Microsoft Sentinel

3 weeks ago


Chennai, India Dolluz Corporation Private Limited Full time

Role Summary:

We are seeking an experienced Microsoft Security Engineer with strong hands-on expertise in Microsoft Sentinel (SIEM/SOAR) and Microsoft Intune (Endpoint Compliance & Access Control). The candidate will be responsible for designing, implementing, customizing, and supporting our SIEM dashboards, threat detection rules, connectors, and device compliance policies to strengthen our cybersecurity posture.

This is a core technical role the candidate must have direct hands-on experience in end-to-end deployment of both Sentinel and Intune in enterprise environments.

Key Responsibilities:

Microsoft Sentinel (SIEM):

  • Enable and configure data connectors: Azure Activity, AWS CloudTrail/GuardDuty, On-prem AD, Cisco ASA/Firepower, FortiGate firewalls.
  • Deploy and manage Syslog collector VMs for firewall/AD log ingestion.
  • Configure IoC/IoA threat intelligence feeds (MISP, OTX, Recorded Future, etc.).
  • Build custom dashboards (Top Talkers, Incident Overview, Events per Device, Rule Hits, Device Coverage).
  • Write and implement custom KQL correlation rules (beyond Microsoft built-ins).
  • Tune rules to reduce false positives and align with SOC operational needs.
  • Provide incident playbooks/runbooks for SOC team.

Microsoft Intune (MDM):

  • Review existing Intune configuration and optimize policies.
  • Define and implement device onboarding (corporate devices + BYOD).
  • Configure compliance validation policies (encryption, AV, OS patch levels).
  • Define and implement conditional access (CA) policies for O365, SaaS apps, and internal systems.
  • Integrate Intune with Defender for Endpoint and Sentinel for unified risk visibility.
  • Generate compliance dashboards and audit-ready reports.

Cross-Functions:

  • Work with Architect/Lead to align design with security framework.
  • Document all configurations, rules, dashboards, and policies.
  • Conduct structured knowledge transfer sessions for SOC/IT teams.
  • Support audit and regulatory readiness (ISO 27001, PDPL, GDPR, etc.).

Required Skills & Experience:

  • 8-12 years of hands-on experience in enterprise security engineering.
  • Minimum 3+ years direct, practical experience with Microsoft Sentinel (KQL, connectors, dashboards, rules).
  • Minimum 3+ years direct, practical experience with Microsoft Intune (compliance, CA, device onboarding).
  • Strong expertise in Azure AD, Conditional Access, Defender for Endpoint integration.
  • Proven experience writing custom KQL correlation rules (beyond out-of-box templates).
  • Familiarity with Syslog/CEF ingestion for firewalls and AD logs.
  • Experience integrating multi-cloud (Azure + AWS) into Sentinel.
  • Solid understanding of IoC/IoA feeds and Threat Intelligence integrations.
  • Strong documentation and KT delivery experience.
  • Certifications preferred:

  • SC-200: Microsoft Security Operations Analyst

  • SC-300: Microsoft Identity and Access Administrator
  • SC-400: Microsoft Information Protection
  • MS-101/MD-101: Microsoft 365 Enterprise Admin / Modern Desktop Administrator

Soft Skills:

  • Strong communication and stakeholder-facing ability.
  • Ability to lead discussions with security teams and senior management.
  • Problem-solving mindset balancing business risk vs technical enforcement.
  • Can work independently and deliver under tight timelines.

  • Microsoft Sentinel

    7 days ago


    Chennai, Tamil Nadu, India Dolluz Corporation Private Limited Full time ₹ 12,00,000 - ₹ 36,00,000 per year

    Role Summary:We are seeking an experienced Microsoft Security Engineer with strong hands-on expertise in Microsoft Sentinel (SIEM/SOAR) and Microsoft Intune (Endpoint Compliance & Access Control). The candidate will be responsible for designing, implementing, customizing, and supporting our SIEM dashboards, threat detection rules, connectors, and device...


