Job Description :
Experienced Senior Security Engineer with over 4 years of expertise in designing, implementing, and managing advanced Microsoft security solutions including Microsoft Sentinel, Defender for Endpoint (MDE), Defender for Office 365 (MDO), Defender for Identity (MDI), Microsoft Defender Cloud Apps (MDCA), and Microsoft Defender for Cloud (MDC). Adept at providing technical consultation to support sales teams, ensuring successful project acquisition and delivery. Skilled in Azure cloud security assessments, solution architecture design, automation, and security posture enhancement.
Key Responsibilities:
- Lead implementation, configuration, and fine-tuning of Microsoft XDR (Extended Detection and Response) solutions such as MDE, MDO, MDI, MDCA, MDC and Microsoft Sentinel.
- Conduct comprehensive security assessments and consultations for Microsoft and Azure cloud security environments to identify gaps and recommend improvements.
- Collaborate closely with sales and Business Development Managers (BDMs) to deliver technical presales support, crafting tailored security solutions to meet customer requirements and win projects.
- Develop, deploy, and optimize custom detection rules, parsers, analytic rules, and automation workflows within Microsoft Sentinel to improve threat detection and incident response capabilities.
- Design scalable security architectures and lead the creation of detailed documentation including Standard Operating Procedures (SOPs), architectural diagrams, and security process guidelines.
- Drive continuous improvement initiatives focused on strengthening security posture through tuning detection use cases, integrating new telemetry sources, and aligning with compliance frameworks.
- Mentor junior engineers and provide knowledge transfer sessions to enable skill growth across security teams.
- Stay current with evolving Microsoft security technologies and industry best practices to recommend strategic enhancements.
Core Skills & Expertise:
- Microsoft Security Stack: Defender for Endpoint (MDE), Defender for Office 365 (MDO), Defender for Identity (MDI), Defender Cloud Apps (MDCA),
- Azure Security Solutions: Defender for Cloud (MDC), Microsoft Sentinel
- Presales & Technical Consultation: Security assessments, solution architecture, proof of concepts, Technical support
- Threat Detection & Hunting: Custom SIEM detection rule creation, SIEM Integration and parsers, analytics tuning
- Automation & Scripting: Strong skill in Kusto Query Language (KQL), Logic App configuration to create automation for security orchestration
- Security Process Design: SOP creation, workflow optimization
- Strong Analytical & Communication Skills: Ability to translate complex technical issues into business impact and communicate effectively with stakeholders
- Team Leadership & Mentorship