Azure Security Architect (100% Remote)
Devire
Your future company
We are looking for an experienced Microsoft Sentinel / Azure Security Engineer to join our Cyber Security team. In this role, you will be responsible for designing, implementing, and optimizing SIEM and SOAR solutions using Microsoft Sentinel and Azure Log Analytics. You will play a key role in developing advanced threat detection capabilities, automating incident response processes, and integrating security data from a wide range of cloud and on-premises environments.
If you are passionate about cloud security, security automation, and Microsoft security technologies, we'd love to hear from you.
Requirements
- 10+ years of experience in Cloud Computing and Cloud Security.
- At least 5 years of hands-on experience in Azure Security.
- 3–4 years of practical experience with:
- Microsoft Sentinel
- Azure Log Analytics
- Kusto Query Language (KQL)
- Proven experience implementing and managing SIEM and SOAR solutions.
- Strong expertise in Microsoft Sentinel and Azure Log Analytics.
- Experience connecting logs from various cloud, on-premises, and third-party sources to Microsoft Sentinel.
- Hands-on experience developing:
- Analytics Rules
- Playbooks
- Workbooks
- Notebooks
- Threat Hunting use cases
- Incident Response workflows
- Strong knowledge of KQL for data normalization, parsing, and security analytics.
- Experience with Azure Logic Apps for security automation.
- Experience with scripting and automation using Python or similar languages.
- Experience integrating security solutions into DevOps and CI/CD pipelines.
- Practical knowledge of Syslog, RSyslog, and Syslog-ng.
- Experience integrating on-premises security logs into Microsoft Sentinel.
Responsibilities
- Design, develop, and optimize SIEM and SOAR use cases using Microsoft Sentinel.
- Develop and maintain:
- Analytics Rules
- Playbooks
- Workbooks
- Notebooks
- Threat Hunting scenarios
- Incident Response capabilities
- Integrate security logs from Azure, on-premises environments, and third-party solutions into Microsoft Sentinel.
- Configure and manage built-in and custom log connectors, including environments where native connectors are unavailable.
- Implement security log collection using Syslog, RSyslog, and Syslog-ng.
- Develop advanced Kusto Query Language (KQL) queries for data ingestion, normalization, parsing, and threat detection.
- Build and automate incident response workflows using Azure Logic Apps.
- Develop Jupyter Notebooks using Python or other scripting languages to support Microsoft Sentinel integrations and security operations.
- Integrate security use cases into DevOps and CI/CD pipelines.
- Collaborate with security architects and SOC teams to design and implement new detection and response capabilities.
- Continuously improve monitoring, detection, and automation processes across the security platform.
The offer
- Opportunity to work on large-scale enterprise cloud security projects.
- Exposure to the latest Microsoft Security technologies.
- A collaborative, international working environment.
- Opportunities for professional growth and certification.
- Flexible 100% remote working model from Poland.
- Competitive salary and comprehensive benefits package.
- Development opportunities -> This role has a high potential for further career progression in the direction of technical leadership team-wide and/or big data architecture.
- Access to cafeteria system and benefits platform
- Unique culture with excellent opportunities for techno-functional career advancement
- Support in all formalities for foreigners
Oferta pracy dodana 4 dni temu
Powiązane wyszukiwania
- .net developer with azure Polska
- azure devops manager Polska
- azure devops Polska
- software developer .net, c#, azure Polska
- sql azure and power bi developer Polska
- .net developer devops with azure Polska
- graphic designer zdalna Polska
- lekarz zdalna Polska
- reklama zdalna Polska
- specjalista sprzedaży zdalnej Polska