Overview
Skills
Job Details
Senior Cyber Security Engineer
Remote
Contract to Hire
W2 ONLY
OR USC
Duties and Responsibilities (in the order of priority):
Support Client s Enterprise SIEM in a hybrid on-premises and cloud network configuration, including installations, upgrades, and end-to-end problem identification and remediation. Microsoft Sentinel and Azure experience preferred.
Perform log source configuration, parsing and building data collection rules (DCRs) in the SIEM.
Utilize KQL to the level necessary to onboard new log sources and to support and troubleshoot log related problems in the SIEM solution.
Manage, review, analyze and document the current information security solutions and capabilities and ensure they are functioning optimally.
Possess a working knowledge of antiviranti-malware and EDR tooling and threat detection techniques. Experience with Microsoft Defender for Endpoint, Defender for Cloud Apps, Defender for Identity and Purview preferred.
Automate and integrate security technologies using API and scripting technologies to link security technologies together and ensure sharing of information across technologies. Enable quick response to identified issues through automated response where necessary.
Perform IT and Systems design and analysis and propose solutions to complex problems that are not well defined. Identify, define and direct approach for successful resolution of significant technical issues.
Demonstrate functional knowledge of multiple technologies, to implement, monitor and maintain solutions.
Work with multiple technical areas, including Windows and Linux operating systems. Firewalls, VPNs, network segmentation and data flows, and application security concepts.
Mentors IT engineers in performing engineering work and perform IT engineering design and analysis.
Supervise lifecycle upgrades.
Provide level 3 level operational support.