Staff Threat Intelligence Engineer
SentinelOne
Summary
Join SentinelOne's SentinelLabs team as a Staff Threat Intelligence Engineer. This role requires a highly skilled, self-directed engineer proficient in programming and analytical problem-solving. You will collaborate with threat hunters and security researchers, developing and integrating tools using Python and Golang. Responsibilities include prototyping tools, designing telemetry enrichment systems, and codifying threat hunting processes. The ideal candidate possesses expertise in threat intelligence platforms, understands threat hunting processes, and has strong analytical and communication skills. SentinelOne offers a comprehensive benefits package including flexible working hours, remote work options, stock options, bonuses, various insurance plans, paid time off, wellness allowances, parental leave, and professional development opportunities.
Requirements
- Expertise working with threat intelligence platforms, with a strong understanding of how to leverage these platforms for data enrichment and threat intelligence automation
- A solid understanding of threat hunting processes and the ability to codify these processes into repeatable, scalable pipelines that enhance the efficacy of threat research efforts
- Strong analytical skills, capable of dissecting complex problems, synthesizing actionable information from diverse data sources, and finding opportunities for novel correlation
- Experience in software development, with strong proficiency in Python and/or Go, especially in developing and maintaining tools for security applications
- Comfort with rapidly prototyping and iterating on tools to ensure they meet the evolving needs of threat hunters and security researchers
- Knowledge of security telemetry data management, including the collection, analysis, storage, tagging, and enrichment of indicators of compromise and associated data sources such as VirusTotal Intelligence/Stairwell, and types like passive DNS, netflow, and scanning
- Excellent communication and collaboration skills, able to work effectively with cross-functional teams and surmise technical requirements from diverse stakeholders
Responsibilities
- Collaborate closely with threat hunters and security researchers to identify their needs, translating these into technical specifications for tool development
- Develop (using Python and Golang) and integrate tools, incorporating external enrichments, custom internal tools, and existing power ups to meet research requirements
- Rapidly prototype and refine tools to ensure they effectively support threat hunting processes and are seamlessly integrated into a repeatable pipeline
- Design and implement systems for telemetry enrichment and data curation to streamline the collection, analysis, storage, tagging, and enrichment of indicators of compromise and related data
- Codify threat hunting processes to maximize the value of diverse and unique data sources, meaningfully contributing to SentinelLabs threat research
Benefits
- Permanent-fulltime collaboration (UoP)
- Flexible working hours, this is a 100% remote role based within Poland; we provide optional membership in major co-working spaces
- Generous employee stock plan in the form of grant of RSUs (restricted stock units), not options; 4 years vesting with 1 year cliff and then quarterly, stock refresh yearly
- Yearly bonus depending on the performance of the company, paid out in 2 installments
- LuxMed, Life Insurance, Disability Insurance, PPK (4% employer contribution)
- Flexible time off (up to 30 paid days off per annum!)
- Volunteering paid day off & Additional paid Company holidays off (e.g. 4 days in 2022)
- Monthly Wellness Allowance
- Monthly Working from Home allowance
- Global gender-neutral Parental Leave (16 weeks, beyond the leave provided by the local laws) & Grandparent Leave
- Global Employee Assistance Program (confidential counseling related to both personal and work life matters)
- Udemy Business platform for Hard/Soft skills Training & Support for your further educational activities/trainings
- Above-standard referral bonus
- DEI&B programs that promote employee resource groups like SentinelWIN (Women Inclusion Network), Blk@S1, Latinos@S1, Pan-Asian@S1, Out@S1 (LGBTQIA+) and Sentinels Who Served