Experience 6 to 9 years
Job description
We are seeking a Senior Azure Sentinel Developer with a strong background in developing Azure Sentinel analytics rules, incidents, playbooks, notebooks, workbooks, and threat hunting within the Azure Cloud. In this role, you will work with Log Analytics Workspaces, Kusto Query Language (KQL), Dashboardworkbook development, and have a strong understanding of Azure PaaS services.
- Develop and implement custom analytics rules, incidents, playbooks, notebooks, and workbooks within Azure Sentinel to identify security threats and anomalies.
- Leverage KQL and other tools to create advanced threat hunting queries to proactively search for threats and investigate security incidents.
- Work with SIEM and SOAR solutions at scale.
- Collaborate with other security and IT teams to identify and prioritize security requirements and develop effective solutions.
- Design and deploy Azure Sentinel solutions using Azure DevOps and configure automation to improve efficiency.
- Integrate security log sources, build custom connectors and parsers
- Stay up to date with the latest security threats and trends and apply this knowledge to improve our security posture.
- Work with the Azure MMA agent in a distributed environment and have experience with Azure Lighthouse, Azure AD, B2B, and common Cloud authentication patterns.
- Configure, automate, harden, and deploy Azure Sentinel Services.
- Have a strong understanding of DevOps practices including CICD, Pipelines, Configuration Management, IaC ARM templates, GIT, Azure Automation.
- Work in the Azure DevOps toolset (Pipelines, Boards, Repos, Agent Pools).
- Have knowledge of Python and Jupyter.
- Have a strong understanding of Cloud Security and Networking Concepts and practices.
EXPERIENCE
- Bachelor's degree in computer science, Information Technology, or a related field.
- Relevant 4+ years of experience in Azure Sentinel development and implementation with a strong understanding of Azure PaaS services.
- Proficiency in using Azure DevOps to manage the development, testing, and deployment of Azure Sentinel solutions.
- Strong understanding of security principles and best practices.
- Experience with scripting languages, such as PowerShell and Python.
- Excellent analytical and problem-solving skills.
- Strong communication and collaboration skills to work effectively with other security and IT teams.