Malware Researcher/Detection Engineer - Linux/Cloud Security

at  SentinelOne

Praha, Praha, Czech -

Start DateExpiry DateSalaryPosted OnExperienceSkillsTelecommuteSponsor Visa
Immediate30 Apr, 2025Not Specified31 Jan, 2025N/AMalware Analysis,Python,Ecs,Lua,C++,Reverse Engineering,It,Scripting,Threads,Virtual MemoryNoNo
Add to Wishlist Apply All Jobs
Required Visa Status:
CitizenGC
US CitizenStudent Visa
H1BCPT
OPTH4 Spouse of H1B
GC Green Card
Employment Type:
Full TimePart Time
PermanentIndependent - 1099
Contract – W2C2H Independent
C2H W2Contract – Corp 2 Corp
Contract to Hire – Corp 2 Corp

Description:

ABOUT US:

SentinelOne is defining the future of cybersecurity through our XDR platform that automatically prevents, detects, and responds to threats in real-time. Singularity XDR ingests data and leverages our patented AI models to deliver autonomous protection. With SentinelOne, organizations gain full transparency into everything happening across the network at machine speed – to defeat every attack, at every stage of the threat lifecycle.
We are a values-driven team where names are known, results are rewarded, and friendships are formed. Trust, accountability, relentlessness, ingenuity, and OneSentinel define the pillars of our collaborative and unified global culture. We’re looking for people that will drive team success and collaboration across SentinelOne. If you’re enthusiastic about innovative approaches to problem-solving, we would love to speak with you about joining our team!

WHAT ARE WE LOOKING FOR?

We are looking for a talented malware researcher/detection engineer with experience in the Linux or/and cloud security domain. People that can explore new technologies, design and develop from scratch innovative ideas and drive new detection capabilities and infrastructure at scale to our products.

WHAT SKILLS & KNOWLEDGE SHOULD YOU BRING?

  • Experience with reverse engineering of x86/x64 binaries
  • Experience in malware analysis (statically and dynamically)
  • Understanding of Linux and Containers threat landscape (including but not limited to frameworks, MITRE IaaS)
  • Proficient in Linux OS architecture and internals - understanding how core system components (Processes and Threads, Virtual Memory and more) work behind the scenes.
  • Experience with Python or Lua or other languages for scripting
  • Solid familiarity and understanding of C++
  • An advantage would be:


    • understanding of existing Anti-Virus/Endpoint Protection SW internals

    • experience with eBPF (you may learn more about eBPF and how we use it at S1 here)
    • experience with Cloud Workloads (EKS, ECS, Fargate, etc.’)
    • experience working on a production-grade product with a wide scale deployment

    Responsibilities:

    WHAT WILL YOU DO?

    • You will be responsible for detecting the newest malwares and exploits based on SentinelOne’s AI-powered Endpoint platform (EPP/EDR).
    • The role includes an end to end responsibility for behaviour based detection capabilities, starting from reversing the samples, designing new methods to detect or prevent those, and incorporating it into the product along with the engineering teams.
    • You will be developing and using internal research tools, PoCs and discovering new ways to detect/prevent malicious techniques.
      At the end of the day, your deliveries will enhance the security of countless of different Linux endpoints and cloud workloads platforms protected by our product, that serves thousands of users (from enterprise & public sector clients across the globe, incl. some of the largest companies globally) and billions of events daily as part of SentinelOne’s security offering.
      You will also be encouraged to write white papers, blogs and articles (but only if you wish to).

    YOUR DUTIES:

    • Detection Development
    • Write tests to cover new detections
    • Conduct low level security research
    • Peer code reviews; Participate in team’s design reviews
    • Learn new technologies in the Linux and Cloud workloads security domains
    • Support customers with issues and requests within the team’s domain


    REQUIREMENT SUMMARY

    Min:N/AMax:5.0 year(s)

    Information Technology/IT

    IT Software - Network Administration / Security

    Software Engineering

    Graduate

    Proficient

    1

    Praha, Czech