SIEM Sentinel Engineer

at  Sii

02-626 Warszawa, województwo mazowieckie, Poland -

Start DateExpiry DateSalaryPosted OnExperienceSkillsTelecommuteSponsor Visa
Immediate23 Nov, 2024Not Specified27 Aug, 2024N/AFirewalls,Python,Scripting Languages,Adx,Security Tools,PowershellNoNo
Add to Wishlist Apply All Jobs
Required Visa Status:
CitizenGC
US CitizenStudent Visa
H1BCPT
OPTH4 Spouse of H1B
GC Green Card
Employment Type:
Full TimePart Time
PermanentIndependent - 1099
Contract – W2C2H Independent
C2H W2Contract – Corp 2 Corp
Contract to Hire – Corp 2 Corp

Description:

Possible location

  • Warsaw

Technologies & tools

  • Microsoft Azure Sentinel
  • Azure Data Explorer (ADX)
  • Azure Monitor Logs (AMA)
  • Logic Apps
  • Python
  • PowerShell

We are seeking a highly skilled SIEM Sentinel Engineer to join our security team. In this role, you will be responsible for deploying, configuring, and managing Microsoft Azure Sentinel, monitoring security events, and optimizing our incident response capabilities. The ideal candidate will have in-depth technical expertise in Azure Sentinel and a strong understanding of cybersecurity principles.

Your role

  • Deploy and configure Azure Sentinel to integrate with multiple data sources, ensuring thorough coverage and accurate logging of security events
  • Continuously monitor and analyze security events and alerts generated by Azure Sentinel to detect potential threats and incidents
  • Develop and fine-tune detection rules and use cases to improve Azure Sentinel’s effectiveness in identifying security threats
  • Leverage ADX and AMA for advanced log analytics, enabling detailed investigations and rapid querying of large data sets
  • Implement and manage Logic Apps for automating workflows, enhancing incident response, and integrating Azure Sentinel with other security tools
  • Diagnose and resolve issues in complex network environments to ensure smooth operation of the SIEM system and minimize downtime
  • Generate comprehensive reports and maintain thorough documentation related to security events and SIEM system performance
  • Work closely with other IT and security teams to ensure the integration of Azure Sentinel with other security tools and systems

Your skills

  • Strong experience with SIEM systems, specifically in Microsoft Azure Sentinel deployment, configuration, and management
  • Solid understanding of cybersecurity principles, threat landscapes, and common attack vectors
  • Familiarity with security frameworks and industry best practices
  • Excellent analytical and problem-solving skills for investigating security incidents and identifying root causes
  • Proficiency in scripting languages such as Python, PowerShell, or Kusto Query Language (KQL) for automation and detection rule customization
  • Hands-on experience integrating various data sources like firewalls, IDS/IPS, antivirus systems, and other security tools with Azure Sentinel
  • Expertise in using ADX and AMA for advanced log analytics and large data set querying

Job no. 240822-MTO7

Responsibilities:

  • Deploy and configure Azure Sentinel to integrate with multiple data sources, ensuring thorough coverage and accurate logging of security events
  • Continuously monitor and analyze security events and alerts generated by Azure Sentinel to detect potential threats and incidents
  • Develop and fine-tune detection rules and use cases to improve Azure Sentinel’s effectiveness in identifying security threats
  • Leverage ADX and AMA for advanced log analytics, enabling detailed investigations and rapid querying of large data sets
  • Implement and manage Logic Apps for automating workflows, enhancing incident response, and integrating Azure Sentinel with other security tools
  • Diagnose and resolve issues in complex network environments to ensure smooth operation of the SIEM system and minimize downtime
  • Generate comprehensive reports and maintain thorough documentation related to security events and SIEM system performance
  • Work closely with other IT and security teams to ensure the integration of Azure Sentinel with other security tools and system


REQUIREMENT SUMMARY

Min:N/AMax:5.0 year(s)

Information Technology/IT

IT Software - Network Administration / Security

Software Engineering

Graduate

Proficient

1

02-626 Warszawa, Poland