CareerPlanSign in

Microsoft Security Automation & Incident Response Engineer - Contract Position

United States💼 Contract🗓 2026-07-13 → 2026-09-25

Core

Optimize Microsoft security platforms to automate incident response, reduce analyst workload, and improve detection coverage.

Role type

Senior IC security automation and detection engineer

Builds

Automated incident response workflows, tuned detection rules, and optimized SOC processes

Domain

Cybersecurity, Microsoft Security Stack

Deliverable

production ML models | product features | dashboards & analysis | infrastructure

Required skills

Microsoft Sentinel, Microsoft Defender XDR suite, KQL, Logic Apps, SOAR automation, SIEM engineering, security workflow optimization

Preferred skills

Microsoft Security certifications, threat hunting, third-party telemetry integration, Purview/DLP exposure

Technologies

Microsoft Sentinel, Microsoft Defender XDR, Microsoft Defender for Endpoint, Microsoft Defender for Identity, Microsoft Defender for Cloud Apps, Entra ID, Zscaler, Logic Apps

Responsibilities

Analyze alert triage and incident response processes; Tune analytics rules and create hunting content; Design and implement automation for alert enrichment, routing, and response actions; Optimize integration of security telemetry and ITSM platforms; Develop operational runbooks and enhance investigation playbooks

Seniority

Senior, hands-on IC

Sourced via lever · Listed on CareerPlan, which tracks 70,000+ jobs from 20+ sources.