Source description
About the role
We are seeking a Senior Security Engineer with deep expertise in SentinelOne to lead the design, implementation, and ongoing management of our Endpoint Detection and Response (EDR) solutions. This role will be responsible for enhancing threat visibility, orchestrating incident response, and ensuring enterprise-grade endpoint protection across the organization.
Key Responsibilities:
Lead the deployment, configuration, tuning, and maintenance of SentinelOne EDR/XDR across enterprise environments.
Develop and maintain custom detection rules and threat intelligence integrations within SentinelOne.
Analyze alerts and telemetry data to detect and respond to threats; perform triage, root cause analysis, and threat hunting using SentinelOne and supporting tools.
Collaborate with SOC, IR, and IT teams to investigate and remediate security incidents effectively.
Create and maintain playbooks, runbooks, and automated workflows for incident response and containment.
Ensure compliance with security frameworks (NIST, CIS, ISO 27001) using endpoint monitoring and control.
Monitor system performance and proactively identify gaps in endpoint security posture.
Assist in the evaluation and integration of threat intelligence feeds and third-party tools with SentinelOne.
Provide mentoring and guidance to junior team members on EDR practices and tools.
Stay up to date with the latest cyber threats, vulnerabilities, and security technologies.
Required Qualifications:
Bachelor's degree in Cybersecurity, Computer Science, Information Technology, or related field (or equivalent experience).
5+ years of experience in cybersecurity or information security roles.
2+ years hands-on experience with SentinelOne EDR/XDR platform (console management, threat hunting, policy configuration).
Proficient in EDR technologies , threat detection, incident response, and malware analysis.
Experience with SIEM/SOAR integration , scripting (Python, PowerShell), and endpoint forensic tools.
Strong understanding of MITRE ATT&CK framework and advanced persistent threat (APT) tactics.
Familiarity with Windows, macOS, and Linux endpoint environments .
More at 3B Staffing