Match score not available

Staff Threat Intelligence Engineer - SentinelLabs

extra holidays - fully flexible
Remote: 
Full Remote
Salary: 
5 - 5K yearly
Experience: 
Senior (5-10 years)
Work from: 

Offer summary

Qualifications:

Expertise in threat intelligence platforms., Strong proficiency in Python and/or Go., Solid understanding of threat hunting processes., Experience in developing security applications..

Key responsabilities:

  • Collaborate with threat hunters on tool development.
  • Develop and integrate tools for threat research.
  • Prototype tools to support threat hunting.
  • Design systems for telemetry enrichment and data management.

SentinelOne logo
SentinelOne Large http://www.sentinelone.com
1001 - 5000 Employees
See all jobs

Job description

About Us:

SentinelOne is defining the future of cybersecurity through our XDR platform that automatically prevents, detects, and responds to threats in real-time. Singularity XDR ingests data and leverages our patented AI models to deliver autonomous protection. With SentinelOne, organizations gain full transparency into everything happening across the network at machine speed – to defeat every attack, at every stage of the threat lifecycle. 

We are a values-driven team where names are known, results are rewarded, and friendships are formed. Trust, accountability, relentlessness, ingenuity, and OneSentinel define the pillars of our collaborative and unified global culture. We're looking for people that will drive team success and collaboration across SentinelOne. If you’re enthusiastic about innovative approaches to problem-solving, we would love to speak with you about joining our team!

What are we looking for?

We are looking for a Staff Threat Intelligence Engineer to join the SentinelLabs team. This role is designed for a highly skilled, self-directed engineer who excels in programming and analytical problem-solving. As a key developer of our threat intelligence tooling, you will work closely with a world-class team threat hunters and security researchers to produce innovative tools that automate, enhance, curate, and expand our team's capabilities. Your expertise will be pivotal in navigating various technology stacks and rapidly prototyping tools to codify threat hunting processes into a repeatable pipeline. The systems and tools you develop will be instrumental in enabling threat hunting, telemetry enrichment, and data curation, supporting diverse stakeholders across SentinelOne.

What will you do? 

As a Staff Threat Intelligence Engineer at SentinelLabs, your primary responsibilities will include:

  • Collaborating closely with threat hunters and security researchers to identify their needs, translating these into technical specifications for tool development
  • Developing (using Python and Golang) and integrating tools, incorporating external enrichments, custom internal tools, and existing power ups to meet research requirements
  • Rapidly prototyping and refining tools to ensure they effectively support threat hunting processes and are seamlessly integrated into a repeatable pipeline
  • Designing and implementing systems for telemetry enrichment and data curation to streamline the collection, analysis, storage, tagging, and enrichment of indicators of compromise and related data
  • Codifying threat hunting processes to maximize the value of diverse and unique data sources, meaningfully contributing to SentinelLabs threat research
What skills and knowledge should you bring?
  • Expertise working with threat intelligence platforms, with a strong understanding of how to leverage these platforms for data enrichment and threat intelligence automation
  • A solid understanding of threat hunting processes and the ability to codify these processes into repeatable, scalable pipelines that enhance the efficacy of threat research efforts
  • Strong analytical skills, capable of dissecting complex problems, synthesizing actionable information from diverse data sources, and finding opportunities for novel correlation
  • Experience in software development, with strong proficiency in Python and/or Go, especially in developing and maintaining tools for security applications
  • Comfort with rapidly prototyping and iterating on tools to ensure they meet the evolving needs of threat hunters and security researchers
  • Knowledge of security telemetry data management, including the collection, analysis, storage, tagging, and enrichment of indicators of compromise and associated data sources such as VirusTotal Intelligence/Stairwell, and types like passive DNS, netflow, and scanning
  • Excellent communication and collaboration skills, able to work effectively with cross-functional teams and surmise technical requirements from diverse stakeholders
Why Us?

You will work on real-world problems and make an impact by protecting our customers from cyber threats. You will be joining a cutting-edge project and will be able to influence the architecture, design, and structure of our core platform. You will tackle extraordinary challenges and work with the very BEST in the industry.

What we offer you
  • Flexible working hours, this is a 100% remote role based within Spain; we provide optional membership in major coworking chains
    • Currently for this role in Spain we are able to consider only candidates that are already eligible to work in the EU at the time of applying
    • Optionally for those willing to relocate to the Czech Republic relocation assistance is available for any candidates that are already eligible to work in the EU at the time of applying
  • Generous employee stock plan in the form of grant of RSUs (restricted stock units), not options; 4 years vesting with 1 year cliff and then quarterly, stock refresh yearly
  • Yearly bonus depending on the performance of the company, paid out in 2 installments
  • 30 Days of Paid Annual Leave
  • Flexible Paid Sick Days
  • Pension insurance contribution
  • Premium Life Insurance covered by S1
  • Premium Medical & Dental Insurance covered by S1
  • Meal, Transport & Homeoffice allowance of total 440 EUR/month
  • Global gender-neutral Parental Leave (16 weeks, beyond the leave provided by the local laws) & Grandparent Leave
  • Volunteering paid day off & Additional paid Company holidays off (e.g. 4 days in 2022)
  • Global Employee Assistance Program (confidential counseling related to both personal and work life matters)
  • Udemy Business platform for Hard/Soft skills Training & Support for your further educational activities/trainings
  • Above-standard referral bonus
  • DEI&B programs that promote employee resource groups like SentinelWIN (Women Inclusion Network), Blk@S1, Latinos@S1, Pan-Asian@S1, Out@S1 (LGBTQIA+) and Sentinels Who Served

& Aditional country-specific benefits to Spain

SentinelOne is proud to be an Equal Employment Opportunity and Affirmative Action employer. We do not discriminate based upon race, religion, color, national origin, gender (including pregnancy, childbirth, or related medical conditions), sexual orientation, gender identity, gender expression, age, status as a protected veteran, status as an individual with a disability, or other applicable legally protected characteristics.

SentinelOne participates in the E-Verify Program for all U.S. based roles. 

Required profile

Experience

Level of experience: Senior (5-10 years)
Spoken language(s):
English
Check out the description to know which languages are mandatory.

Other Skills

  • Analytical Thinking
  • Collaboration
  • Teamwork
  • Communication

Cyber Threat Intelligence Analyst Related jobs