Microsoft Sentinel SIEM Engineer

3 days ago


Delhi, India Omm IT Solutions Full time
Job DescriptionThis is a remote position.Please Note: This is a 100 % Remote Position and looking for Candidates in EST Time Zone.

About the Position:AOC seeking proposals from prospective Offerors to provide a systems matter expect to serve as the Microsoft Sentinel Security Information and Events Management (SIEM) Engineer to deliver technical support, engineering, and mentoring services for platform administration for performing threat intelligence. Through the integration, collection, analysis and disseminate of log data from various sources to enhance the intelligence feeds, improve contextual analysis activities and detection capabilities. This position will proactively search for signs of potential threats by leveraging log data analytics, the use of advanced detection techniques and threat hunting methodologies.Requirements

Basic Qualifications and Requirements:

CANDIDATE QUALIFICATIONS:Client is looking for candidates that meet the following minimum qualifications:BA/BS degree in Computer Science, Business Management, or an IT-related field (with at least 3+ years of experience determined by the AOC )

The AOC prefers Candidates to have the following qualificationsThree (3) years’ experience with Azure Sentinel.

Three (3) years’ experience with Kusto Query Language.

One (1) year experience with Information Security.

Active Microsoft Security Operations Analyst Associate certification.

Candidate shall be responsible for the following:The SIEM Engineer is responsible for designing, implementing, and managing the Microsoft Sentinel SIEM solution to collect, analyze, and visualize data from various sources within the Judiciary. This role involves managing the SIEM environment, creating dashboards, and ensuring the effective use of SIEM's capabilities to monitor, detect, and respond to security threats and operational insights for the consumption of the Security Analysts. The Microsoft Sentinel SIEM Engineer will work closely with security analysts, and stakeholders to optimize data intelligence and drive informed incident detection and response.

Essential Functions:SIEM Configuration:

Design and deploy SIEM resources, including configuring analytics rules, playbooks, Azure logic apps and data connectors, to support data collection and analysis needs.

Optimize SIEM configurations to ensure efficient data storage, retrieval, and search capabilities.

Data Collection and Integration

Collaborate with system owners to identify available data sources and drive initiatives to ingest that system data.

Develop data ingestion strategies, create data inputs, and set up data source integration for various log and event data types.

Design and implement data normalization and transformation processes for consistent and accurate analysis.

Dashboard and Visualization Development;

Design and create interactive dashboards, reports, and visualizations using SIEM's capabilities.

Present data insights in a clear and actionable manner to support decision-making processes.

Develop data visuals for the SOC displays screens.

Search, Queries and Alerts:

Develop and optimize analytics rules and alert mechanisms to proactively monitor for security threats, anomalies, and operational issues.

Configure alerts to trigger automated responses or notifications based on predefined criteria.

SIEM App Development:

Build custom SIEM apps and add-ons to extend functionality and support specific agency requirements.

Collaborate with development teams to integrate SIEM with other systems and tools

Security and Compliance:

Implement security controls and best practices to protect data stored in SIEM and ensure compliance with relevant regulations and standards.

Monitor and analyze security-related events to detect and respond to potential threats.

Performance Optimization:

Monitor system performance and troubleshoot issues related to data indexing, search performance, and resource utilization

Implement optimizations to enhance SIEM's efficiency and responsiveness.

Training and Documentation:

Provide training and guidance to other client's SOC team members on Microsoft Sentinel best practices, usage, and administration.

Create documentation for configurations, processes, and troubleshooting procedures

Benefits

Preferred Skills:Client is looking for candidates possessing the following mid to expert level preferred skills, experience, and capabilities:Recent experience with the administration and management of Microsoft Sentinel.

Experience developing, compiling, and executing KQL queries.

Strong aptitude to learn platforms, to work with stakeholders, to understand and provide thoughts on how to customize and maintain platforms to meet organizational business needs.

Experience generating playbooks and using Azure logic apps for security orchestration, automation and response.

Experience in querying, reviewing and providing contextual information from log data.

Proficient in the use of M365 Office suite of tool.

Ability to establish and maintain effective working relationships with peers, end users and vendor development staff, as well as all levels of management and judicial personnel as necessary

Ability to communicate clearly and lead technical discussions related to log data management and knowledge sharing.

