{"id":1146634,"url":"https://alion.io/job/sentinelone-staff-security-researcher-detection-ai-research","title":"Staff Security Researcher- Detection AI Research","company":{"id":46,"name":"SentinelOne","domain":"sentinelone.com","url":"https://alion.io/company/sentinelone","size_band":"1001-5000","is_staffing_agency":false,"is_intermediary":false,"listed_via":null,"ats_vendor":"Greenhouse","truth_index":{"grade":"A","score":87,"open_postings":23,"ghost_share":0,"stale_share":0.522,"repost_share":0,"time_to_fill_p50_days":53,"computed_at":"2026-09-24T05:45:00Z"}},"role":"Security","role_family":"Security","seniority":"staff","employment_type":null,"work_mode":"on_site","remote_scope":null,"remote_scope_basis":null,"remote_working_hours":null,"hiring_geo_confidence":"structured","locations":["Tel Aviv, Israel"],"countries":["IL"],"hiring_countries":[],"hiring_countries_total":0,"salary":null,"salary_estimate":{"min_usd":124000,"max_usd":293000,"period":"year","method":"global_role_cell_scaled_by_country","sample_n":395},"experience_years_min":5,"visa_sponsorship":false,"relocation_package":false,"has_equity":true,"technologies":[{"name":"LLM","optional":false},{"name":"Machine Learning","optional":false},{"name":"Python","optional":false},{"name":"SentinelOne","optional":false},{"name":"Splunk","optional":false},{"name":"SQL","optional":false},{"name":"Windows","optional":false},{"name":"YARA","optional":false},{"name":"YARA","optional":false}],"status":"live","first_seen_at":"2026-09-23T15:05:44Z","employer_posted_date":"2026-09-23","last_verified_at":"2026-09-24T16:26:58Z","board_verified":true,"closed_at":null,"days_open":1,"trust":{"level":"ok","repost_count":null,"flags":[],"days_open":1},"description":"Our Purpose \nAt SentinelOne, we are driven by a clear purpose: to give the advantage to those who secure our future. As AI reshapes how organizations build, operate, and innovate, the responsibility to protect them becomes more critical than ever. When you join SentinelOne, your work helps protect global enterprises, critical infrastructure, and the technologies shaping tomorrow. If you are motivated by meaningful challenges and want your impact to be real, measurable, and global, you will find purpose here.\nAbout Us \nSentinelOne is a company at the intersection of AI and security, pioneering a new operating model for cybersecurity. Our AI-native platform unifies protection across endpoint, cloud, identity, data, and AI systems to deliver autonomous detection and response with clarity and speed. By combining real-time analytics, intelligent automation, and a unified data foundation, we reduce noise, simplify complexity, and empower security teams to focus on what truly matters.\nOur teams are builders, problem-solvers, and innovators committed to shaping the future of security. If you are excited to solve hard problems alongside talented, mission-driven people, we invite you to help us build a safer future for humanity.\nWhat Are We Looking For?\nWe’re looking for people who are relentlessly curious and committed to continuous learning. AI is reshaping every function across our business, and we enable every team member, regardless of role or level, to build fluency in AI tools and concepts. Those who thrive here actively seek out new solutions, experiment thoughtfully, and apply what they learn to drive better, faster, smarter outcomes.\nAs a Staff Security Researcher- Detection AI Research, you will be tasked with joining the Detection AI Research team, where security research meets machine learning. We use SentinelOne's EDR telemetry from millions of endpoints to hunt for sophisticated, highly evasive attacks and to close the coverage gaps they expose, using ML models and LLM-based agents that we design, build, and run in production. As a Senior Security Researcher in our AI Detection research team, you will bring the attacker's-eye view: which techniques matter, how they look in endpoint data, and what separates a real intrusion from benign noise at scale. You will work alongside the data scientists who build our models, and your detections will reach real customers through SentinelOne's Wayfinder analysts, threat hunters and detection engines.\nWhat Will You Do?\nPrimary responsibilities include: \nResearch attack techniques and TTPs and how they manifest in our EDR telemetry, and turn that research into detection hypotheses that hold across millions of endpoints.