
Closed
Posted
Paid on delivery
We need an experienced Azure security engineer and technical consultant to complete the following scope of work: Review custom log sources in Azure Log Analytics; audit existing analytics/detection rules tied to those logs; identify and document active suspicious activity patterns. Configure, schedule and roll out automated monitoring agents to a production environment. Research and document customer deployment options: Microsoft 365 integrations (SharePoint, Teams), incident email alerting, and scheduled weekly reports.
Project ID: 40476866
81 proposals
Remote project
Active 4 hours ago
Set your budget and timeframe
Get paid for your work
Outline your proposal
It's free to sign up and bid on jobs
81 freelancers are bidding on average $1,092 USD for this job

With decades of experience in the system and IT administration field, I have honed my skills and become proficient in various aspects of Cloud Computing, particularly Azure. As evident on my résumé, I have had a considerable amount of successful projects with Azure VM's, Vnet, Scaleset, Function Apps, App Services, CosmosDB, FlexibleDB, AKS, Blob Storage to mention a few. Consequently, working on configuring and scheduling automated monitoring agents for your production environment would be well within my capacities. In addition to that skill set, my knowledge of containerization tools such as Docker, Docker-compose, Kubernetes shall provide me with an extra edge executing tasks that require deep understanding of log management á la auditing Azure Log Analytics and detecting suspicious activities tied to logs. Lastly but most significantly , I am well-versed with crucial Microsoft 365 integrations (SharePoint and Teams) and email alerting systems; this will enable me to comprehensively research and document customer deployment options for you. Among other skills that could be relevant to this project includes DevOps [Jenkins , Bitbucket , Github,Terraform & Ansible] highlighted above. I am proactive, thorough in execution and available both weekdays and weekends.
$1,500 USD in 7 days
7.2
7.2

Hi, I understand you need an Azure security engineer to review custom log sources in Azure Log Analytics, check the current analytics and detection rules, find real suspicious activity patterns, and prepare clear notes for release and customer deployment. I can help configure and schedule monitoring agents for production, make sure rollout is safe, and document the best options for Microsoft 365, Teams, SharePoint, incident email alerts, and weekly reports. I will also look at CI/CD or automation needs so the setup is repeatable and easy to maintain after release. Which monitoring agent approach are you currently using or planning to use, Azure Monitor Agent with DCRs or another method? Do you already have sample custom logs and existing detection rules ready for review? Should production rollout happen through CI/CD, Azure Policy, scripts, or manual deployment first? For reports and alerts, do you prefer Microsoft Sentinel workbooks/automation rules, Logic Apps, or another reporting flow? Thanks,
$1,500 USD in 16 days
5.8
5.8

Hi I can help review your Azure Log Analytics custom log sources, audit detection rules, identify suspicious activity patterns, and document the findings clearly for technical and customer-facing use. My experience includes Azure Log Analytics, Microsoft Sentinel, KQL, detection engineering, analytics rules, monitoring agents, Microsoft 365 integrations, incident alerting, and security reporting workflows. The main technical challenge is making sure custom logs are normalized, queried correctly, and tied to detection rules that produce useful alerts instead of noisy or missed incidents. I will solve this by reviewing the data tables, validating KQL logic, mapping suspicious patterns, tuning detection rules, and documenting actionable recommendations. I can also configure and schedule monitoring agent rollout across production systems with proper validation, logging, and operational checks. For customer deployment options, I can document SharePoint/Teams integration, email incident notifications, and scheduled weekly security reports. I have worked on Azure security monitoring and SIEM workflows where reliable detection logic, clean deployment documentation, and clear reporting were critical. My approach is to make the monitoring setup secure, maintainable, and easy for both technical teams and customers to understand. Thanks, Hercules
$1,500 USD in 7 days
5.8
5.8

My team and I have considerable experience working with Microsoft Dynamics 365, and Salesforce on various projects, giving us a solid grasp of cloud-based operations, including those crucial to Azure Security. We excel at analyzing and optimizing log analytics systems while identifying any suspicious activity that could pose a threat to your infrastructure. Our expertise in configuring and rolling out automated agents will allow us to seamlessly integrate them into your production environment while minimizing disruption. Moreover, our commitment to research has enabled us to stay up-to-date with the latest features and integrations in Azure. We can confidently provide detailed insights into Microsoft 365 options such as SharePoint and Teams integration, incident email alerting, as well as the creation of scheduled weekly reports. Let's discuss details over chat.
$1,500 USD in 7 days
4.9
4.9

