Staff MDR Investigator

SentinelOne

Bengaluru

On-site

INR 2,500,000 - 4,000,000

Full time

14 days+
Application generator

Get a reply from this employer — a resume and cover letter tailored to exactly what they’re hiring for.

Get past ATS filters

Benefits offered by this job

RSUs
ESPP
Competitive leave
Parental leave
Medical and insurance benefits
Global home office allowance
Food allowance (Bangalore office)
EAP
Wellness programs

Job summary

SentinelOne is seeking a Staff MDR Investigator in Bengaluru to lead advanced security investigations and response efforts. You will report to the Regional Manager, MDR Threat Response Operations, and work across teams to contain incidents and improve detection.

The role requires hands-on experience with EDR/XDR, incident response, and threat intelligence. You will mentor analysts, generate executive summaries, and collaborate on emerging threats, all while operating in a fast-paced, global SOC

Qualifications

  • Minimum 5 years of security operations experience across SOC, incident response, or threat hunting.
  • Advanced understanding of threat detection, response, and current threat landscape.
  • Ability to make security response decisions with strong analytical thinking.
  • Experience mapping incidents to MITRE ATT&CK and similar frameworks.
  • Hands-on with a variety of security operations tools (EDR/XDR/SIEM).

Responsibilities

  • Lead active security investigations and response efforts for incidents.
  • Generate and deliver incident reports with technical and executive summaries.
  • Collaborate with stakeholders to improve operational efficiency and response.
  • Assist analysts with investigation of alerts, scope impact, and containment actions.
  • Train and mentor MDR analysts on alert investigation and incident response.
  • Coordinate with Threat Advisors and other teams to respond to emerging threats.

Skills

Security operations
Incident response
Threat hunting
MITRE framework
XDR
EDR
SIEM
Threat intelligence
Analytical thinking
Effective communication

Tools

EDR
XDR
IDR
Malware sandboxes
Threat intel tools
SIEM

Job description

At SentinelOne, we are driven by a clear purpose: to give the advantage to those who secure our future. As AI reshapes how organizations build, operate, and innovate, the responsibility to protect them becomes more critical than ever. When you join SentinelOne, your work helps protect global enterprises, critical infrastructure, and the technologies shaping tomorrow. If you are motivated by meaningful challenges and want your impact to be real, measurable, and global, you will find purpose here.

About Us

SentinelOne is a company at the intersection of AI and security, pioneering a new operating model for cybersecurity. Our AI-native platform unifies protection across endpoint, cloud, identity, data, and AI systems to deliver autonomous detection and response with clarity and speed. By combining real-time analytics, intelligent automation, and a unified data foundation, we reduce noise, simplify complexity, and empower security teams to focus on what truly matters.

Our teams are builders, problem-solvers, and innovators committed to shaping the future of security. If you are excited to solve hard problems alongside talented, mission-driven people, we invite you to help us build a safer future for humanity.

What Are We Looking For?

We’re looking for people who are relentlessly curious and committed to continuous learning. AI is reshaping every function across our business, and we enable every team member, regardless of role or level, to build fluency in AI tools and concepts. Those who thrive here actively seek out new solutions, experiment thoughtfully, and apply what they learn to drive better, faster, smarter outcomes.

As a Staff MDR Investigator, you will be tasked with leading advanced security investigations and response efforts, reporting to the Regional Manager, MDR Threat Response Operations.

What Will You Do?

Primary responsibilities include:

  • Working on active incidents, enriching threats, and perform Containment & Remediation
  • Generate and deliver Incident Reports with Technical and Executive Summary
  • Identifying areas of improvement through technical contributions enabling Operational efficiency and ingenuity
  • Investigation support:
    -Assist MDR analysts with investigation of unusual or complex alerts or hunt findings, determining appropriate response actions, scoping impact, and containing Incidents
  • Analyst training and mentoring:
    -Build and deliver training to MDR analysts, with a focus on effective and efficient alert investigation and immediate incident response.
    -Assess the overall quality of MDR alert investigations, minor incident response, and escalations performed by in-region MDR analysts
  • Emerging Threat Response support:
    -Partner with internal stakeholders (Wayfinder Threat Hunting, DFIR, Detection Engineering, CSM, etc) to share information and coordinate response to emerging threats -Perform necessary investigation and response measures to determine whether MDR customers are impacted (or at risk of being impacted) by emerging threats.
    -Communicating with MDR customers on the steps being taken to protect them from emerging threats, and associated findings in the respective environments.
  • Collaborating with MDR Threat Advisors:
    -Join customer calls/meetings (as requested) by Threat Advisors to provide additional SOC operations guidance and expertise.
    -Support customer escalations including providing input to RCA reports.
What Skills and Knowledge Will You Bring?

