
Closed
Posted
Paid on delivery
We are looking for an experienced Microsoft Sentinel & Microsoft Defender Security Engineer to provide ongoing support for our SOC/SIEM operations. The ideal candidate should have hands-on experience in security monitoring, incident response, Microsoft security technologies, and enterprise IT environments. This is a remote freelance opportunity with the possibility of long-term collaboration. Responsibilities Monitor, investigate, and validate security incidents using Microsoft Sentinel (SIEM). Perform endpoint investigation and remediation using Microsoft Defender for Endpoint (MDE). Analyze security alerts, identify root causes, and recommend remediation actions. Investigate security threats across Azure and Microsoft 365 environments. Review logs and perform threat analysis. Handle security incidents, escalations, and coordinate with internal teams and clients. Create and maintain incident documentation and remediation recommendations. Develop or maintain automation/scripts to improve log collection and security workflows. Support SIEM rule tuning, use case development, and security monitoring improvements. Perform device audits and validate monitoring configurations. Update security procedures, documentation, and escalation processes. Create and manage service desk tickets during security incidents. Communicate technical issues clearly with both technical and non-technical stakeholders. Participate in incident response bridge calls and coordinate resolution activities. Required Skills Microsoft Sentinel Microsoft Defender for Endpoint Microsoft Defender XDR Azure Security Microsoft 365 Security SIEM Monitoring Incident Response Threat Hunting Log Analysis KQL (Kusto Query Language) Azure Monitor Security Operations Center (SOC) Endpoint Detection & Response (EDR) Preferred Experience Experience with one or more of the following is a plus: LogicMonitor SolarWinds MSP N-central PagerDuty BMC Remedy IPsoft IPcenter PowerShell Automation scripting Security process documentation Ideal Candidate 3+ years of experience in SOC/SIEM or Cyber Security Operations. Strong analytical and troubleshooting skills. Experience handling critical security incidents. Ability to prioritize multiple alerts and incidents simultaneously. Excellent communication and documentation skills. Comfortable working independently in a client-facing environment. When Applying Please include: Your total experience with Microsoft Sentinel. Your experience with Microsoft Defender for Endpoint/XDR. Any Microsoft Security certifications (SC-200, SC-300, AZ-500, SC-100, etc.). Similar projects you have completed. Your hourly rate or fixed-price quote. Your availability and time zone.
Project ID: 40548746
11 proposals
Remote project
Active 57 yrs ago
Set your budget and timeframe
Get paid for your work
Outline your proposal
It's free to sign up and bid on jobs