Hello! I work at the intersection of Azure security, monitoring, and DevOps, so reviewing your current Log Analytics setup, hardening detections, and preparing clean deployment options is very much in my wheelhouse. For your environment I’d start by inventorying the existing custom log sources and analytics/detection rules in Azure Monitor/Log Analytics, then use targeted KQL queries to surface suspicious patterns, noisy rules, and blind spots. From there, I’d tighten and document the active detections, roll out or adjust monitoring agents using policy- or script-based deployment so production coverage is reliable, and align everything with current Azure security best practices. On the customer-facing side, I can map and document deployment options for Microsoft 365 integrations (SharePoint, Teams), incident email alerting, and scheduled weekly reports, so your customers have clear choices instead of ad-hoc setups. The goal would be to leave you with three things: better visibility into real threats, automated collection/monitoring you can trust, and concise documentation you can reuse for future rollouts.
$750 USD in 7 days
4.6
4.6

Hello, I’m an Azure security engineer and cloud automation consultant with hands‑on experience across Log Analytics, Sentinel, CI/CD, and production‑grade monitoring deployments. I work daily with cross‑border environments (EU/UK/US) and specialize in attack‑surface mapping, detection rule auditing, and operational hardening. Based on your scope, here is how I would approach the project: 1. Log Analytics Review & Detection Rule Audit Map all custom log sources and validate ingestion health Audit existing analytics/detection rules for accuracy, noise, and coverage Identify suspicious activity patterns 2. Automated Monitoring Agent Deployment Review current agent footprint and configuration Prepare a rollout plan for production (change‑safe, staged, reversible) Implement automated deployment via (ARM/Bicep/ Azure DevOps) Validate telemetry flow and operational readiness 3. Microsoft 365 Integration & Reporting Document integration paths for SharePoint, Teams, and incident email alerting Configure alert routing and escalation logic Build weekly scheduled reports (KQL + Workbook + Automation Runbooks) Provide deployment options and operational guidance for your team 4. Deliverables A full audit report (rules, gaps, suspicious patterns, recommendations) Deployment documentation for monitoring agents Integration guide for M365 services Weekly reporting templates A clean, production‑ready configuration package
$960 USD in 8 days
4.6
4.6

Hi. How many servers to rollout monitoring agents? I can review logs, identify and document active suspicious activity patterns.
$1,125 USD in 14 days
4.6
4.6

Hi, I can assist with reviewing and strengthening your Microsoft Azure security monitoring environment, including Log Analytics, detection rules, monitoring automation, and Microsoft 365 integrations. I have experience with: • Azure Log Analytics and Sentinel investigations • Analytics rule auditing and suspicious activity analysis • Monitoring agent deployment and automation • Microsoft 365 integrations with SharePoint and Teams • Incident alerting, reporting workflows, and security documentation I can help identify active threats or anomalies, improve monitoring visibility, and document scalable deployment and reporting options for your production environment. Best regards, Muhammad Usman
$850 USD in 3 days
4.3
4.3

Hello, This project aligns closely with my experience in Azure security monitoring, threat detection, and SOC operations. I’m Md Shofiur, a Certified Ethical Hacker with 10+ years of experience in cybersecurity, including Azure Log Analytics, Microsoft security solutions, SIEM operations, and incident investigation. Approach: Review custom log sources and data ingestion pipelines Audit existing Azure Log Analytics queries, analytics rules, and detections Identify suspicious activity patterns, false positives, and detection gaps Document findings and provide tuning recommendations Production Monitoring Deployment: Configure and deploy monitoring agents Validate data collection and alert generation Establish scheduling, health monitoring, and operational procedures Microsoft 365 Integration Research: SharePoint and Teams integration options Incident notification workflows via email Weekly executive and technical reporting options Documentation of deployment models, benefits, and limitations Deliverables: Assessment report covering log sources, detections, and findings Deployment documentation for monitoring agents M365 integration recommendations Actionable remediation and optimization guidance I’m comfortable collaborating through Teams, Slack, and remote sessions and can begin immediately. Best regards, Md Shofiur
$1,500 USD in 7 days
4.5
4.5

Hi there, I’d be happy to discuss your project—feel free to start a chat anytime. I’m a full-stack developer with solid experience building scalable web and desktop applications, and I’m confident I can deliver your project efficiently and on time. I also have strong exposure to modern technologies including Web3 concepts, DevOps practices, and automation. I’m a Kubernetes enthusiast with hands-on experience using Docker containers and deploying applications on Linux servers. My expertise includes: MERN / MEAN Stack (development + team management) .NET Core APIs with Angular, including D3.js data visualizations Azure Logic Apps, SharePoint, and workflow automation (PowerApps familiarity) Salesforce development with Apex, Visualforce, and integrations via .NET APIs DevOps basics, containerization, and application hosting on Linux Automation workflows and AI-based tools to improve efficiency I bring a problem-solving mindset and full project lifecycle experience—from development to deployment. Looking forward to hearing from you. Thank you!
$1,300 USD in 4 days
4.5
4.5

