EL1 Cyber Security
Core
Hands-on Security Engineer responsible for uplifting Microsoft Sentinel, security tooling, and security operations processes within a government context.
Role type
Senior IC Security Engineer (Microsoft Sentinel & SIEM)
Builds
Alerting rules, threat response playbooks, KQL queries, and automated threat responses for Microsoft Sentinel.
Domain
Government Cybersecurity / Microsoft Cloud Security
Required skills
Microsoft Sentinel, SIEM administration, KQL, Microsoft 365 security stack (Intune, Entra, Purview), vulnerability scanning, WAF, DLP, automation, government security frameworks (ISM, PSFP, E8)
Preferred skills
Mentorship, cross-functional collaboration, strategy implementation
Technologies
Microsoft Sentinel, Microsoft 365, Entra Active Directory, Purview, WAF, DLP, vulnerability scanners
Responsibilities
Configure and troubleshoot log source integrations into the SIEM; Develop alerting rules and threat response playbooks; Build and refine KQL queries for investigations and threat hunting; Administer and maintain cybersecurity tooling; Ensure alignment of security practices to government frameworks; Mentor junior team members.
Seniority
Senior, hands-on IC with mentorship responsibilities