Match score not available

Staff Threat Intelligence Engineer - SentinelLabs

extra holidays - fully flexible
Remote: 
Full Remote
Experience: 
Senior (5-10 years)
Work from: 

Offer summary

Qualifications:

Strong programming skills in Python and Go., Experience with threat intelligence platforms., Solid understanding of threat hunting processes., Proficient in telemetry data management..

Key responsabilities:

  • Collaborate with threat hunters and researchers.
  • Develop and integrate tools for threat hunting.

SentinelOne logo
SentinelOne Large http://www.sentinelone.com
1001 - 5000 Employees
See all jobs

Job description

About Us:

SentinelOne is defining the future of cybersecurity through our XDR platform that automatically prevents, detects, and responds to threats in real-time. Singularity XDR ingests data and leverages our patented AI models to deliver autonomous protection. With SentinelOne, organizations gain full transparency into everything happening across the network at machine speed – to defeat every attack, at every stage of the threat lifecycle. 

We are a values-driven team where names are known, results are rewarded, and friendships are formed. Trust, accountability, relentlessness, ingenuity, and OneSentinel define the pillars of our collaborative and unified global culture. We're looking for people that will drive team success and collaboration across SentinelOne. If you’re enthusiastic about innovative approaches to problem-solving, we would love to speak with you about joining our team!

What are we looking for?

We are looking for a Staff Threat Intelligence Engineer to join the SentinelLabs team. This role is designed for a highly skilled, self-directed engineer who excels in programming and analytical problem-solving. As a key developer of our threat intelligence tooling, you will work closely with a world-class team threat hunters and security researchers to produce innovative tools that automate, enhance, curate, and expand our team's capabilities. Your expertise will be pivotal in navigating various technology stacks and rapidly prototyping tools to codify threat hunting processes into a repeatable pipeline. The systems and tools you develop will be instrumental in enabling threat hunting, telemetry enrichment, and data curation, supporting diverse stakeholders across SentinelOne.

What will you do? 

As a Staff Threat Intelligence Engineer at SentinelLabs, your primary responsibilities will include:

  • Collaborating closely with threat hunters and security researchers to identify their needs, translating these into technical specifications for tool development
  • Developing (using Python and Golang) and integrating tools, incorporating external enrichments, custom internal tools, and existing power ups to meet research requirements
  • Rapidly prototyping and refining tools to ensure they effectively support threat hunting processes and are seamlessly integrated into a repeatable pipeline
  • Designing and implementing systems for telemetry enrichment and data curation to streamline the collection, analysis, storage, tagging, and enrichment of indicators of compromise and related data
  • Codifying threat hunting processes to maximize the value of diverse and unique data sources, meaningfully contributing to SentinelLabs threat research
What skills and knowledge should you bring?
  • Expertise working with threat intelligence platforms, with a strong understanding of how to leverage these platforms for data enrichment and threat intelligence automation
  • A solid understanding of threat hunting processes and the ability to codify these processes into repeatable, scalable pipelines that enhance the efficacy of threat research efforts
  • Strong analytical skills, capable of dissecting complex problems, synthesizing actionable information from diverse data sources, and finding opportunities for novel correlation
  • Experience in software development, with strong proficiency in Python and/or Go, especially in developing and maintaining tools for security applications
  • Comfort with rapidly prototyping and iterating on tools to ensure they meet the evolving needs of threat hunters and security researchers
  • Knowledge of security telemetry data management, including the collection, analysis, storage, tagging, and enrichment of indicators of compromise and associated data sources such as VirusTotal Intelligence/Stairwell, and types like passive DNS, netflow, and scanning
  • Excellent communication and collaboration skills, able to work effectively with cross-functional teams and surmise technical requirements from diverse stakeholders
Why Us?

You will work on real-world problems and make an impact by protecting our customers from cyber threats. You will be joining a cutting-edge project and will be able to influence the architecture, design, and structure of our core platform. You will tackle extraordinary challenges and work with the very BEST in the industry.

What we offer you
  • Permanent-fulltime collaboration (UoP)
  • Flexible working hours, this is a 100% remote role based within Poland; we provide optional membership in major co-working spaces
    • Currently for this role in Poland we are able to consider only candidates that are already eligible to work in the EU at the time of applying
    • Optionally for those willing to relocate to the Czech Republic relocation assistance is available for any candidates that are already eligible to work in the EU at the time of applying

  • Generous employee stock plan in the form of grant of RSUs (restricted stock units), not options; 4 years vesting with 1 year cliff and then quarterly, stock refresh yearly
  • Yearly bonus depending on the performance of the company, paid out in 2 installments
  • LuxMed, Life Insurance, Disability Insurance, PPK (4% employer contribution)
  • Flexible time off (up to 30 paid days off per annum!)
  • Volunteering paid day off & Additional paid Company holidays off (e.g. 4 days in 2022)
  • Monthly Wellness Allowance
  • Monthly Working from Home allowance
  • Global gender-neutral Parental Leave (16 weeks, beyond the leave provided by the local laws) & Grandparent Leave
  • Global Employee Assistance Program (confidential counseling related to both personal and work life matters)
  • Udemy Business platform for Hard/Soft skills Training & Support for your further educational activities/trainings
  • Above-standard referral bonus
  • DEI&B programs that promote employee resource groups like SentinelWIN (Women Inclusion Network), Blk@S1, Latinos@S1, Pan-Asian@S1, Out@S1 (LGBTQIA+) and Sentinels Who Served

& Aditional Country-specific Benefits & Allowances To Poland

SentinelOne is proud to be an Equal Employment Opportunity and Affirmative Action employer. We do not discriminate based upon race, religion, color, national origin, gender (including pregnancy, childbirth, or related medical conditions), sexual orientation, gender identity, gender expression, age, status as a protected veteran, status as an individual with a disability, or other applicable legally protected characteristics.

SentinelOne participates in the E-Verify Program for all U.S. based roles. 

Required profile

Experience

Level of experience: Senior (5-10 years)
Spoken language(s):
English
Check out the description to know which languages are mandatory.

Other Skills

  • Analytical Skills
  • Collaboration
  • Communication

Cyber Threat Intelligence Analyst Related jobs