Hi there, It looks like you're operationalizing your security monitoring, turning custom log data into an actionable intelligence pipeline. This involves validating the detection rules in Log Analytics, identifying genuine threat patterns, and then scaling up data collection by deploying monitoring agents across production. The final piece is connecting this system to your business workflows via M365 alerts and scheduled reports. Technical approach: We'll use KQL to audit the detection rules tied to your custom logs. Agent rollout will be managed via Azure Policy for automated, at-scale deployment. For alerting, we'll configure Azure Monitor Action Groups to trigger Logic Apps, which will handle the integration with Teams, SharePoint, and email for notifications and report delivery. Core modules: - Threat Detection Audit: Deep analysis of existing analytics rules to identify true positives, document suspicious patterns, and refine KQL queries. - Automated Agent Deployment: Configuration and staged rollout of the Azure Monitor Agent to ensure consistent data collection from all production assets. - Integrated Reporting Workflow: An automated system for routing critical alerts to designated channels and generating scheduled security summaries. Relevant systems: SecureCom (E2E Encrypted Communication Platform) CoreWipe (GrapheneOS Security & Device Management App) Our implementation strategy is to first audit the logs and rules to establish a clear baseline. We would then pilot the agent deployment in a controlled scope before the full production rollout. The M365 and alerting integrations will be built and tested in parallel. Regards, Rohit
$750 USD in 10 days
4.1
4.1

With my extensive knowledge and deep familiarity with Azure, I believe I am the ideal candidate for this project. My eight-year strong proficiency has provided me a comprehensive understanding of Azure's security environment, and I have successfully implemented numerous monitoring and deployment systems in various production environments. Crucially, I have an exacting eye for detail enabling me to effectively audit rules, identify anomalies, and document suspicious activity – exactly what your project requires. My competency isn't limited to the Azure world; aside from my qualifications in CI/CD and Cloud Computing, I am also conversant with an assortment of tech-stacks that align perfectly with Microsoft 365 integrations such as SharePoint and Teams. This additional expertise ensures that not only will we achieve your immediate goals but also lay a stable foundation for future integration efforts. Finally, it's important to emphasize that working with clients directly is a recent ambition of mine - namely on freelancing platforms like this one. As such, my motivation levels are at an all-time high to ensure your complete satisfaction. So let me bring my playground attitude and technical skillset to the table to take your Azure security game to new heights. Look forward to discussing this further together!
$1,125 USD in 7 days
4.1
4.1

Hello, I'm Azure Security experienced expert with 10 years of Cyber Security Security experience. I will perform audit, custom log checking and review, apply detection rules and findout malicious activities. Initiate chat with me to discuss and start the project.
$1,000 USD in 8 days
3.5
3.5

Hi, I have 15+ years of experience in Azure cloud, security operations, monitoring, and enterprise infrastructure. I can help with: • Azure Log Analytics review and custom log source analysis • Audit and tuning of analytics/detection rules • Identification and documentation of suspicious activity patterns • Deployment and automation of monitoring agents in production • Microsoft 365 integrations (SharePoint, Teams) • Incident email alerting and scheduled reporting • Security monitoring documentation and recommendations Experience includes Azure Monitor, Log Analytics, Microsoft Sentinel, M365 integrations, and enterprise security operations. Available to start immediately. Rahul
$1,100 USD in 7 days
3.6
3.6

Two jobs in one brief: a detection-quality audit, then an operational rollout. Sequencing matters here because pushing agents into production before you know which rules are misfiring means the second phase papers over gaps in the first. I'd start read-only, Reader plus Security Reader on the tenant, inventory every custom log source feeding Log Analytics, and KQL-audit each analytics rule tied to those sources, scoring each on whether it actually fires on the suspicious patterns you're seeing versus generating false-positive noise. Output is a findings doc with active-threat patterns mapped to specific tables before anything gets rewritten. Rollout from there: monitoring agents configured and scheduled into production with the deployment captured as code, repeatable, not click-ops. The M365 and alerting piece becomes a decision document covering SharePoint and Teams notification options, incident email via Logic App or action group, and a scheduled weekly report (workbook export or scheduled query to email) with tradeoffs written out so your customers can pick the right fit. I'll send the exact role assignments before starting. Scoped tenant access from your side is the first gate. M1: Log source inventory + KQL rule audit, $240, 2d. M2: Suspicious-pattern findings doc, $240, 2d. M3: Monitoring agent config + prod rollout as code, $300, 3d. M4: M365 + incident alerting + weekly report options doc, $240, 2d. M5: Validation + handoff doc, $180, 1d. Does the KQL audit scope extend to scheduled query rules in Sentinel, or just the custom analytics rules?
$1,200 USD in 10 days
2.9
2.9

