Staff Cloud Workload Security (CWS) Researcher

📍 Italy
EUR 82,000-90,000 per year
SENIOR
✅ Remote

Tech Stack

AI @ 4 AWS @ 3 Agentic AI @ 4 Azure @ 3 GCP @ 3 Kubernetes @ 3 Linux @ 7 Python @ 4 Security @ 4 macOS

Details

SentinelOne is seeking a Staff Cloud Workload Security (CWS) Researcher to join a global team working across Windows, Linux, and macOS, spanning Endpoint, Cloud, and Identity. The role focuses on researching evasions against SentinelOne's sensors, tracking the offensive tooling landscape, and conducting innovative research to anticipate emerging attacker tradecraft.

Responsibilities

  • Proactively identify the newest and most sophisticated attack techniques, research their internals, and emulate attacks to assess and improve detection engines.
  • Conduct comprehensive analysis of potential attack paths within diverse systems and networks in cloud environments.
  • Identify and prioritize vulnerabilities and weaknesses that could be exploited by cyber adversaries in cloud platforms.
  • Build tools to support detection assessments.
  • Create proofs of concept for emerging attack techniques.
  • Contribute to the design of innovative detection strategies.
  • Collaborate with threat intelligence and engineering detection teams to provide guidance and identify gaps in detection and visibility capabilities.

Requirements

  • Experience in cloud attack path analysis, vulnerability assessment, and threat modeling.
  • Familiarity with cloud services, Kubernetes, cloud architecture, and major cloud providers, including AWS, Google Cloud Platform (GCP), and Azure.
  • In-depth understanding of the cloud ecosystem, security principles, services, configurations, best practices, and relevant frameworks.
  • At least 4 years of experience in red teaming, security research, or offensive research.
  • Deep understanding of Windows and Linux operating system internals.
  • Hands-on coding experience with Python and C/C++.
  • Understanding of existing endpoint detection and response (EDR) internals.
  • Experience leveraging agentic AI workflows for detection engineering tasks, including reverse engineering, code auditing, and signature writing.
  • Conference speaking experience at security conferences or relevant publications is advantageous.
  • Experience writing detection signatures or heuristics is advantageous.

Compensation

  • Base salary range: €82,000–€90,000 per year.
  • The base pay range applies consistently across Italy, regardless of candidate location.
  • Employment classification: Quadro under the Contratto Collettivo Nazionale di Lavoro per i Dipendenti Di Aziende del Terziario della Distribuzione e dei Servizi.

Benefits

  • Restricted Stock Units (RSUs).
  • Employee Stock Purchase Plan (ESPP).
  • Competitive leave benefits.
  • Gender-neutral parental leave.
  • Medical and insurance benefits.
  • Pension.
  • Employee Assistance Program (EAP).
  • Global home office allowance.
  • Mobile phone reimbursement.
  • Equal Employment Opportunity and Affirmative Action employment practices.

More jobs at SentinelOne

Similar jobs