Design and implement Azure Sentinel architecture, including data connectors, analytics rules, logic apps, workbooks, and automation playbooks.
Configure and manage Azure Sentinel data sources, such as Azure Activity Logs, Azure Security Center, Microsoft Defender for Cloud, and third-party data sources.
Develop and maintain custom analytics rules, hunting queries, and machine learning models to detect and respond to security threats effectively.
Collaborate with the security operations team to investigate and respond to security incidents, leveraging Azure Sentinel's incident management capabilities.
Implement and maintain Azure Sentinel automation playbooks for incident response, orchestration, and integration with other security tools.
Optimize Azure Sentinel performance, scalability, and cost-effectiveness through appropriate configuration and resource management.
Stay up to date with the latest Azure Sentinel features, security best practices, and industry trends, and contribute to the continuous improvement of the organization's security posture.
Provide technical guidance, mentoring, and knowledge sharing to junior team members and other stakeholders.
Requirements
Bachelor’s degree in computer science, information technology, or a related field, or equivalent experience.
Minimum of 5 years of experience in cybersecurity, with a strong focus on security information and event management (SIEM) solutions.
Extensive hands-on experience with Microsoft Azure Sentinel, including deployment, configuration, and administration.
In-depth knowledge of Azure services, such as Azure Monitor, Azure Security Center, and Azure Log Analytics.
Proficiency in scripting languages (e.g., PowerShell, Python) and data analytics tools (e.g., Kusto Query Language).
Familiarity with security frameworks, standards, and best practices (e.g., NIST, CIS, MITRE ATT&CK).
Strong problem-solving, analytical, and troubleshooting skills.
Excellent communication and collaboration abilities, with the ability to work effectively in a team environment.
Certification in Microsoft Azure (e.g., Azure Security Engineer Associate) or other relevant security certifications is preferred.
Benefits
Comprehensive medical, dental, and vision insurance plans to keep you and your family healthy.
401(k) with company match to help you plan for the future.
Flexible time off policies to ensure you maintain a healthy work-life balance.
9 company holidays observed, plus 2 floating holidays.
Opportunity to give back to our community with (paid) volunteer time off.
Training incentives and bonuses to help you and your career grow.
Penetration Testing Coordination Leader managing pre - testing activities and pipelines. Mentoring teams and ensuring timely execution of penetration tests in financial services context.
Sales Representative responsible for B2B IT - Security Consulting services. Focused on active sales, relationship management, and new business opportunities in cybersecurity.
Leading Cybersecurity Consulting initiatives and teams to drive client security strategies at Schönbrunn TASC GmbH. Ensuring the development of secure digital solutions and fostering client relationships.
Security Engineer focusing on detection and response and collaborating with teams to secure infrastructure at Semperis. Building security monitoring solutions and contributing to risk management.
IT Engineer managing network and security infrastructures for industrial clients. Focused on proactive development and troubleshooting in a collaborative team environment.
Cyber Security Management Consultant supporting clients with ISMS implementation and transitional audit preparation. Focused on secure implementation of information security management systems and client relationship management in cyber security.
Information Security Officer ensuring effective ISMS for aedifion's energy - efficient building solutions. Focusing on continuous development, employee safety, and security controls in a tech - driven environment.
Software Security Engineer at Fadata focusing on implementing secure coding practices and mentoring teams. Working in a multicultural environment to enhance software security for the insurance industry.