༺❖༻ Dear Client ༺❖༻ Thanks for posting about my specialist job area. Your required skills perfectly match my experience and work style. I have strong experience in Azure cloud security, Log Analytics, Sentinel rule tuning, and building monitoring/alerting systems in enterprise environments. I have worked with custom log ingestion, KQL query development, detection rule auditing, and automation of security workflows using Azure Monitor, Logic Apps, and CI/CD pipelines. For your project, I can review your existing Log Analytics workspace, audit current analytics and detection rules, and identify suspicious activity patterns using structured KQL analysis. I will also configure and deploy automated monitoring agents into production, ensuring stable performance and secure rollout. Additionally, I can document integration options for Microsoft 365 services such as SharePoint, Teams, email alerting, and scheduled reporting dashboards. I will ensure the system is scalable, well-documented, and production-ready, with clear reporting and maintenance guidance for your team. Let’s connect to review your current Azure setup, security requirements, timeline, and deployment expectations so we can proceed efficiently. Best regards.
$750 USD in 7 days
2.8
2.8

Hello, I can help review your Azure Log Analytics custom logs, audit detection rules, configure monitoring agents, and document Microsoft 365, Teams, SharePoint, email alerting, and weekly reporting options. I have experience with cloud-based production systems, automation, CI/CD, logging, alert workflows, and security-focused monitoring. I can review the current Log Analytics workspace, map custom log sources to analytics rules, check query quality, and document suspicious activity patterns with clear findings and recommendations. I’ll also handle the monitoring agent rollout carefully, including configuration, scheduling, validation, and production-safe deployment steps. For the customer deployment options, I’ll compare Microsoft 365 integrations, incident email notifications, Teams/SharePoint workflows, and scheduled report approaches so the team has a practical path forward. My focus will be clean documentation, reliable rollout, and clear communication with both technical and customer-facing stakeholders. I am ready to start. Best, Smit
$750 USD in 5 days
1.8
1.8

We specialize in Azure security solutions, offering expertise in custom log analysis, detection rule audits, and automated monitoring agent deployment. Our approach involves leveraging Azure's native tools and services to streamline monitoring processes and enhance security protocols effectively. https://www.freelancer.com/portfolio-items/11387648-ai-lead-agent-for-online-academy https://www.freelancer.com/portfolio-items/11387726-personal-ai-os-for-tech-founder Thank you.
$1,125 USD in 10 days
1.6
1.6

SURE------I will do it as per the given specification so lets get started and complete it-------Azure Security — Monitoring, Deployment & Release Prep I am highly appreciative to work on this project. I am an Innovative AZURE/Full stack developer having rich experience with so many successful Tasks. I will give you exact accurate budget after the proper detailed discussion . Let’s connect on chat for further discussion and start quickly. Thanks!!
$1,100 USD in 7 days
1.1
1.1

⭐⭐⭐⭐⭐ Verified! Hi, Do you have a list of current Log Analytics workspace IDs, agent enrollment method (VM extension, Azure Arc, or MDM), and the Microsoft 365 tenant details for integration? I will review your custom log sources and audit existing analytics/detection rules to map where alerts originate and document active suspicious activity patterns in clear, actionable terms. I will configure, schedule and roll out automated monitoring agents to production using best-practice automation (ARM/Bicep/Policy) and validate deployment via CI/CD pipelines. I will research and document options for Microsoft 365 integrations (SharePoint, Teams), incident email alerting, and weekly report scheduling, including pros/cons and recommended configurations. I am ready to start and hope to discuss soon. Best regards, Luka
$1,250 USD in 1 day
1.2
1.2

London, United Kingdom
Payment method verified
Member since May 22, 2004
$10-30 USD
$100-500 USD
$8-15 USD / hour
$10-30 USD
$30-250 USD
$15-25 USD / hour
₹12500-37500 INR
₹400-750 INR / hour
₹12500-37500 INR
₹12500-37500 INR
₹1500-12500 INR
₹500000-1000000 INR
£250-750 GBP
€8-30 EUR
₹1500-12500 INR
€150 EUR
₹12500-37500 INR
$750-1500 CAD
₹1500-12500 INR
₹500000-1000000 INR
₹1500-12500 INR
$250-750 USD
$1500-3000 USD
₹600-1500 INR
₹12500-37500 INR