  • Chennai, India Larsen & Toubro Limited Full time

    Job Description This is a technical role in our group and hence we are looking for someone who has experience in implementing and maintaining Microsoft Sentinel. Should have minimum 5+ years of experience in managing and operating Microsoft Sentinel Experience deploying and managing a large SIEM deployment in an enterprise or managing a MSSP platform for...

  • Microsoft Entra

    2 weeks ago


    Chennai, Tamil Nadu, India dotSolved Systems Inc. Full time ₹ 15,00,000 - ₹ 25,00,000 per year

    Microsoft Entra:Identity & Access Management: Entra Id (Azure Ad), Role-Based Access Control (RBAC), Privileged Identity Management (PIM), Single Sign-On (SSO), Multi-Factor Authentication (MFA)Conditional Access & Security: Risk-Based Policies, Location/Device-Based Access, Identity Protection, Monitoring Risky Sign-Ins Hybrid & External Identity: Azure Ad...


  • Chennai, India dotSolved Systems Inc. Full time

    Job Description Microsoft Entra: Identity & Access Management: Entra Id (Azure Ad), Role-Based Access Control (RBAC), Privileged Identity Management (PIM), Single Sign-On (SSO), Multi-Factor Authentication (MFA) Conditional Access & Security: Risk-Based Policies, Location/Device-Based Access, Identity Protection, Monitoring Risky Sign-Ins Hybrid &...


  • Chennai, India IC Data Full time

    Security Engineer: ( Microsoft Subject Matter Expert) : Fulltime Remote About the Role: Do you want to be on the frontline fighting for safe use within the digital frontier? Does describing your job to your family and friends as being a cyberwarrior or threat hunter sound awesome or awe inspiring? Then join us as part of our Security Operations Center...


  • Chennai, India IC Data Full time

    Security Engineer: ( Microsoft Subject Matter Expert) : Fulltime Remote About the Role: Do you want to be on the frontline fighting for safe use within the digital frontier? Does describing your job to your family and friends as being a cyberwarrior or threat hunter sound awesome or awe inspiring? Then join us as part of our Security Operations Center...

  • SOC Analyst L1

    2 weeks ago


    Chennai, Tamil Nadu, India Kryptos Technologies Full time ₹ 30,000 - ₹ 50,000 per year

    Role & responsibilitiesMonitor security alerts via Microsoft Sentinel and Defender XDR.2. Perform initial triage and analysis of incidents.3. Execute first-level containment actions (endpoint isolation, credential disablement).4. Escalate complex incidents to L2 Team. Exhibit strong analytical and communication skills.5. Maintain incident logs and ITSM...


  • Bengaluru, Chennai, Hyderabad, India Cloudxtreme Full time ₹ 15,00,000 - ₹ 25,00,000 per year

    Greetings from Cloudxtreme TechnologiesWe are having urgent opening for reputed MNC for Long-term C2H PositionSkill - Microsoft Azure Entra ID managementExperience-6+YLocation-Hyderabad/Bangalore/ChennaiNotice Period-0-15days/Currently serving notice period onlyMicrosoft Defender for Cloud (Security Center)Microsoft SentinelSecondary mandate skill...

  • SOC Engineer

    2 days ago


    Chennai, India Tata Consultancy Services Full time

    Continuously monitor: Monitor security alerts and events from various sources, including Microsoft Sentinel, Defender for Endpoint and Defender for Cloud.Perform log management: Perform log ingestion, define use cases, and create alerts for critical assets.Develop Detection Rules: Create, implement, and fine-tune analytical rules, alerts, and queries in...

  • SOC Engineer

    2 days ago


    Chennai, India Tata Consultancy Services Full time

    Continuously monitor:Monitor security alerts and events from various sources, including Microsoft Sentinel, Defender for Endpoint and Defender for Cloud.Perform log management: Perform log ingestion, define use cases, and create alerts for critical assets.Develop Detection Rules: Create, implement, and fine-tune analytical rules, alerts, and queries in...