What are we looking for
We are seeking a highly skilled and motivated Backline Support Engineer SentinelOne (Windows) to join our Endpoint Security team. This role is responsible for managing and resolving complex escalations related to SentinelOne agents deployed on Windows environments. As a backline engineer you will serve as the final escalation point working closely with frontline support engineering and product teams to ensure swift resolution of critical issues.
What will you do
Key Responsibilities:
Provide advanced technical support for SentinelOne agents installed on Windows endpoints.Analyse logs crash dumps agent behaviour and OS-level events to diagnose and resolve complex technical problems.Collaborate with Level 1 & 2 support teams to handle escalated customer cases.Replicate document and escalate bugs or product limitations to Engineering or Product Management teams.Assist in root cause analysis (RCA) and develop knowledge base (KB) articles and internal documentation.Participate in incident response activities and coordinate with InfoSec teams for threat investigation or containment.Use scripting (PowerShell Python etc.) to collect data or automate troubleshooting tasks.Stay updated on product changes Windows OS internals and threat landscape trends.Provide feedback to improve agent stability performance and threat detection on Windows endpoints.
What skills and knowledge should you bring
- 8 years in a technical support or backline engineering role preferably in endpoint security or antivirus products.
- Strong hands-on experience with SentinelOne on Windows platforms.
- In-depth understanding of Windows internals including services drivers registry Event Viewer WMI and networking.
- Experience analysing agent logs forensic artifacts and endpoint telemetry.
- Familiarity with EDR AV and endpoint hardening best practices.
- Proficient in PowerShell scripting and basic automation tasks.
- Knowledge of common malware behaviours threat hunting and attack mitigation techniques (MITRE ATT&CK framework is a plus).
- Strong communication and collaboration skills; able to work under pressure with minimal supervision.
- Experience using support tools like Splunk Wireshark Sysinternals.
Preferred Qualifications:
- Microsoft Certified: Cybersecurity Architect Expert
- Microsoft Certified: Security Operations Analyst Associate
- CompTIA CySA (Cybersecurity Analyst)
- Certified Ethical Hacker (CEH)
Why Us India version
You will be joining a cutting-edge company where you will tackle extraordinary challenges and work with the very best in the industry
- Employee stock purchase program and RSU
- Numerous company-sponsored events including regular happy hours and team-building events
- Flexible Time Off.
- Flexible Paid Sick Days.
- Global gender-neutral Parental Leave (16 weeks beyond the leave provided by the local laws)
- Gym membership/sports gears by Cultfit.
- Wellness Coach app with 3000 on-demand sessions daily interactive classes audiobooks and unlimited private coaching.
- Private medical insurance plan for you and your family.
- Life Insurance covered by S1 (for employees)
- Telemedical app consultation (Practo)
- Global Employee Assistance Program (confidential counseling related to both personal and work life matters)
- High-end MacBook or Windows laptop.
- Home-office-setup allowances (one time) and maintenance allowance.
- Internet allowances.
- Provident Fund and Gratuity (as per govt clause)
- NPS contribution (Employee contribution)
- Half yearly bonus program depending on the individual and company performance.
- Above standard referral bonus as per policy.
- LinkedIn Business platform for Hard/Soft skills Training & Support for your further educational activities/trainings
- Sodexo food coupons.
Required Experience:
Staff IC