We are looking for a skilled
Cyber Security Engineer
with hands-on experience in Microsoft security technologies, including Microsoft Sentinel, Defender for XDR, and Cloud Security Posture Management (CSPM). The ideal candidate will be responsible for monitoring, detection, incident response, and improving the overall security posture of the organization.
Key Responsibilities
A. Microsoft Sentinel (SIEM)
- Configure, manage, and maintain Microsoft Sentinel environments
- Develop and fine-tune analytics rules, alerts, and workbooks
- Monitor security events and respond to incidents in real time
- Integrate log sources via connectors (Azure, O365, AWS, etc.)
- Perform threat hunting using KQL (Kusto Query Language)
B.
Microsoft Defender for XDR
- Manage and configure Defender products (Defender for Endpoint, Office 365, Identity, Cloud Apps)
- Analyze threats and respond to alerts using XDR portal
- Implement automated response actions and playbooks
C. CSPM (Cloud Security Posture Management)
- Implement and manage CSPM tools (e.g., Microsoft Defender for Cloud)
- Perform cloud security assessments and risk analysis
- Ensure compliance with security frameworks and best practices
- Identify misconfigurations and drive remediation efforts
D.
Incident Response & SOC Support
- Investigate and respond to security incidents
- Conduct root cause analysis and provide mitigation recommendations
- Prepare incident reports and documentation
- Participate in SOC operations and escalation handling
Required Skills & Qualifications
6+ years of experience in Cyber Security / SOC operations
- Solid hands-on experience with:
- Microsoft Sentinel (SIEM)
- Microsoft Defender XDR suite
- Microsoft Defender for Cloud (CSPM)
- Good knowledge of:
- Azure security concepts and cloud