Ideal candidates will have:

  • At least 5 years of experience as a security operations practitioner, with a focus on three or more of the following areas: SOC operations, security monitoring, incident response, digital forensic investigation, malware analysis, threat hunting, and threat intelligence.
  • Specialized seasoned skillset across the phases of Incident Response
  • Collaborating with Stakeholders through Incident Response recommendations
  • Advanced technical understanding of threat detection response and the current threat landscape.
  • Ability to make Security response decisions and possess analytical thinking
  • Ability to hunt, research and attribute Threat actor patterns and identify phase of Incidents through mapping with industry leading frameworks (Ex: MITRE)
  • Strong understanding of XDR-based Detection Engineering models
  • Familiarity with how MDR operations are structured and tasks performed by MDR Analysts.
  • Familiarity with all customer-facing capabilities of MDR and other SentinelOne threat services, including customer deliverables and SLAs.
  • Ability to effectively multitask and prioritize in a fast-paced operational environment.
  • Strong understanding of Windows, Mac & Linux operating system functionalities, including common attacker techniques, vulnerabilities and exposures, and preventative controls.
  • Excellent written and verbal communication skills.
  • Previous Managed Services/MDR experience.
  • Previous hands-on experience with various security operations tools in areas including EDR, XDR, IDR, malware sandboxes, threat intelligence, hunt, SIEM, and vulnerability management.
  • Fundamental understanding of diverse Security technologies including Cloud & Network Security
  • Fundamental understanding of Automation and LLM usage in SOC and MDR Operations
Why SentinelOne?

AI is redefining how the world operates and rewriting the rules of security in real time, and SentinelOne was built for this moment. From day one, we architected an AI-native platform designed to operate at machine speed, not as an add-on to legacy systems but as the foundation itself. If you want to build where innovation and impact move together, this is that place.

We invest in our Sentinels with comprehensive, competitive benefits designed to support you and your family:

Equity & Rewards
  • Restricted Stock Units (RSUs)
  • Employee Stock Purchase Plan (ESPP)
  • Competitive leave benefits
  • Gender-neutral parental leave
Insurance & Financial Security
  • Medical and insurance benefits
  • Employee Assistance Program (EAP)
  • Global home office allowance
  • Social Connect program
  • Food allowance (Bangalore office)
Wellness & Lifestyle
  • Health & wellness benefit

SentinelOne is proud to be an Equal Employment Opportunity and Affinective Action employer. We do not discriminate based upon race, religion, color, national origin, gender (including pregnancy, childbirth, or related medical conditions), sexual orientation, gender identity, gender expression, age, status as a protected veteran, status as an individual with a disability, or other applicable legally protected characteristics.

SentinelOne participates in the E-Verify Program for all U.S. based roles.

Get your free, confidential resume review.
or drag and drop your file here.
Similar jobs

Similar jobs worth comparing

Staff MDR Investigator
Staff MDR Investigator

SentinelOne • India

On-site
INR 2,500,000 - 4,000,000
RSUs
ESPP
Competitive leave benefits
+10
Senior Malware Detection Engineer
Senior Malware Detection Engineer

SentinelOne • India

On-site
INR 2,500,000 - 5,000,000
RSUs
ESPP
Competitive leave benefits
+7
Senior Software Engineer
Senior Software Engineer

SentinelOne • India

On-site
INR 3,000,000 - 5,500,000
Equity & Rewards: RSUs
Employee Stock Purchase Plan (ESPP)
Competitive leave benefits
+6
Threat Analyst 2
Threat Analyst 2

Jobgether • India

Remote
INR 1,200,000 - 2,400,000
Remote-first working model
Exposure to wide security technologies
Collaborative security team
+2
Staff Software Engineer - Marketplace
Staff Software Engineer - Marketplace

SentinelOne • India

On-site
INR 4,000,000 - 7,000,000
Restricted Stock Units (RSUs)
Employee Stock Purchase Plan (ESPP)
Competitive leave benefits
+3
Security Engineer ll – Microsoft Sentinel SIEM
Security Engineer ll – Microsoft Sentinel SIEM

Cyderes • Bengaluru

Hybrid
INR 900,000 - 1,500,000
Medical Insurance
Hybrid Work Model
Paid Time Off
+1
Staff MDR Analyst
Staff MDR Analyst

Palo Alto Networks, Inc. • Bengaluru

On-site
INR 4,500,000 - 6,500,000
Commercial Account Executive
Commercial Account Executive

SentinelOne • India

On-site
INR 1,500,000 - 2,300,000
RSUs
ESPP
Global home office allowance
+6
Senior Security Engineer - Microsoft Sentinel SIEM
Senior Security Engineer - Microsoft Sentinel SIEM

Cyderes • Bengaluru

On-site
INR 3,000,000 - 5,000,000
Medical Insurance
Life Insurance
Retirement Match Program
+7
Security Operations Analyst
Security Operations Analyst

Securonix • Maharashtra

On-site
INR 700,000 - 1,200,000
Health Insurance
Personal Accident Insurance
Term Life Insurance