SIEM Sentinel Engineer
at Sii
02-626 Warszawa, województwo mazowieckie, Poland -
Start Date | Expiry Date | Salary | Posted On | Experience | Skills | Telecommute | Sponsor Visa |
---|---|---|---|---|---|---|---|
Immediate | 23 Nov, 2024 | Not Specified | 27 Aug, 2024 | N/A | Firewalls,Python,Scripting Languages,Adx,Security Tools,Powershell | No | No |
Required Visa Status:
Citizen | GC |
US Citizen | Student Visa |
H1B | CPT |
OPT | H4 Spouse of H1B |
GC Green Card |
Employment Type:
Full Time | Part Time |
Permanent | Independent - 1099 |
Contract – W2 | C2H Independent |
C2H W2 | Contract – Corp 2 Corp |
Contract to Hire – Corp 2 Corp |
Description:
Possible location
- Warsaw
Technologies & tools
- Microsoft Azure Sentinel
- Azure Data Explorer (ADX)
- Azure Monitor Logs (AMA)
- Logic Apps
- Python
- PowerShell
We are seeking a highly skilled SIEM Sentinel Engineer to join our security team. In this role, you will be responsible for deploying, configuring, and managing Microsoft Azure Sentinel, monitoring security events, and optimizing our incident response capabilities. The ideal candidate will have in-depth technical expertise in Azure Sentinel and a strong understanding of cybersecurity principles.
Your role
- Deploy and configure Azure Sentinel to integrate with multiple data sources, ensuring thorough coverage and accurate logging of security events
- Continuously monitor and analyze security events and alerts generated by Azure Sentinel to detect potential threats and incidents
- Develop and fine-tune detection rules and use cases to improve Azure Sentinel’s effectiveness in identifying security threats
- Leverage ADX and AMA for advanced log analytics, enabling detailed investigations and rapid querying of large data sets
- Implement and manage Logic Apps for automating workflows, enhancing incident response, and integrating Azure Sentinel with other security tools
- Diagnose and resolve issues in complex network environments to ensure smooth operation of the SIEM system and minimize downtime
- Generate comprehensive reports and maintain thorough documentation related to security events and SIEM system performance
- Work closely with other IT and security teams to ensure the integration of Azure Sentinel with other security tools and systems
Your skills
- Strong experience with SIEM systems, specifically in Microsoft Azure Sentinel deployment, configuration, and management
- Solid understanding of cybersecurity principles, threat landscapes, and common attack vectors
- Familiarity with security frameworks and industry best practices
- Excellent analytical and problem-solving skills for investigating security incidents and identifying root causes
- Proficiency in scripting languages such as Python, PowerShell, or Kusto Query Language (KQL) for automation and detection rule customization
- Hands-on experience integrating various data sources like firewalls, IDS/IPS, antivirus systems, and other security tools with Azure Sentinel
- Expertise in using ADX and AMA for advanced log analytics and large data set querying
Job no. 240822-MTO7
Responsibilities:
- Deploy and configure Azure Sentinel to integrate with multiple data sources, ensuring thorough coverage and accurate logging of security events
- Continuously monitor and analyze security events and alerts generated by Azure Sentinel to detect potential threats and incidents
- Develop and fine-tune detection rules and use cases to improve Azure Sentinel’s effectiveness in identifying security threats
- Leverage ADX and AMA for advanced log analytics, enabling detailed investigations and rapid querying of large data sets
- Implement and manage Logic Apps for automating workflows, enhancing incident response, and integrating Azure Sentinel with other security tools
- Diagnose and resolve issues in complex network environments to ensure smooth operation of the SIEM system and minimize downtime
- Generate comprehensive reports and maintain thorough documentation related to security events and SIEM system performance
- Work closely with other IT and security teams to ensure the integration of Azure Sentinel with other security tools and system
REQUIREMENT SUMMARY
Min:N/AMax:5.0 year(s)
Information Technology/IT
IT Software - Network Administration / Security
Software Engineering
Graduate
Proficient
1
02-626 Warszawa, Poland