Skip to main content

DFIR Analyst at SentinelOne

Department: 13100 DFIR

Language
Setup
Remote, Hybrid
Location
Prague
Type
Full-time
Level
mid
Posted

Description

SentinelOne is hiring a DFIR Analyst to deliver rapid, evidence-based breach response for global enterprises facing active cyber threats. The role performs endpoint, network, cloud, and SaaS forensic analysis, threat hunting, malware and memory analysis, evidence acquisition, incident containment, documentation, reporting, and handovers across incidents such as ransomware, business email compromise, identity compromise, zero-day exploitation, APT activity, and cloud/SaaS breaches. The position requires a bachelor's or master's degree or equivalent practical self-study, at least two years of relevant experience, and familiarity with forensic tools, EDR/XDR platforms, SIEMs, scripting, and technical investigations under pressure. It is available in Prague, Brno, or remote in the Czech Republic or Slovakia, with Prague-based employees required to work from the office at least two days per week.

Trending job searches

Every query opens live roles, salary samples, and market demand — tap a search to run it instantly.

Get More from Metaintro

Unlock powerful job search, personalized recommendations, and deep career insights from comprehensive, market-leading data and live market signals.

For job seekers

Ready to find a role that actually fits?

Upload your résumé, start a Job Search Thread, and let Metaintro rank real openings against your experience — then guide you from search to offer.

Match

Compare live roles against your current evidence.

Position

Turn proof projects into role-specific applications.

Improve

Use market feedback to keep the skill plan current.

Return to navigation