Microsoft Security Automation & Incident Response Engineer - Contract Position
Core
Optimize Microsoft security platforms to automate incident response, reduce analyst workload, and improve detection coverage.
Role type
Senior IC security automation and detection engineer
Builds
Automated incident response workflows, tuned detection rules, and optimized SOC processes
Domain
Cybersecurity, Microsoft Security Stack
Deliverable
production ML models | product features | dashboards & analysis | infrastructure
Required skills
Microsoft Sentinel, Microsoft Defender XDR suite, KQL, Logic Apps, SOAR automation, SIEM engineering, security workflow optimization
Preferred skills
Microsoft Security certifications, threat hunting, third-party telemetry integration, Purview/DLP exposure
Technologies
Microsoft Sentinel, Microsoft Defender XDR, Microsoft Defender for Endpoint, Microsoft Defender for Identity, Microsoft Defender for Cloud Apps, Entra ID, Zscaler, Logic Apps
Responsibilities
Analyze alert triage and incident response processes; Tune analytics rules and create hunting content; Design and implement automation for alert enrichment, routing, and response actions; Optimize integration of security telemetry and ITSM platforms; Develop operational runbooks and enhance investigation playbooks
Seniority
Senior, hands-on IC