documentation for all developed middleware solutions. - Contribute to the development and continuous improvement of middleware engineering standards. - Ensure compliance with Section 508 accessibility standards and applicable DoD security requirements. - Maintain current knowledge of evolving middleware technologies and DoD Zero Trust requirements. Qualifications - Bachelor's degree in Computer Science, Software Engineering, Information Technology, Information Systems, or a related field. - Minimum of 5 years of hands-on software or systems engineering experience. - At least 3 years of direct experience in middleware development, API engineering, or enterprise application integration. - Demonstrated experience designing and developing custom integration solutions. - Experience integrating applications with enterprise identity platforms. - Active Secret clearance. Requirements - Strong proficiency in one or more programming languages commonly used in enterprise middleware. - Hands-on experience developing and consuming REST APIs and SOAP web services. - Working knowledge of SAML 2.0, OAuth 2.0, OIDC, and SCIM protocols. - Experience analyzing and reverse-engineering legacy application authentication mechanisms. - Familiarity with enterprise Identity Provider (IdP) platforms, particularly Okta. - Experience with directory services integration. - Proficiency with source code version control systems such as Git. - Experience implementing secure coding practices. - Strong analytical and problem-solving skills. - Strong technical documentation skills. - Familiarity with DoD security requirements. - Strong communication skills in English. - Ability to work effectively both independently and as part of a collaborative team. - Proficiency with Microsoft Office Suite and collaboration tools. - Ability to obtain and maintain required DoD cybersecurity certifications. Benefits - Competitive compensation. - Extraordinary benefits package including health, dental, and vision insurance. - 401K with company matching. - Flexible spending accounts. - Paid holidays. - Three weeks paid time off. - More benefits available.
Migration Engineer
Koniag Government Services, LLCKoniag Government Services (KGS) is an Alaska Native Owned corporation supporting the values and traditions of our native communities through an agile employee and corporate culture that delivers Enterprise Solutions, Professional Services and Operational Management to Federal Government Agencies.
Role Description Koniag IT Systems, LLC, a Koniag Government Services company, is seeking an experienced Migration Engineer with a Secret security clearance to support a critical Government Identity, Credential, and Access Management (ICAM) initiative. This role supports a large-scale Application and Systems Enablement effort issued under an ICAM Enterprise Master IDIQ Contract. The Migration Engineer will serve as a hands-on technical contributor responsible for executing the integration and onboarding of NIPRNet applications onto a centralized ICAM technical stack—leveraging Okta for Identity Provider (IdP) services and SailPoint IdentityIQ (IIQ) for Identity Governance and Administration (IGA)—in direct support of the Department of Defense (DoD) Zero Trust Execution Roadmap. The ideal candidate is a technically skilled engineer with practical experience in identity and access management technologies, application integration, and enterprise security protocols. This individual must be comfortable working directly with application owners, troubleshooting complex integration challenges, and delivering high-quality technical solutions in a fast-paced federal IT environment. This position requires an active Secret clearance and may require occasional travel to Government facilities. Primary work will be performed remotely. The Migration Engineer will serve as a primary technical contributor on the enablement team, responsible for the hands-on execution of application integration activities across the full enablement lifecycle. This individual will work directly with application owners and internal technical teams to assess, configure, troubleshoot, and validate the integration of assigned applications into the Government ICAM ecosystem. The Migration Engineer is expected to deliver technically sound, secure, and compliant integration solutions while maintaining accurate documentation and status reporting throughout the enablement process. - Execute the technical integration of assigned NIPRNet applications into the ICAM technical stack. - Conduct thorough technical triage of assigned applications, assessing each application's current identity state. - Configure and implement identity federation and SSO integrations using industry-standard protocols. - Engineer, develop, and deploy custom tools, scripts, connectors, and middleware solutions. - Provide technical advisement and architectural guidance to Application Owners. - Assist Application Owners throughout the full enablement lifecycle. - Support Application Owners through the User Acceptance Testing (UAT) process. - Accurately document all triage findings, integration configurations, risk items, and application status updates. - Follow and execute the Application Owner Escalation Matrix. - Collaborate with internal engineers and the Migration Team Lead to resolve complex technical challenges. - Contribute to the development and continuous refinement of enablement playbooks and technical documentation. - Generate and maintain technical documentation describing integration solutions. - Support the testing program by assisting in the development of test plans and executing integration testing. - Ensure all integration activities comply with applicable DoD security requirements. - Maintain awareness of evolving ICAM platform capabilities and Zero Trust requirements. Qualifications - Bachelor's degree in Computer Science, Information Technology, Cybersecurity, Information Systems, or a related field from an accredited college or university. - Minimum of 4 years of hands-on experience in information technology. - At least 2 years of direct experience in identity and access management, enterprise application integration, or related cybersecurity disciplines. - Demonstrated experience configuring and troubleshooting SSO integrations using SAML, OAuth 2.0, or OIDC. - Experience working with Identity Provider (IdP) or Identity Governance and Administration (IGA) platforms. - Active Secret clearance. Requirements - Strong technical communication skills in English—both written and oral. - Hands-on experience configuring Okta for SSO, MFA, and application integration. - Hands-on experience with SailPoint IdentityIQ (IIQ). - Working knowledge and practical implementation experience with SAML, OAuth 2.0, OIDC, and SCIM identity protocols. - Experience developing custom integration solutions. - Familiarity with Role-Based Access Control (RBAC) and Attribute-Based Access Control (ABAC) principles. - Experience supporting or conducting User Acceptance Testing (UAT). - Strong attention to detail. - Familiarity with DoD security requirements. - Ability to work effectively both independently and as part of a collaborative cross-functional team. - Proficiency with Microsoft Office Suite and collaboration tools. Benefits - Competitive compensation. - Extraordinary benefits package including health, dental, and vision insurance. - 401K with company matching. - Flexible spending accounts. - Paid holidays. - Three weeks paid time off. - And more.

