Source description
About the role
As an Azure Security Engineer, your role involves handling and managing various security technologies within the Microsoft and SentinelOne ecosystem. Your primary responsibilities include: - Engineering and managing SIEM solutions using Microsoft Sentinel - Integrating and monitoring endpoints using Microsoft Defender for Endpoint and SentinelOne - Working with Microsoft Defender for IoT for IoT/OT threat visibility - Developing and optimizing KQL (Kusto Query Language) queries for detection and threat hunting - Building automation workflows using Azure Logic Apps (SOAR playbooks) - Integrating alerts and workflows with ServiceNow ITSM - Supporting incident triage, response, and continuous improvement of detection use cases - Collaborating with SOC and IR teams to enhance security posture In order to excel in this role, you must possess the following skills: - Hands-on experience with Microsoft Sentinel (connectors, analytics rules, hunting) - Strong expertise in Microsoft Defender for Endpoint (MDE) and SentinelOne (EDR) - Experience with Microsoft Defender for IoT (D4IoT) - Proficiency in KQL for threat detection and analysis - Experience in building Logic Apps / SOAR Playbooks - Familiarity with ServiceNow ITSM integration - Understanding of Windows/Linux systems, networking, and cloud platforms (Azure/AWS) This position requires a candidate with 6 to 12 years of experience in the field. As an Azure Security Engineer, your role involves handling and managing various security technologies within the Microsoft and SentinelOne ecosystem. Your primary responsibilities include: - Engineering and managing SIEM solutions using Microsoft Sentinel - Integrating and monitoring endpoints using Microsoft Defender for Endpoint and SentinelOne - Working with Microsoft Defender for IoT for IoT/OT threat visibility - Developing and optimizing KQL (Kusto Query Language) queries for detection and threat hunting - Building automation workflows using Azure Logic Apps (SOAR playbooks) - Integrating alerts and workflows with ServiceNow ITSM - Supporting incident triage, response, and continuous improvement of detection use cases - Collaborating with SOC and IR teams to enhance security posture In order to excel in this role, you must possess the following skills: - Hands-on experience with Microsoft Sentinel (connectors, analytics rules, hunting) - Strong expertise in Microsoft Defender for Endpoint (MDE) and SentinelOne (EDR) - Experience with Microsoft Defender for IoT (D4IoT) - Proficiency in KQL for threat detection and analysis - Experience in building Logic Apps / SOAR Playbooks - Familiarity with ServiceNow ITSM integration - Understanding of Windows/Linux systems, networking, and cloud platforms (Azure/AWS) This position requires a candidate with 6 to 12 years of experience in the field.
More at hireflex