Job Summary (SentinelOne Administrator) List Format:
- Administer and maintain the SentinelOne Endpoint Detection and Response (EDR) platform across IT OT and cloud environments.
- Oversee deployment configuration and ongoing optimization of SentinelOne for all endpoints enterprise-wide.
- Monitor security alerts events and incidents generated by SentinelOne.
- Fine-tune detection policies to minimize false positives and enhance threat detection.
- Collaborate with Security Operations Center (SOC) teams for incident investigation containment and remediation.
- Integrate SentinelOne with SIEM/SOAR tools (e.g. Microsoft Sentinel Splunk).
- Perform regular health checks audits and updates of the SentinelOne environment.
- Onboard new business units or systems into SentinelOne.
- Ensure compliance with internal security policies and regulatory requirements.
- Support security incident response and forensic investigations with technical expertise.
- Generate dashboards and reports for key performance indicators (KPIs) regarding incident trends and endpoint health.
- Work closely with IT Cloud and OT Security teams for policy enforcement and rollouts.
- Maintain up-to-date documentation and provide support as needed.