Microsoft Sentinel SIEM Engineer

3 days ago


india Tri-Force Consulting Services, Inc. Full time
Job Description
Title: Microsoft Sentinel SIEM Engineer
Duration: 12 months
Client: Maryland Judiciary, Administrative Office of the Courts
Location: Annapolis, MD 21401
                   
Note: This is a 100% Remote position.
                                
                                                              “The applicant is the center of our universe.”
Job Description:
  • The SIEM Engineer is responsible for designing, implementing, and managing the Microsoft Sentinel SIEM solution to collect, analyze, and visualize data from various sources within the Judiciary.
  • This role involves managing the SIEM environment, creating dashboards, and ensuring the effective use of SIEM's capabilities to monitor, detect, and respond to security threats and operational insights for the consumption of the Security Analysts.
  • The Microsoft Sentinel SIEM Engineer will work closely with security analysts, and stakeholders to optimize data intelligence and drive informed incident detection and response.
SIEM Configuration:
  • Design and deploy SIEM resources, including configuring analytics rules, playbooks, Azure logic apps and data connectors, to support data collection and analysis needs.
  • Optimize SIEM configurations to ensure efficient data storage, retrieval, and search capabilities.
  • Data Collection and Integration:
  • Collaborate with system owners to identify available data sources and drive initiatives to ingest that system data.
  • Develop data ingestion strategies, create data inputs, and set up data source integration for various log and event data types.
  • Design and implement data normalization and transformation processes for consistent and accurate analysis.
  • Dashboard and Visualization Development:
  • Design and create interactive dashboards, reports, and visualizations using SIEM's capabilities.
  • Present data insights in a clear and actionable manner to support decision-making processes.
  • Develop data visuals for the SOC displays screens.
Search, Queries and Alerts:
  • Develop and optimize analytics rules and alert mechanisms to monitor for security threats proactively, anomalies, and operational issues.
  • Configure alerts to trigger automated responses or notifications based on predefined criteria.
SIEM App Development:
  • Build custom SIEM apps and add-ons to extend functionality and support specific agency requirements.
  • Collaborate with development teams to integrate SIEM with other systems and tools.
Security and Compliance:
  • Implement security controls and best practices to protect data stored in SIEM and ensure compliance with relevant regulations and standards.
  • Monitor and analyze security-related events to detect and respond to potential threats.
Performance Optimization:
  • Monitor system performance and troubleshoot issues related to data indexing, search performance, and resource utilization.
  • Implement optimizations to enhance SIEM's efficiency and responsiveness.
Training and Documentation:
  • Provide training and guidance to other JIS SOC team members on Microsoft Sentinel best practices, usage, and administration.
  • Create documentation for configurations, processes, and troubleshooting procedures.

OFFEROR RESOURCE(S) SKILLS, EXPERIENCE, & CAPABILITIES
  • Recent experience with the administration and management of Microsoft Sentinel. b. Experience developing, compiling, and executing KQL queries.
  • Strong aptitude to learn platforms, to work with stakeholders, to understand and provide thoughts on how to customize and maintain platforms to meet organizational business needs.
PLACE OF PERFORMANCE
  • Work shall be performed 100% remote at a suitable off-site location selected by the Offer/Offer or Resource(s).
  • The AOC reserves the right to determine an off-site location is not suitable
  • On-site support may be required.
  • As designated by the Judiciary’s Chief Technology Officer, the proposed resource(s) must be able to report on-site within seventy-two (72) hours after notification.
  • If required to report, the Offer or Resource shall report to Maryland Judiciary Information Systems, 189 Harry S Truman Parkway, Annapolis, MD 21401.
  • The AOC does not have a limit on the number of times the proposed resource(s) may be required to be onsite.
Required Skills:
  • The Offer or shall have one (1) year of experience in providing recruitment, staffing, and/or otherwise providing professional consulting services.
  • The Offer or shall propose resource(s) that meet the following minimum qualifications:
  • BA/BS degree in Computer Science, Business Management, or an IT related field (as determined by the AOC).
  • The AOC prefers Offer or proposed resource(s) to have the following qualifications:
  • Three (3) years’ experience with Azure Sentinel.
  • Three (3) years’ experience with Kusto Query Language.
  • One (1) year experience with Information Security.
  • Active Microsoft Security Operations Analyst Associate certification.