RequirementsBasic Qualifications and Requirements: CANDIDATE QUALIFICATIONS: Client is looking for candidates that meet the following minimum qualifications: BA/BS degree in Computer Science, Business Management, or an IT-related field (with at least 3+ years of experience determined by the AOC ) The AOC prefers Candidates to have the following qualifications Three (3) years’ experience with Azure Sentinel. Three (3) years’ experience with Kusto Query Language. One (1) year experience with Information Security. Active Microsoft Security Operations Analyst Associate certification. Candidate shall be responsible for the following: The SIEM Engineer is responsible for designing, implementing, and managing the Microsoft Sentinel SIEM solution to collect, analyze, and visualize data from various sources within the Judiciary. This role involves managing the SIEM environment, creating dashboards, and ensuring the effective use of SIEM's capabilities to monitor, detect, and respond to security threats and operational insights for the consumption of the Security Analysts. The Microsoft Sentinel SIEM Engineer will work closely with security analysts, and stakeholders to optimize data intelligence and drive informed incident detection and response. Essential Functions: SIEM Configuration: Design and deploy SIEM resources, including configuring analytics rules, playbooks, Azure logic apps and data connectors, to support data collection and analysis needs. Optimize SIEM configurations to ensure efficient data storage, retrieval, and search capabilities. Data Collection and Integration Collaborate with system owners to identify available data sources and drive initiatives to ingest that system data. Develop data ingestion strategies, create data inputs, and set up data source integration for various log and event data types. Design and implement data normalization and transformation processes for consistent and accurate analysis. Dashboard and Visualization Development; Design and create interactive dashboards, reports, and visualizations using SIEM's capabilities. Present data insights in a clear and actionable manner to support decision-making processes. Develop data visuals for the SOC displays screens. Search, Queries and Alerts: Develop and optimize analytics rules and alert mechanisms to proactively monitor for security threats, anomalies, and operational issues. Configure alerts to trigger automated responses or notifications based on predefined criteria. SIEM App Development: Build custom SIEM apps and add-ons to extend functionality and support specific agency requirements. Collaborate with development teams to integrate SIEM with other systems and tools Security and Compliance: Implement security controls and best practices to protect data stored in SIEM and ensure compliance with relevant regulations and standards. Monitor and analyze security-related events to detect and respond to potential threats. Performance Optimization: Monitor system performance and troubleshoot issues related to data indexing, search performance, and resource utilization Implement optimizations to enhance SIEM's efficiency and responsiveness. Training and Documentation: Provide training and guidance to other client's SOC team members on Microsoft Sentinel best practices, usage, and administration. Create documentation for configurations, processes, and troubleshooting procedures

  • Delhi, India Tri-Force Consulting Services, Inc. Full time

    Job DescriptionTitle:Microsoft Sentinel SIEM EngineerDuration:12 monthsClient:Maryland Judiciary, Administrative Office of the CourtsLocation:Annapolis, MD 21401Note: This is a 100% Remote position.“The applicant is the center of our universe.”Job Description:The SIEM Engineer is responsible for designing, implementing, and managing the Microsoft...

  • SIEM Engineer

    2 weeks ago


    New Delhi, India 3Columns Full time

    Please Note:- This role is for Azure Sentinel Implementation engineer.SOC analyst experience for this role will not be consider. We will only consider Engineers with Azure Sentinel configuration and hands on experience.About the jobJob description 3Columns is a specialist cybersecurity firm delivering a wide range of services from Security Assurance,...

  • SIEM Engineer

    2 weeks ago


    New Delhi, India 3Columns Full time

    Please Note:- This role is for Azure Sentinel Implementation engineer. SOC analyst experience for this role will not be consider. We will only consider Engineers with Azure Sentinel configuration and hands on experience. About the job Job description 3Columns is a specialist cybersecurity firm delivering a wide range of services from Security Assurance,...

  • SIEM Engineer

    2 weeks ago


    new delhi, India 3Columns Full time

    Please Note:- This role is for Azure Sentinel Implementation engineer. SOC analyst experience for this role will not be consider. We will only consider Engineers with Azure Sentinel configuration and hands on experience. About the job Job description 3Columns is a specialist cybersecurity firm delivering a wide range of services from Security Assurance,...

  • SIEM Engineer

    2 weeks ago


    New Delhi, India 3Columns Full time

    Please Note:- This role is for Azure Sentinel Implementation engineer. SOC analyst experience for this role will not be consider. We will only consider Engineers with Azure Sentinel configuration and hands on experience. About the job Job description 3Columns is a specialist cybersecurity firm delivering a wide range of services from Security Assurance,...


  • New Delhi, India 3Columns Full time

    Please Note:- This role is for Azure Sentinel Implementation engineer. SOC analyst experience for this role will not be consider. We will only consider Engineers with Azure Sentinel configuration and hands on experience.About the jobJob description 3Columns is a specialist cybersecurity firm delivering a wide range of services from Security Assurance,...

  • Siem Engineer

    2 weeks ago


    Delhi, Delhi, India 3Columns Full time

    Please Note:This role is for Azure Sentinel Implementation engineer.SOC analyst experience for this role will not be consider.We will only consider Engineers with Azure Sentinel configuration and hands on experience.About the job Job description 3 Columns is a specialist cybersecurity firm delivering a wide range of services from Security Assurance, Security...


