Microsoft Defender & Sentinel Administrator


Silver Xis, Inc.
Dice Job Match Score™
🔢 Crunching numbers...
Job Details
Skills
- Microsoft Defender
- Sentinel
Summary
Microsoft Defender & Sentinel Administrator
REMOTE
Lead the configuration, monitoring, and optimization of our security operations platform. In this role, you will manage our SIEM (Security Information and Event Management), Extended Detection and Response (XDR), and automated security orchestration workflows to protect our enterprise infrastructure against sophisticated cyber threats.
Key Responsibilities
Microsoft Defender Administration
- Threat Protection: Administer and optimize Microsoft Defender XDR components, including Defender for Endpoint, Defender for Identity, Defender for Office 365, and Defender for Cloud Apps.
- Vulnerability Management: Monitor endpoint health, assess software vulnerabilities, and enforce security baselines across multi-platform endpoints (Windows, macOS, Linux, mobile).
- Incident Triage: Investigate high-priority security alerts, analyze threat vectors, and execute containment or remediation steps.
Microsoft Sentinel Operations
- Workspace Management: Administer Microsoft Sentinel workspaces, configure data connectors, and ensure the seamless ingestion of logs from Azure, M365, and third-party sources.
- Detection Engineering: Create, test, and tune analytics rules, hunting queries, and parsers using Kusto Query Language (KQL) mapped to the MITRE ATT&CK framework.
- Threat Proactivity: Conduct proactive threat hunting to uncover hidden anomalous activity across identity, cloud, and network telemetry.
Automation & Orchestration
- Playbook Development: Design, build, and troubleshoot automation rules and security playbooks using Azure Logic Apps.
- Workflow Efficiency: Automate incident enrichment, triage notifications, ticket creation, and standard containment responses to reduce Mean Time to Respond (MTTR).
Qualifications & Skills
- Experience: 5+ years of hands-on experience in cybersecurity administration, security operations (SOC), or cloud infrastructure security.
- Technical Expertise:
- Deep knowledge of Microsoft Defender security suite and Microsoft Sentinel.
- Proficiency in Kusto Query Language (KQL) for log analysis and threat hunting.
- Experience building Azure Logic Apps and security playbooks.
- Familiarity with Microsoft Entra ID (Azure AD) and Microsoft Intune
- Must be familiar with Authorization protocol, MFA and conduction access.
- Dice Id: 10117720
- Position Id: 9102088
- Posted 1 day ago
Company Info
SilverXis Inc. is leading provider of cutting-edge software development , and workforce solutions. We combine our profound industry expertise with our broad range of full-service capabilities In House Software Development, Recruitment, Consulting, Staffing, and Outsourcing - to deliver the right fit to our clients and candidates. As a leading provider of Staff augmentation and Development, SilverXis will deliver the support staff with the essential expertise to compliment your organization.
At Silver Xis we are dedicated to giving you an exceptional experience tailored to your specific situation. We accomplish this by listening carefully to your needs and looking beyond the obvious for creative solutions. SilverXis is focused on exceptional customer service and giving our clients what they want: flexibility and access to talent. By utilizing SilverXis screened professionals, our clients are able to maintain high production levels without increasing headcount.
SilverXis has an excellent track record for delivering high-quality, major projects on time and on budget. We can identify real costs and model the projects around value-based priorities for your organization. Since 2005, SilverXis has been providing Staffing solutions in the Field of Information Technology, Healthcare, Customer Service, and Financials.
Similar Jobs
It looks like there aren't any Similar Jobs for this job yet.
Search all similar jobs