" If you are: bright, motivated, skilled, a difference-maker, able to get things done, work with minimum direction, enthusiastic, a thinker, able to juggle and multi-task, communicate effectively, and lead, then we would like to hear from you. We need exceptionally capable people for this role for our client, so get back to us and tell us why you think you are a fit. "
About Us:
Tri-Force is one of the fastest growing companies in the Philadelphia region receiving the award 5 times and 3 times(Ranked #931 2021) on Inc. 5000 fastest growing companies in the USA. Tri-Force Consulting Services, Inc. is an established consulting services firm offering innovative solutions to Government and Commercial sectors. We specialize in building customized software application solutions such as knowledge management systems, business intelligence, data analysis, database support and maintenance, data warehouse implementation and support, systems architecture, and systems integration for our clients. Our technical competencies are in Java,.NET, SharePoint, PHP, Business Intelligence (Cognos, Data Warehouse), mobile applications platforms (iPhone, iPad, Android, Blackberry), and various other technologies. We also specialize in providing resources to manage infrastructure projects.  Tri-Force is one of the fastest growing companies in the Philadelphia region, receiving the award 5 times and 2 times on Inc. 5000 fastest growing companies in the USA.
Requirements
The Offeror shall have one (1) year of experience in providing recruitment, staffing, and/or otherwise providing professional consulting services. 2. The Offeror shall propose resource(s) that meet the following minimum qualifications: a. BA/BS degree in Computer Science, Business Management, or an IT related field (as determined by the AOC). 3. The AOC prefers Offeror proposed resource(s) to have the following qualifications: a. Three (3) years’ experience with Azure Sentinel. b. Three (3) years’ experience with Kusto Query Language. c. One (1) year experience with Information Security. d. Active Microsoft Security Operations Analyst Associate certification.

  • india Omm IT Solutions Full time

    Job Description This is a remote position. Please Note: This is a 100 % Remote Position and looking for Candidates in EST Time Zone. About the Position: AOC seeking proposals from prospective Offerors to provide a systems matter expect to serve as the Microsoft Sentinel Security Information and Events Management (SIEM) Engineer to deliver technical...

  • Azure Sentinel Siem

    1 week ago


    India CIEL HR Full time

    Job SummaryExperience yearsLocation - Bangalore, Kochi, Thiruvananthapuram, Pune, Chennai, Hyderabad, Noida - PAN Indiamust have Azure Sentinel SIEM min 2 YearsKusto Query Language(KQL)Used Case Development - min 2 YearsUNIX/LinuxNotice - Immediate to 20 daysRecruiter InfoSowmya R


  • India AlifCloud IT Consulting Pvt. Ltd. Full time

    About us: Alif Cloud IT Consulting is a leading provider of Microsoft Services Globally, Working with Microsoft and Distributors directly. Majorly focused on Cloud and Security solutions. We are seeking a highly experienced and skilled Azure Solution Architect to join our dynamic team and lead the design and implementation of Azure-based solutions. Lead the...


  • india AlifCloud IT Consulting Pvt. Ltd. Full time

    About us: Alif Cloud IT Consulting is a leading provider of Microsoft Services Globally, Working with Microsoft and Distributors directly. Majorly focused on Cloud and Security solutions. We are seeking a highly experienced and skilled Azure Solution Architect to join our dynamic team and lead the design and implementation of Azure-based solutions. Lead the...


  • India AlifCloud IT Consulting Pvt. Ltd. Full time

    About us: Alif Cloud IT Consulting is a leading provider of Microsoft Services Globally, Working with Microsoft and Distributors directly. Majorly focused on Cloud and Security solutions. We are seeking a highly experienced and skilled Azure Solution Architect to join our dynamic team and lead the design and implementation of Azure-based solutions. Lead the...


  • India AlifCloud IT Consulting Pvt. Ltd. Full time

    About us: Alif Cloud IT Consulting is a leading provider of Microsoft Services Globally, Working with Microsoft and Distributors directly. Majorly focused on Cloud and Security solutions. We are seeking a highly experienced and skilled Azure Solution Architect to join our dynamic team and lead the design and implementation of Azure-based solutions. Lead the...


  • india GeekSoft Consulting Full time

    Job Description Help design, build and continuously improve the clients online platform.Research, suggest and implement new technology solutions following best practices/standards.Take responsibility for the resiliency and availability of different products.Be a productive member of the team. Requirements The primary duty involves conducting triage,...


  • india GeekSoft Consulting Full time

    Job Description Help design, build and continuously improve the clients online platform.Research, suggest and implement new technology solutions following best practices/standards.Take responsibility for the resiliency and availability of different products.Be a productive member of the team. Requirements The primary duty involves conducting triage,...


