Staff Security Researcher- Detection AI Research
Core
Design, build, and maintain AI-powered detections and LLM-based agents to hunt for sophisticated attacks using EDR telemetry from millions of endpoints.
Role type
Staff Security Researcher (Detection AI Research)
Builds
Production ML models, LLM-based detection agents, and automated detection pipelines for SentinelOne's Wayfinder analysts and threat hunters.
Domain
Cybersecurity, Endpoint Detection and Response (EDR), Machine Learning, Large Language Models (LLMs)
Deliverable
production ML models
Required skills
Security research, threat hunting, Windows internals, EDR telemetry analysis, Python development, SQL/KQL/Splunk querying, Malware analysis/reverse engineering, Sigma/YARA/EDR query languages, APT methodology knowledge
Preferred skills
Hands-on experience applying ML/LLMs to security problems, Red-team experience, Experience with EDR/XDR products
Technologies
Python, SQL, KQL, Splunk, EDR query languages, ML models, LLMs
Responsibilities
Research attack techniques and TTPs to create detection hypotheses; Design and own end-to-end AI-powered detection pipelines; Drive development of LLM-based agents for automated detection authoring; Analyze detection gaps and false positives with analysts; Write production-quality Python code; Stay current with emerging APTs and attacker methodologies
Seniority
Staff, hands-on IC with strategic ownership