Staff MDR Investigator

SentinelOne · India · Other

Posted 2026-07-31

Apply for this role →

As a Staff MDR Investigator, you will be tasked with leading advanced security investigations and response efforts, reporting to the Regional Manager, MDR Threat Response Operations.

What Will You Do?

Primary responsibilities include:

Working on active incidents, enriching threats, and perform Containment & Remediation

Generate and deliver Incident Reports with Technical and Executive Summary

Identifying areas of improvement through technical contributions enabling Operational efficiency and ingenuity

Investigation support:

-Assist MDR analysts with investigation of unusual or complex alerts or hunt findings, determining appropriate response actions, scoping impact, and containing Incidents

Analyst training and mentoring:

-Build and deliver training to MDR analysts, with a focus on effective and efficient alert investigation and immediate incident response.

-Assess the overall quality of MDR alert investigations, minor incident response, and escalations performed by in-region MDR analysts

Emerging Threat Response support:

-Partner with internal stakeholders (Wayfinder Threat Hunting, DFIR, Detection Engineering, CSM, etc) to share information and coordinate response to emerging threats                       -Perform necessary investigation and response measures to determine whether MDR customers are impacted (or at risk of being impacted) by emerging threats.

-Communicating with MDR customers on the steps being taken to protect them from emerging threats, and associated findings in the respective environments.

Collaborating with MDR Threat Advisors:

-Join customer calls/meetings (as requested) by Threat Advisors to provide additional SOC operations guidance and expertise.

-Support customer escalations including providing input to RCA reports.

What Skills and Knowledge Will You Bring?

Ideal candidates will have:

At least 5 years of experience as a security operations practitioner, with a focus on three or more of the following areas: SOC operations, security monitoring, incident response, digital forensic investigation, malware analysis, threat hunting, and threat intelligence.

Specialized seasoned skillset across the phases of Incident Response

Collaborating with Stakeholders through Incident Response recommendations

Advanced technical understanding of threat detection response and the current threat landscape.

Ability to make Security response decisions and possess analytical thinking

Ability to hunt, research and attribute Threat actor patterns and identify phase of Incidents through mapping with industry leading frameworks (Ex: MITRE)

Strong understanding of XDR-based Detection Engineering models

Familiarity with how MDR operations are structured and tasks performed by MDR Analysts.

Familiarity with all customer-facing capabilities of MDR and other SentinelOne threat services, including customer deliverables and SLAs.

Ability to effectively multitask and prioritize in a fast-paced operational environment.

Strong understanding of Windows, Mac & Linux operating system functionalities, including common attacker techniques, vulnerabilities and exposures, and preventative controls.

Excellent written and verbal communication skills.

Previous Managed Services/MDR experience.

Previous hands-on experience with various security operations tools in areas including EDR, XDR, IDR, malware sandboxes, threat intelligence, hunt, SIEM, and vulnerability management.

Fundamental understanding of diverse Security technologies including Cloud & Network Security

Fundamental understanding of Automation and LLM usage in SOC and MDR Operations

Why SentinelOne?

AI is redefining how the world operates and rewriting the rules of security in real time, and SentinelOne was built for this moment. From day one, we architected an AI-native platform designed to operate at machine speed, not as an add-on to legacy systems but as the foundation itself. If you want to build where innovation and impact move together, this is that place.

We invest in our Sentinels with comprehensive, competitive benefits designed to support you and your family:

Equity & Rewards

Restricted Stock Units (RSUs)

Employee Stock Purchase Plan (ESPP)

Time Off & Wellbeing

Competitive leave benefits

Gender-neutral parental leave

Insurance & Financial Security

Medical and insurance benefits

Employee Assistance Program (EAP)

Work Perks & Flexibility

Global home office allowance

Internet allowance

LinkedIn Learning license

Social Connect program

Food allowance (Bangalore office)

Meal vouchers (Sodexo)

Wellness & Lifestyle

Health & wellness benefit

Apply for this role →

← Back to all jobs