Senior Director, Global Threat Hunting
SentinelOne
Job highlights
Summary
Join SentinelOne, a leading cybersecurity company, as a Threat Hunting Leader. Lead a team of threat hunters in designing and implementing intelligence-driven threat hunting efforts. You will regularly identify and refine emerging intrusion techniques, provide technical leadership to improve SentinelOne's ability to respond to intrusion activity, and convert technical actions into executive-ready communications. This critical role requires extensive experience in threat hunting leadership, forensic tools, and various technologies. You will work with multiple teams and contribute to the continual refinement and development of internal capabilities, ensuring our clients remain protected. SentinelOne offers a competitive salary and benefits package.
Requirements
- Prefer 15+ years of progressive professional experience (or equivalent combination of experience, certifications, and education), including multiple recent years of dedicated threat hunting organizational leadership in an enterprise or global environment
- Demonstrated ability to lead multiple functions through an ongoing intrusion discovery event affecting multiple victims simultaneously
- Experience developing, deploying, refining, and making implementation decisions for a wide variety of hunting and detection logic
- Proven experience with forensic tools/platforms, threat hunting tools, query languages, and related technologies
- Ability to develop manual processes and transition to automated workflows
- Provide recommendations and associated prioritization for capability adjustment involving both external vendors and internal development
- Possess in-depth knowledge in intrusion attack surface knowledge for a variety of areas, to include EDR, cloud, and identity
Responsibilities
- Lead a team of threat hunters in designing and implementing an intelligence-driven threat hunting effort while working with different teams, to include DFIR, MDR, Intelligence, and Detection Engineering
- Regularly identify, research, and refine emerging intrusion techniques to develop specific hunting content and work with various teams to convert these efforts to product-grade detections
- Provide technical leadership and experience to improve SentinelOne’s ability to identify, detect, and respond to intrusion activity in both single-victim and large-scale victim situations
- Convert technical actions to executive-ready communications enabling rapid decisionmaking across SentinelOne
- Work with engineering and tooling teams in a continual refinement and development cycle for internal capabilities
Benefits
- Medical, Vision, Dental
- 401(k)
- Commuter
- Health and Dependent FSA
- Unlimited PTO
- Industry-leading gender-neutral parental leave
- Paid Company Holidays
- Paid Sick Time
- Employee stock purchase program
- Disability and life insurance
- Employee assistance program
- Gym membership reimbursement
- Cell phone reimbursement
- Ad-hoc travel for company-sponsored events and team-building events