AZURE Sentinel / EDR Security Lead
Overview
No. of Vacancies
1
Specific Skills
Bachelor's degree in Cybersecurity, Computer Science, Information Technology, or related field (or equivalent experience).
5+ years of cybersecurity or security operations experience.
2+ years administering enterprise SIEM and EDR platforms.
2+ years of Microsoft Sentinel administration.
Experience with Microsoft Defender XDR, Microsoft Defender for Endpoint, Microsoft Defender for Cloud, and Azure security services.
Strong knowledge of KQL, PowerShell, Python, Azure, networking, and incident response methodologies.
Responsible For
Administration and optimization of Microsoft Sentinel (SIEM/SOAR) and Microsoft Defender for Endpoint (EDR).
Develop and maintain security analytics rules, workbooks, dashboards, and automated response playbooks using Kusto Query Language (KQL) and Azure Logic Apps.
Threat detection, threat hunting, incident response, malware investigations, and forensic analysis across cloud and endpoint environments.
Integrate security logs, threat intelligence, and Microsoft security solutions, including Microsoft Defender XDR, Microsoft Defender for Cloud, and Microsoft Entra ID.
Develop security automation using PowerShell, Python, and Azure Automation to improve operational efficiency and reduce response times.
Monitor security posture, investigate high-priority alerts, and lead remediation efforts while ensuring compliance with security frameworks and regulatory requirements.
Job Nature
Full Time
Experience Requirements
5+
Job Location
Remote
Job Level
Lead