  • india STAFIDE Full time

    Job Description About us: Stafide is the premier destination for tech talent consulting, providing comprehensive employment services throughout Europe. Our mission is straightforward: to effortlessly connect job seekers with employers, focusing on the rapidly changing technology sector. Boasting unparalleled expertise and a steadfast commitment, we...


  • india STAFIDE Full time

    Job Description About us: Stafide is the premier destination for tech talent consulting, providing comprehensive employment services throughout Europe. Our mission is straightforward: to effortlessly connect job seekers with employers, focusing on the rapidly changing technology sector. Boasting unparalleled expertise and a steadfast commitment, we...


  • india HARP Technologies and Services Full time

    Location : Hyderabad (Remote)Shift : EST (6.30 pm IST to 2.30 am IST). Potential to change to morning overlapped hours (Overlap: 1.30 pm IST to 9.30 pm IST)Exp : 4 to 7 yearsResponsibilities : - Lead the Data Loss Prevention (DLP) program implementation - Develop, monitor and maintain DLP endpoints and cloud security policies and procedures to prevent...

  • SOC Analyst

    1 month ago


    Qatar/Anywhere in India/Multiple Locations BRISKWIN IT SOLUTIONS PRIVATE LIMITED Full time

    JOB TITLE SOC Analyst - SeniorLocation: QATARArabic language mustExperience: 13+ YearsKey Responsibilities- Monitoring and analysis of cyber security events with the use of (SIEM) and other tools.- SOAR experience to Design and configure automation and workbooks.- SIEM as MS sentinel and Q-radar and other tools use case management (alerts and reports) as per...


  • india PowerData Group Consulting Full time

    Job Description Location: Canberra, ACT Security Clearance: Minimum BASELINE clearance required Successful applicants will be required to work from the Canberra office for a minimum of 3 days per week. Remote work arrangements will be discussed with the specified personnel’s manager upon commencement, and a Working from Home Agreement must be formalised....

  • Customer Engineer 2

    3 days ago


    india Microsoft Full time

    Overview Are you interested in working for one of the most exciting products in Microsoft, driven to exceed customer expectations and advancing Microsoft’s cloud first strategy? Are you interested in a supportive environment, passionate about cloud computing technology and driving growth in one of Microsoft’s core businesses? If so, then look...

  • Purview Developer

    1 month ago


    india Burgeon It Services Pvt Ltd Full time

    Job Description : - Design and develop solutions using the Microsoft Purview platform to address data governance, compliance, and risk management requirements- Implement data classification, sensitivity labeling, and retention policies across various data sources integrated with Purview- Automate data discovery, cataloging, and lineage using Purview...

  • SIEM Specialist

    1 week ago


    india GOODRECRUITER Full time

    Job Description About the Company Good Recruiter, an ethical recruitment agency, is on the lookout for a talented SIEM Specialist (H/F) to join one of the top insurance companies breaking new ground in technological innovation. Their mission? Transforming business processes through cloud computing, artificial intelligence, and big data.Job Description We...

  • Purview Developer

    1 week ago


    India Burgeon It Services Pvt Ltd Full time

    Job Description : Design and develop solutions using the Microsoft Purview platform to address data governance, compliance, and risk management requirements Implement data classification, sensitivity labeling, and retention policies across various data sources integrated with Purview Automate data discovery, cataloging, and lineage using Purview connectors...


  • india Tekwissen India Full time

    Overview: TekWissen Group is a workforce management provider throughout India and many other countries in the world, The below client is of the fastest-growing IT Services and IT staffing firms based in Bangalore, Hyderabad, Vizag, and Pune in India. Our 3000+ IT strong workforce is deployed internationally in various IT projects across...

  • Purview Developer

    1 month ago


    india Tech Mahindra Full time

    Skill Name: Purview Developer Experience: 4-7 yrs Job Location: Any Tech Mahindra Location 5+ years of experience as a software developer or data engineer Hands-on experience with Microsoft Purview (formerly Azure Information Protection and Microsoft Cloud App Security) Proficient in C#, PowerShell, and Azure Resource Manager templates Strong understanding...


  • india LTIMindtree Full time

    Primary Skill (Must Have Skill / Top 3 Skills)- Desirable Certified on SIEM technologies like Splunk and Qradar /Sentinel/Securonix/ Cadre- Cyber Defence / SOC/SIEM Architect SIEM SOC Architect Location - PAN India. Ideally, where LTIM has a presence Exp Level-15 to 20 years Detail JD SME for SIEM/XDR/MDR solutioning, designing Architect level...