Vedere l'offerta completa

WINDOWS DETECTION ENGINEER

Descrizione dell'offerta di lavoro

SentinelOne is defining the future of cybersecurity through our XDR platform that automatically prevents, detects, and responds to threats in real-time. Singularity XDR ingests data and leverages our patented AI models to deliver autonomous protection. With SentinelOne, organizations gain full transparency into everything happening across the network at machine speed – to defeat every attack, at every stage of the threat lifecycle. We are a values-driven team where names are known, results are rewarded, and friendships are formed. Trust, accountability, relentlessness, ingenuity, and OneSentinel define the pillars of our collaborative and unified global culture. We're looking for people that will drive team success and collaboration across SentinelOne. If you’re enthusiastic about innovative approaches to problem-solving, we would love to speak with you about joining our team! What are we looking for? We are seeking highly motivated individuals to join our Windows Behavioral Rules Team. The ideal candidates will have a strong background in cybersecurity, with a focus on Windows-based rule development for SIEM, EDR, XDR, or similar platforms. We are looking for team players, adept at crafting precise and effective detection rules, and committed to staying at the forefront of cybersecurity advancements. What will you do? As a Windows Detection Engineer, you will play a key role in crafting, owning, and packaging default rules for our Windows agent. Your responsibilities will include creating rules that correlate different behavioral events collected from the OS, performing false positive analysis, and actively contributing to the ongoing enhancement of our detection capabilities. You will be responsible for the following: Develop precise and effective detection rules and deliver default rules for the WIN agent. Rigorously analyze and assess false positives associated with the rules you create. Contribute to the optimization of rules to minimize false positives and enhance detection accuracy. Collaborate with the team to optimize existing default rules for superior detection capabilities. Stay informed about emerging threats, industry trends, and new technologies to continuously improve rule efficacy. Follow good detection engineering practices and the default rules you develop, including logic, descriptions, and other metadata, tests, and more. What experience or knowledge should you bring? 2+ years of experience in Detection Engineering / Red Teaming / Offensive Research. Experience writing behavioral detection rules for EDR, XDR, SIEM, or other similar platforms. Experience writing YARA or other types of static detections is nice to have. Deep understanding of modern Windows attack TTPs (how malware operates, evasion, and exploitation techniques). Understanding of Windows internals. Hands-on experience with coding in Python and C/C++. Familiarity with Detection Engineering processes including prioritizing a backlog for research and development, writing unit and integration tests, and with CI/CD technologies such as Jenkins. Strong analytical and problem-solving skills, with an understanding of false-positive analysis. Excellent communication and collaboration skills within a team-oriented environment. Advantage Experience in malware analysis (statically and dynamically) and reverse engineering (x86/x64). Understanding of existing EDR internals. Why us? We are at the forefront of the most dominant space of the Cyber Security market. You'll be working closely with some of the best researchers on the planet on the most innovative and challenging features that will shape the future of Cyber Security. You will be part of a truly global team that is rapidly growing around the world, on an amazing journey of success. You will work with great people in an open, fun environment, and you will be part of an organization that truly values its people. On top of that we offer you Flexible working hours, this is a 100% remote role based within Italy ; we provide optional membership in major coworking chains. Generous employee stock plan in the form of RSUs (restricted stock units) grant not options; 4 years vesting with 1 year cliff and then quarterly, stock refresh yearly. Yearly bonus depending on the performance of the company, paid out in 2 installments. Quadro benefits - Private Medical, Life Insurance, Accident Insurance, Study funds and Healthcare benefits. Flexible time off (up to 30 paid days off per annum!). Global gender-neutral Parental Leave (16 weeks, beyond the leave provided by the local laws) & Grandparent Leave. Volunteering paid day off & Additional paid Company holidays off (e.g. 4 days in 2022). Global Employee Assistance Program (confidential counseling related to both personal and work life matters). LinkedIn Learning platform for Hard/Soft skills Training, internal mentoring 'MentorOne' & Support for your further educational activities/trainings. Above-standard referral bonus. DEI&B programs that promote employee resource groups like SentinelWIN (Women Inclusion Network), Blk@S1, Latinos@S1, Pan-Asian@S1, Out@S1 (LGBTQIA+) and Sentinels Who Served. & Additional country-specific benefits to Italy SentinelOne is proud to be an Equal Employment Opportunity and Affirmative Action employer. We do not discriminate based upon race, religion, color, national origin, gender (including pregnancy, childbirth, or related medical conditions), sexual orientation, gender identity, gender expression, age, status as a protected veteran, status as an individual with a disability, or other applicable legally protected characteristics. SentinelOne participates in the E-Verify Program for all U.S. based roles. SentinelOne | Work where your voice is heard and your work is recognized. #J-18808-Ljbffr
Vedere l'offerta completa

