3+ years of hands-on experience with Microsoft Intune, Autopilot, and endpoint configuration.
Solid knowledge of Azure security services and hybrid cloud security architecture.
Proficient in utilizing Microsoft and Palo Alto security tools and implementing best practices in network and infrastructure security.
Hands-on expertise with enterprise SIEM and XDR platforms.
Experience with firewall administration and application security technologies.
Valuable understanding of industry frameworks (NIST CSF, ISO 27001, CIS Controls).
Security Operations Monitoring
Monitor and triage security alerts and incidents generated by the Security Operations Center (SOC).
Investigate and respond to XDR alerts (e.g., Microsoft Defender XDR), correlating signals across various data sources and threat vectors.
Utilize Microsoft Sentinel for log analysis, threat detection, and orchestration of incident response.
Incident Response Remediation
Assess and prioritize security incidents, coordinate remediation actions with relevant stakeholders for effective resolution.
Conduct root cause analysis, post-incident reviews, and maintain documentation for continuous improvement.
Infrastructure Application Security
Collaborate with infrastructure and application teams to embed security best practices across system and software lifecycles.
Configure and maintain Azure Front Door and Web Application Firewall (WAF) rules in alignment with application security standards.
Support security configurations for Microsoft Azure cloud services and hybrid networks.
Vulnerability Management
Analyze Qualys vulnerability reports and lead mitigation efforts with application and infrastructure teams.
Ensure timely patching, configuration fixes, and validate risk closure processes.
Security Governance Compliance
Enforce adherence to cybersecurity policies and controls; assist with audit readiness and compliance reporting (e.g., NIST, CIS, ISO standards).
Participate in secure