Experte SIEM Engineer (m/w/d)
Core
Design, develop, and optimize complex detection use cases and strategies for Microsoft Sentinel to monitor security threats.
Role type
Senior SIEM and Detection Engineer
Builds
Security detection rules, analytics frameworks, and threat monitoring capabilities for Microsoft Sentinel
Domain
Cybersecurity, SIEM, Threat Detection
Deliverable
production ML models | product features
Required skills
Microsoft Sentinel, KQL, ASIM (Advanced Security Information Model), MITRE ATT&CK, Detection Engineering, Log Onboarding, Security Data Modelling
Preferred skills
Detection Gap Analysis, Use-Case Lifecycle Management, Rule and Architecture Documentation
Technologies
Microsoft Sentinel, KQL, ASIM
Responsibilities
Define and manage the entire use-case lifecycle from requirement to decommissioning; Conduct detection gap analyses and derive new use cases based on threat landscapes; Create, test, tune, and maintain rule, architecture, and operation documentation.
Seniority
Senior, hands-on IC