Senior Malware Detection Engineer
SentinelOne
- Location
- India
- Level
- Senior
- H-1B history
- 1 approvals (FY2023)
- Posted
- 3h ago
Skills
About this role
Our Purpose
At SentinelOne, we are driven by a clear purpose: to give the advantage to those who secure our future. As AI reshapes how organizations build, operate, and innovate, the responsibility to protect them becomes more critical than ever. When you join SentinelOne, your work helps protect global enterprises, critical infrastructure, and the technologies shaping tomorrow. If you are motivated by meaningful challenges and want your impact to be real, measurable, and global, you will find purpose here.
About Us
SentinelOne is a company at the intersection of AI and security, pioneering a new operating model for cybersecurity. Our AI-native platform unifies protection across endpoint, cloud, identity, data, and AI systems to deliver autonomous detection and response with clarity and speed. By combining real-time analytics, intelligent automation, and a unified data foundation, we reduce noise, simplify complexity, and empower security teams to focus on what truly matters.
Our teams are builders, problem-solvers, and innovators committed to shaping the future of security. If you are excited to solve hard problems alongside talented, mission-driven people, we invite you to help us build a safer future for humanity.
What Are We Looking For?
We’re looking for people who are relentlessly curious and committed to continuous learning. AI is reshaping every function across our business, and we enable every team member, regardless of role or level, to build fluency in AI tools and concepts. Those who thrive here actively seek out new solutions, experiment thoughtfully, and apply what they learn to drive better, faster, smarter outcomes.
As a Senior Malware Detection Engineer with deep expertise in Linux and macOS — someone who is always looking to analyze and break things while pursuing a complete understanding of how they work, who lives to beat the system and challenge it, and who is driven to outsmart malware to protect our customers.
What Will You Do?
Primary responsibilities include
• Research
• Perform in-depth analysis and research (through reverse engineering and other methods) of Linux and macOS threats, TTPs, exploits, and malware — including ELF and Mach-O binaries, shell/script-based malware, and software supply-chain / malicious open-source packages — to understand how they operate and close detection gaps.
• Analyze endpoint telemetry alongside binaries and samples to validate detections, hunt telemetry and use security platforms for emerging malware families, and prioritize new coverage.
• Share research findings with other detection teams and collaborate across internal/external groups to strengthen detection capability.
Development
• Own detection coverage end to end: write and maintain detection assets, be accountable for FP/FN quality, detection efficacy and performance.
• Design and maintain the CI/testing infrastructure used to build, test, and ship detection content safely.
• Build and improve tooling that gives the team visibility into rule performance, coverage, and FP/FN trends — increasingly leveraging AI/LLM-assisted pipelines to speed up triage and analysis for covering the detection gap.
• Respond quickly to emerging threats and customer detection escalations for malware requests.
• Support detection coverage validation against BAS (Breach and Attack Simulation) frameworks.
• Mentor other engineers on Linux/macOS malware analysis and detection engineering practices.
• You'll also be encouraged to write whitepapers, blogs, and articles.
What Skills and Knowledge Will You