Key Responsibilities:
• Design, build, and optimize advanced Microsoft Sentinel analytics rules, KQL queries, and detection use cases to improve threat visibility and reduce false positives
• Develop and maintain SOAR automation using Azure Logic Apps for incident triage, enrichment, and response
• Architect and operate log ingestion and monitoring pipelines (Azure Monitor, Log Analytics, Data Collection Rules) across complex Azure environments
• Implement and govern RBAC models, access controls, and security configurations across SIEM/SOAR and Azure security services
• Collaborate on Azure platform and networking security, including PaaS services, identity integration, and secure architecture patterns
• Troubleshoot and resolve issues across logging, alerting, automation, and cloud security controls, while maintaining clear runbooks and documentation
What we need to see from you:
• Expert level experience with at least one of the following Microsoft security platforms: Microsoft Sentinel, Defender for Cloud, or Microsoft Purview
• Strong hands on expertise in Azure security operations, including SIEM/SOAR engineering and cloud native monitoring
• Advanced KQL skills for threat detection, hunting, and log analytics
• Experience building SOAR automation with Azure Logic Apps
• Solid understanding of Azure platform fundamentals, including Azure networking concepts, PaaS services, platform security, identity & access management (Microsoft Entra ID / RBAC), and Azure Monitor & Log Analytics
Jelentkezés a pozícióra
Töltsd ki az adatokat, és csatold az önéletrajzod.