EL1 Cyber Security
Core
Hands-on Security Engineer responsible for uplifting Microsoft Sentinel, security tooling, and security operations processes within a government context.
Role type
Senior IC Security Engineer (Microsoft Sentinel & SIEM)
Builds
Alerting rules, threat response playbooks, KQL queries, and automated threat responses for Microsoft Sentinel.
Domain
Government Cybersecurity / Microsoft Cloud Security
Deliverable
production ML models | product features | dashboards & analysis | infrastructure
Required skills
Microsoft Sentinel, SIEM administration, KQL, Microsoft 365 security stack (Intune, Entra, Purview), vulnerability scanning, WAF, DLP, automation, government security frameworks (ISM, PSFP, E8)
Preferred skills
Mentorship, cross-functional collaboration, strategy implementation
Technologies
Microsoft Sentinel, Microsoft 365, Entra Active Directory, Purview, WAF, DLP, vulnerability scanners
Responsibilities
Configure and troubleshoot log source integrations into the SIEM; Develop alerting rules and threat response playbooks; Build and refine KQL queries for investigations and threat hunting; Administer and maintain cybersecurity tooling; Ensure alignment of security practices to government frameworks; Mentor junior team members.
Seniority
Senior, hands-on IC with mentorship responsibilities