\nDesign, build, own, and maintain AI-powered detections end to end: turn a detection hypothesis into a production pipeline that analyzes fleet-wide EDR data, applies the team's ML models and LLMs to separate real intrusions from benign activity, and surfaces advanced attacks that analysts and threat hunters can triage and act on.\nDrive the development of LLM-based agents that automate detection authoring: define what a correct, robust detection looks like, and expand our agent's detection coverage autonomously.\nAnalyze detection gaps and false positives together with MDR analysts, threat hunters and detection engineering teams, and feed the findings back into the detections.\nWrite high-quality production Python and own your code in production.\nStay current with APTs, attacker methodologies, and emerging TTPs.\nWhat Skills and Knowledge Will You Bring?\n\n Ideal candidates will have:\n5+ years of experience in security research, threat hunting, or detection engineering, with a track record of detections deployed in production.\nDeep understanding of the cybersecurity landscape, attack vectors, TTPs, and detection methods, especially on Windows.\nIn-depth knowledge of Windows internals and of how attacker behavior appears in EDR telemetry: process, file, registry, and network events.\nComfortable researching and hunting over very large telemetry datasets using SQL, KQL, Splunk, EDR query languages, or similar.\nPython software development experience, including working with data and writing production-quality code.\nAbility to drive and own research projects end to end; independent, critical thinker, team player.\nInterest in applying machine learning and LLMs to detection, and fluency with modern AI tools in your daily work\nHands-on experience applying machine learning or LLMs to security problems.\nExperience writing detection content: behavioral rules, Sigma, YARA, EDR query languages.\nMalware analysis, reverse engineering, or red-team experience.\nExperience with EDR/XDR products and their telemetry.\nWhy us?\nAI is redefining how the world operates and rewriting the rules of security in real time, and SentinelOne was built for this moment. From day one, we architected an AI-native platform designed to operate at machine speed, not as an add-on to legacy systems but as the foundation itself. If you want to build where innovation and impact move together, this is that place.\nWe invest in our Sentinels with comprehensive, competitive benefits designed to support you and your family:\nEquity & Rewards\nRestricted Stock Units (RSUs)\nEmployee Stock Purchase Plan (ESPP)\nTime Off & Wellbeing\nCompetitive leave benefits\nGender-neutral parental leave\nEmployee Assistant Program\nWorkout sessions and a Wellness App\nInsurance & Financial Security\nMedical and insurance benefits\nPension\nEmployee Assistance Program (EAP)\nWork Perks & Flexibility\nGlobal home office allowance\nMobile phone reimbursement\nStudy Fund \n\nSentinelOne is proud to be an Equal Employment Opportunity and Affirmative Action employer. We do not discriminate based upon race, religion, color, national origin, gender (including pregnancy, childbirth, or related medical conditions), sexual orientation, gender identity, gender expression, age, status as a protected veteran, status as an individual with a disability, or other applicable legally protected characteristics.\nSentinelOne participates in the E-Verify Program for all U.S. based roles.","description_format":"text","description_chars":6147,"description_truncated":false,"requirements":{"experience_years_min":5,"management_years_min":null,"team_size_min":null,"manages_managers":false,"education":null,"security_clearance":false,"languages":[]},"benefits":["Continuous learning","Equity","Home office","Parental leave","Restricted stock units"],"hiring_locations":[],"hiring_excludes":[],"relocation_offered":false,"industries":["Artificial Intelligence","Cybersecurity","Information Security","Security Operations"],"lifecycle":[{"event":"open","at":"2026-09-23T15:32:13Z"}],"liveness":{"score":63,"band":"ok","label":"Likely open","p_open":1,"p_active":0.632,"p_room":1,"age_days":0,"expected_fill_days":53,"reasons":["conf:0","stale_co","velocity","win:early","comp:brand"],"computed_at":"2026-09-24T05:45:00Z"},"pay":null,"html_url":"https://alion.io/job/sentinelone-staff-security-researcher-detection-ai-research","json_url":"https://alion.io/job/sentinelone-staff-security-researcher-detection-ai-research.json","meta":{"generated_at":"2026-09-24T17:18:44Z","cache_seconds":300,"methodology":"https://alion.io/methodology","terms":"https://alion.io/terms","contact":"https://alion.io/contact","api":"https://alion.io/developers"}}