Dettagli dell'offerta

Azienda
  • SentinelOne
Località
  • Tutta l'Italia
Indirizzo
  • Imprecisato - Imprecisato
Data di pubblicazione
  • 21/12/2024
Data di scadenza
  • 21/03/2025
Devops Engineer
Key Partner srl

Platform engineer... il platform engineer partecipa alla progettazione, all'implementazione e al supporto continuo dei servizi di produzione, delle applicazioni e dei componenti della piattaforma... nell’ambito di un’importante strategia di crescita, stiamo cercando un devops engineer per rafforzare......

SISTEMISTA WINDOWS
Programs & Projects Consulting S.r.L.

Sei tu la persona che fa al caso nostro? cerchiamo proprio te se hai un'esperienza affine di almeno 2 anni ed hai sviluppato competenze trasversali sulle seguenti tecnologie: buona conoscenza del sistema operativo windows server e di vmware; installazione e configurazione sistemi operativi client e......

Data Engineer
Sincrono Formazione Srl

Ruolo ricoperto: -data engineer competenze richieste: -data warehousing / business intelligence -google cloud bigquery -big data & analytics, -cloudera, mongodb, -jenkins, git -kubernetes competenze linguistiche: -inglese: livello b1 seniority: +3 anni sede di lavoro: residenza in una delle città menzionate:......

Sistemista Windows/Linux/Unix
Sincrono Formazione Srl

Se siete interessati a ricevere ulteriori dettagli della richiesta, potere inviare un curriculum vitae aggiornato all'indirizzo mail, specificando la posizione per la quale vi candidate (sistemista_mi)l'offerta è rivolta a personale maschile e femminile ai sensi della legge 903/77......

Sistemista Linux/Windows
Gruppo Sincrono

Ruolo ricoperto:-sistemista linux/windowscompetenze richieste:-conoscenza sistemistica degli ambienti windows e linux-configurazioni di sistemi (lato server e client)-conoscenza di networking (lan/wan/wireless/vpn)-conoscenza di base cloud (aws & azure)... gruppo sincrono, holding company ict di consulenza......

Sistemista windows su milano
Programs & projects consulting s.r.l.

Chi cerchiamo selezioniamo diverse figure di sistemisti windows su milano... requisiti tecnici: conoscenza di: windows server 2012/2016 active directory iis vmware linux office 365 esperienza: il candidato ideale deve avere un'esperienza sul campo di almeno 5 anni, durante la quale si siano applicate......

Sistemisti windows / milano
Programs & projects consulting s.r.l.

Chi cerchiamo per l'ampliamento del nostro organico selezioniamo diverse figure come sistemisti windows sulla sede di milano... requisiti di lavoro requisiti tecnici windows server 2012/2016 active directory iis microsoft 365 suite microsoft exchange sql server esperienza il candidato deve aver aver......

Process Engineer - Processisti Impianti Industriali
3a engineering

Per ampliamento dell'organico nel team di processo impianti chimici, siamo alla ricercare un process engineer la persona si occuperà di: elaborazione bilancio di materia e di energia; preparazione e stesura di diagrammi di flusso; preparazione e stesura di diagrammi p&i; dimensionamento e calcolo delle......

Software Engineer
Adami & associati selezione del personale

Ruolo: software engineer siamo alla ricerca di un software engineer talentuoso per unirsi al team a calenzano, firenze... un ambiente di lavoro stimolante e supportivo... buona conoscenza linguaggio c-sharp competenze sistemistiche a livello di rete pacchetto retributivo: pacchetto retributivo competitivo......

Quality Engineer
GSXecutive

Competenze richieste il nostro quality engineer è incaricato di effettuare analisi sui processi produttivi e sui prodotti, per verificare il rispetto degli standard di qualità prefissati o revisionarli in seguito a possibili reclami... si richiede:conoscenza della norma iso 9001tecniche di auditing (gradita......