Description
Sr. Microsoft Sentinel / XDR Engineer (West US)
Location: Remote - West Coast United States
US CITIZENSHIP REQUIRED
BlueVoyant is currently seeking an experienced Senior Security Engineer to join our team. In this pivotal role, you will utilize your advanced knowledge of Microsoft Cloud security technologies and SIEM platforms to enable our MDR solutions within customer environments. You will be a lead engineer on large and enterprise sized SIEM and XDR technical enablement projects, involving hands-on deployment of a comprehensive range of Microsoft Security and Azure solutions.
Responsibilities:
At BlueVoyant, we recognize that effective cyber security requires active prevention and defense across both your organization and supply chain. Our proprietary data, analytics, and technology, coupled with deep expertise, works as a force multiplier to secure your full ecosystem. Accuracy! Actionability! Timeliness! Scalability!
Led by CEO, Jim Rosenthal, BlueVoyant’s highly skilled team includes former government cyber officials with extensive frontline experience in responding to advanced cyber threats on behalf of the National Security Agency, Federal Bureau of Investigation, Unit 8200, and GCHQ, together with private sector experts. BlueVoyant services utilize large real-time datasets with industry leading analytics and technologies.
Founded in 2017 by Fortune 500 executives, including Executive Chairman, Tom Glocer, and former Government cyber officials, BlueVoyant is headquartered in New York City and has offices in Maryland, Tel Aviv, San Francisco, London, Budapest, and Latin America.
All employees must be authorized to work in the United States. BlueVoyant provides equal employment opportunities to all employees and applicants for employment without regard to race, color, religion, sex, national origin, age, disability or genetics. In addition to federal law requirements, BlueVoyant complies with applicable state and local laws governing non-discrimination in employment in every location in which the company has facilities.
Disclaimer: Please note that pursuant to contractual requirements and applicable law, in order for employees to perform work on some of the company’s federal contracts, U.S. citizenship is required. Accordingly, an employee’s ability to perform work on such contracts is contingent upon the company’s verification of the employee’s citizenship status. Furthermore, individuals may be subject to additional background checks and fingerprinting.
Location: Remote - West Coast United States
US CITIZENSHIP REQUIRED
BlueVoyant is currently seeking an experienced Senior Security Engineer to join our team. In this pivotal role, you will utilize your advanced knowledge of Microsoft Cloud security technologies and SIEM platforms to enable our MDR solutions within customer environments. You will be a lead engineer on large and enterprise sized SIEM and XDR technical enablement projects, involving hands-on deployment of a comprehensive range of Microsoft Security and Azure solutions.
Responsibilities:
- Work on Microsoft Sentinel SIEM and/or Defender XDR complex project implementations for customers (remotely), starting with design and architecture, deployment, and use case tune-up.
- Create and develop new detection, automation, and reporting use cases per customer requirements.
- Assess and report maturity of client SIEM and XDR deployments
- Define and assist in creating operational and executive security reports and dashboards.
- Participate in research and development activities for process improvement and new product/feature enhancements.
- Work on XDR integration activities across the Microsoft and Azure product stacks.
- Familiarity with Microsoft XDR and Zero Trust Architecture models
- Be a strategic and lead technical delivery resource within a team for large and enterprise client-facing projects.
- Act as a lead on the Deployment Engineering team and provide mentoring for other mid and junior level engineers.
- Participate in ongoing support activities for client facing environments to help mature and maintain our MDR practices
- Identify and implement improvements around process and technical enablement
- Contribute to knowledge sharing activities, such as internal documentation, lunch and learn, public facing blogs, etc.
- At least 8 years of technical experience with enabling security technologies.
- Strong experience with Azure Cloud technologies, Microsoft Sentinel and Defender solutions
- Experience in query languages and/or script development (KQL, SPL, SQL, Powershell, etc.)
- Knowledge and familiarity of enterprise IT systems in relation to cyber security.
- Hands-on engineering experience with SIEM and/or XDR technologies
- Excellent communication skills to work in a dynamic and fast-paced team environment
- Hands-on Engineering experience with Microsoft Sentinel and/or Defender XDR Solutions
- Solid knowledge of Microsoft Defender security
- Experienced in customer-facing roles
- Expertise in Kusto Query Language
- Expertise in Azure Logic Apps, Function apps, and other Azure technologies
- Expertise with the Microsoft 365 productivity solutions (Exchange Online, Teams, Sharepoints)
- Expertise with Microsoft Intune
- incident investigation and response skill set
- Proficient in Python, PowerShell or C#/.NET
- Proficient in Linux configuration and common administration tasks
At BlueVoyant, we recognize that effective cyber security requires active prevention and defense across both your organization and supply chain. Our proprietary data, analytics, and technology, coupled with deep expertise, works as a force multiplier to secure your full ecosystem. Accuracy! Actionability! Timeliness! Scalability!
Led by CEO, Jim Rosenthal, BlueVoyant’s highly skilled team includes former government cyber officials with extensive frontline experience in responding to advanced cyber threats on behalf of the National Security Agency, Federal Bureau of Investigation, Unit 8200, and GCHQ, together with private sector experts. BlueVoyant services utilize large real-time datasets with industry leading analytics and technologies.
Founded in 2017 by Fortune 500 executives, including Executive Chairman, Tom Glocer, and former Government cyber officials, BlueVoyant is headquartered in New York City and has offices in Maryland, Tel Aviv, San Francisco, London, Budapest, and Latin America.
All employees must be authorized to work in the United States. BlueVoyant provides equal employment opportunities to all employees and applicants for employment without regard to race, color, religion, sex, national origin, age, disability or genetics. In addition to federal law requirements, BlueVoyant complies with applicable state and local laws governing non-discrimination in employment in every location in which the company has facilities.
Disclaimer: Please note that pursuant to contractual requirements and applicable law, in order for employees to perform work on some of the company’s federal contracts, U.S. citizenship is required. Accordingly, an employee’s ability to perform work on such contracts is contingent upon the company’s verification of the employee’s citizenship status. Furthermore, individuals may be subject to additional background checks and fingerprinting.
BlueVoyant Candidate Privacy Notice
To understand how we secure and manage your personal data upon submitting a job application, please see our Candidate Privacy Notice, which can be found here - Candidate Privacy Notice