27 Sep
|
Quadrasystems.Net
|
Bengaluru
27 Sep
Quadrasystems.Net
Bengaluru
Microsoft Sentinel Administrator - Intelligent Secure Productivity Group
Microsoft Sentinel Administrator
Department: Intelligent Secure Productivity Group
Location: Bangalore
Nature: Full-time
Experience: 3-5 years
Positions: 2
The Opportunity
Join our Intelligent Secure Productivity Group as a Microsoft Sentinel Administrator and drive the transformation of security operations for a diverse client portfolio. In this strategic role, you will architect, deploy, and optimize advanced SIEM solutions, directly enabling robust threat detection, streamlined compliance, and operational excellence. Your expertise will empower clients to achieve measurable improvements in security posture, resilience, and business continuity.
This is an prospect to shape security outcomes at scale, leveraging cutting-edge Microsoft technologies to deliver tangible value and organizational impact.
Key Responsibilities
- Drive deployment and day-to-day administration of Microsoft Sentinel workspaces-including health monitoring, upgrades, and onboarding of data connectors-to maximize threat visibility and operational efficiency across multiple client tenants.
- Lead the authoring and tuning of Analytics Rules (scheduled, NRT, Fusion) and UEBA configurations, ensuring advanced detection capabilities and alignment with evolving threat profiles and regulatory standards.
- Design and optimize Log Analytics Workspaces, manage DCR/DCE, and monitor cost and data ingestion to deliver high-performance analytics tailored to client requirements.
- Deliver seamless integration of Sentinel with third-party tools, threat intelligence feeds, and Microsoft Defender products, providing comprehensive and actionable security insights.
- Build and maintain Logic Apps and Playbooks to automate incident response and workflow orchestration, accelerating response times and reducing manual effort.
- Collaborate with SOC Analysts to enhance detection logic, minimize false positives, and uphold high alert fidelity, directly improving incident response outcomes for each client.
- Lead the technical onboarding lifecycle for new clients, from initial scoping through to go-live, ensuring a seamless, value-driven transition onto the Sentinel platform.
- Produce and maintain detailed client-facing technical documentation, onboarding guides,
and configuration records, supporting audit readiness and operational transparency.
Skills and Attributes for Success Success in this role demands advanced technical acumen, analytical rigor, and disciplined execution within complex, multi-tenant environments. You will leverage deep expertise in Microsoft Sentinel administration, automation, and documentation to deliver secure, scalable, and cost-effective solutions. Your ability to concurrently manage multiple client tenants, communicate technical concepts clearly, and adapt to evolving security landscapes will be critical in driving client satisfaction and organizational value.
Strategic thinking and structured problem-solving will empower you to deliver measurable outcomes and drive continuous improvement in security operations.
Core Technical Skills
- Microsoft Sentinel Administration: Day-to-day administration of Microsoft Sentinel workspaces, including deployment, health monitoring, and upgrades; onboarding and managing data connectors (CEF, Syslog, AMA, custom API, Codeless Connector Platform); ability to work on 2-3 customer tenants concurrently.
- Detection Engineering: Authoring and tuning Analytics Rules (scheduled, NRT, Fusion), configuring UEBA, and developing custom correlation logic to enhance detection capabilities.
- Kusto Query Language (KQL): Proficient in writing advanced KQL queries for rule creation, dashboards, and workbooks to enable actionable insights and reporting.
- Automation and Orchestration: Building and maintaining Logic Apps and Playbooks to automate incident response and workflow integration.
- Log Analytics Workspace Design: Designing Log Analytics Workspaces, managing DCR/DCE, and monitoring cost and data ingestion to ensure optimal performance and efficiency.
- Documentation and Change Management:
Strong documentation discipline and change management rigor to ensure operational transparency and audit readiness.
- Certifications: Microsoft Certified: Security Operations Analyst Associate (SC-200) (Mandatory); Microsoft Certified: Cybersecurity Architect Expert (SC-100) preferred.
Desirable/Preferred Skills
- Experience with Sentinel/Defender and Microsoft Defender for Cloud
- Familiarity with SOAR platforms and security automation frameworks
- Knowledge of cloud-native security architectures and Zero Trust principles
- Exposure to regulatory compliance frameworks (eg, ISO 27001, GDPR, HIPAA)
- Experience in managed security services or enterprise security operations
Soft Skills
- Good communication skills for engaging technical and non-technical stakeholders
- Effective teamwork and collaboration within cross-functional and client-facing environments
- Analytical thinking and structured problem-solving in high-stakes scenarios
- Adaptability in dynamic, rapidly evolving security landscapes
- Proactive ownership and accountability for deliverables and outcomes
- Ability to translate complex technical concepts into actionable business recommendations
Qualifications and Experience
- Bachelor s degree in Computer Science, Information Security, Engineering, or a related field (or equivalent practical experience)
- 3-5 years of hands-on experience in Microsoft Sentinel administration, SIEM operations, or security engineering
- Exposure to enterprise security operations, cloud security, or managed security services is advantageous
What We Offer
- Clear and merit-based career progression within a high-impact security practice
- Access to cutting-edge tools, technologies, and innovation programs
- Comprehensive learning ecosystem with certifications, mentorship, and knowledge sharing
- Opportunities to deliver meaningful impact for global clients and critical infrastructure
Embark on a transformative career journey where your expertise in Microsoft Sentinel drives organizational resilience and shapes the future of secure digital operations. Disclaimer: This job posting has been aggregated from external source. Role details, content, and availability are subject to change. Applicants are advised to confirm the latest information directly on the company website before applying.
📌 Microsoft Sentinel Administrator (Bengaluru)
🏢 Quadrasystems.Net
📍 Bengaluru