  • delhi, India AlifCloud IT Consulting Pvt. Ltd. Full time

    About us: Alif Cloud IT Consulting is a leading provider of Microsoft Services Globally, Working with Microsoft and Distributors directly. Majorly focused on Cloud and Security solutions. We are seeking a highly experienced and skilled Azure Solution Architect to join our dynamic team and lead the design and implementation of Azure-based solutions. Lead the...

  • SIEM Engineer

    2 weeks ago


    Delhi, Delhi, India 3Columns Full time

    Please Note:- This role is for Azure Sentinel Implementation engineer. SOC analyst experience for this role will not be consider. We will only consider Engineers with Azure Sentinel configuration and hands on experience. About the job Job description 3Columns is a specialist cybersecurity firm delivering a wide range of services from Security Assurance,...


  • Delhi, Delhi, India AlifCloud IT Consulting Pvt. Ltd. Full time

    About the Job Title and Company:Alif Cloud IT Consulting is a prominent provider of Microsoft Services worldwide, collaborating directly with Microsoft and Distributors, primarily focusing on Cloud and Security solutions.We are on the lookout for a highly skilled Azure Solution Architect to join our dynamic team and take charge of designing and implementing...


  • Delhi, Delhi, India AlifCloud IT Consulting Pvt. Ltd. Full time

    About us: Alif Cloud IT Consulting is a prominent provider of Microsoft Services globally, collaborating directly with Microsoft and Distributors. Our primary focus is on Cloud and Security solutions.We are in search of a highly skilled Azure Solution Architect to join our vibrant team and spearhead the design and implementation of Azure-based solutions....


  • Delhi, Delhi, India STAFIDE Full time

    Job DescriptionAbout us:Stafide is the premier destination for tech talent consulting, providing comprehensive employment services throughout EuropeOur mission is straightforward:to effortlessly connect job seekers with employers, focusing on the rapidly changing technology sector. Boasting unparalleled expertise and a steadfast commitment, we specialize in...

  • SOC Analyst

    2 weeks ago


    New Delhi, India 3Columns Full time

    Job description 3Columns is a specialist cybersecurity firm delivering a wide range of services from Security Assurance, Security Governance, Professional services and Managed Services. Solutions include Managed Security Services, Offensive Security Services, Cyber Security Consulting, and professional services to assist customer deploy all the required...


  • Delhi, Delhi, India GeekSoft Consulting Full time

    Job DescriptionHelp design, build, and continuously improve the clients' online platform.Research, suggest, and implement new technology solutions following best practices/standards.Take responsibility for the resiliency and availability of different products.Be a valuable member of the team.ResponsibilitiesThe primary duty involves conducting triage,...


  • Delhi, India GeekSoft Consulting Full time

    Job DescriptionHelp design, build and continuously improve the clients online platform.Research, suggest and implement new technology solutions following best practices/standards.Take responsibility for the resiliency and availability of different products.Be a productive member of the team.RequirementsThe primary duty involves conducting triage, analysis,...


  • Delhi, India STAFIDE Full time

    Job DescriptionAbout us:Stafide is the premier destination for tech talent consulting, providing comprehensive employment services throughout Europe. Our mission is straightforward: to effortlessly connect job seekers with employers, focusing on the rapidly changing technology sector. Boasting unparalleled expertise and a steadfast commitment, we specialize...

  • SOC Analyst

    2 weeks ago


    New Delhi, India 3Columns Full time

    Job description3Columns is a specialist cybersecurity firm delivering a wide range of services from Security Assurance, Security Governance, Professional services and Managed Services. Solutions include Managed Security Services, Offensive Security Services, Cyber Security Consulting, and professional services to assist customer deploy all the required...

  • SOC Analyst

    2 weeks ago


    New Delhi, India 3Columns Full time

    Job description3Columns is a specialist cybersecurity firm delivering a wide range of services from Security Assurance, Security Governance, Professional services and Managed Services. Solutions include Managed Security Services, Offensive Security Services, Cyber Security Consulting, and professional services to assist customer deploy all the required...

  • SOC Analyst

    2 weeks ago


    new delhi, India 3Columns Full time

    Job description3Columns is a specialist cybersecurity firm delivering a wide range of services from Security Assurance, Security Governance, Professional services and Managed Services. Solutions include Managed Security Services, Offensive Security Services, Cyber Security Consulting, and professional services to assist customer deploy all the required...


  • Delhi, Delhi, India Ubique Systems Full time

    JD-Implement and manageAzure Sentinel , ensuring optimal performance and effectiveness.Lead the SOC/SIEM team, providing guidance and support to team members.Provide expert knowledge in SOC implementation services, incident response, andMicrosoft Defender for Cloud.Integrate Native and third-party log platforms such as Firewalls, Switches, On-premises, and...