Summary
SentinelOne is an AI-native cybersecurity company providing unified protection across endpoint, cloud, identity, data, and AI systems. The Mid-Level MDR Analyst will monitor, investigate, and respond to security threats for global clients while using the Singularity Platform and DFIR tools, collaborating with security teams, improving detection capabilities, and mentoring fellow analysts.
Responsibilities
- Monitor and triage security threats, respond to incidents, and guide clients through remediation and mitigation efforts
- Collaborate with internal MDR and MDR-adjacent teams on projects, tasks, and initiatives to improve our ability to detect and respond to threat actors
- Query and analyze log data using the SentinelOne Singularity Platform, and become an expert in our bespoke DFIR tools to identify and contextualize threats across EDR, cloud, and network sources
- Tune and provide feedback on detection rules to reduce noise and improve signal quality
- Write clear, detailed incident reports that communicate findings to both technical and non-technical audiences
- Collaborate with detection engineers, threat intel, and client teams to improve the overall quality of the MDR service
- Function as a force multiplier by training and mentoring fellow analysts, both one-on-one and in group settings
- Contribute to process improvements and knowledge sharing to make the SOC better every day
Skills
- * 2–4 years of experience in a SOC, IR, MDR, or similar environment
- * A mindset that values learning, collaboration, and making things better
- * Experience with SIEM and EDR platforms
- * Comfort investigating alerts from tools like CrowdStrike, SentinelOne, Splunk, Rapid7, or Microsoft 365 Defender
- * Understanding of attacker tactics (MITRE ATT&CK, phishing, lateral movement, etc.) and how to spot them
- * Clear written and verbal communication — you can explain your thought process and back it up
Qualifications
Must Haves
- * 2–4 years of experience in a SOC, IR, MDR, or similar environment
- * A mindset that values learning, collaboration, and making things better
- * Experience with SIEM and EDR platforms
- * Comfort investigating alerts from tools like CrowdStrike, SentinelOne, Splunk, Rapid7, or Microsoft 365 Defender
- * Understanding of attacker tactics (MITRE ATT&CK, phishing, lateral movement, etc.) and how to spot them
- * Clear written and verbal communication — you can explain your thought process and back it up
Benefits
- Restricted Stock Units (RSUs)
- Employee Stock Purchase Plan (ESPP)
- Flexible time off
- Paid company holidays and paid sick time
- Gender-neutral parental leave
- Grandparent leave
- Medical, dental, and vision coverage
- 401(k) retirement plan with company match
- Life and disability insurance
- Health and dependent care FSA
- Voluntary benefits (hospital, accident, critical illness)
- Employee Assistance Program (EAP)
- ARAG pre-paid legal
- Nationwide pet insurance
- Cancer Care program
- Global business travel medical insurance
- Home office allowance
- Mobile phone reimbursement
- Wellness coach
- Wellness/gym reimbursement
- Fertility coverage
- Adoption & surrogacy reimbursement
- Commissions