Massachusetts Veterans Jobs

MassHire JobQuest Logo

Job Information

BlueVoyant Azure Sentinel SIEM Engineer (Remote in US) in Remote, Massachusetts

Azure Sentinel SIEM Engineer

Location: Remote in the United States (East Coast preferred)

Managed Sentinel, a BlueVoyant company, is currently seeking an Azure Sentinel SIEM Engineer. Candidate will be a subject matter expert in Azure Cloud security technologies and SIEM platforms, performing SIEM deployments in customer environments, leading initial technical investigations for security incidents, overseeing process improvements, development of new SIEM use cases and driving implementation of new capabilities.

Responsibilities:

  • Work on Cloud SIEM project implementations for various customers in different locations across the world (remotely), starting with deployment and use case tune-up

  • Work with Managed Sentinel Lead Architects and other security partners to develop and tune-up correlation rules

  • Perform investigation and escalation for complex or high severity security threats or incidents as part of Day-1 project phase

  • Coordinate evidence/data gathering and documentation and review security incident reports

  • Create and develop new SOC SIEM use cases as per the customer requirements

  • Define and assist in the creation of operational and executive security reports and dashboards

  • ntegrate other Microsoft security tools into Azure Sentinel

Qualifications:

  • At least 5 years of technical experience in cybersecurity field

  • Strong experience with Azure Cloud technologies

  • Expert level in script development, preferably KQL scripts

  • Detailed practical knowledge of Internet protocols, firewalls, proxies, and intrusion detection/prevention systems.

  • Ability to conduct multi-step breach and investigative analysis to trace the dynamic activities associated with advanced threats.

  • Customer facing, strong communication skills

Preferred Competencies:

  • Advanced event analysis leveraging Azure Sentinel SIEM

  • Deep knowledge of other SIEM platforms, such as Splunk, QRadar or Arcsight

  • Solid knowledge of M365 security toolsets

  • Strong expertise in Kusto Query Language

  • Expertise in Azure Logic Apps, Microsoft Flow

  • Advanced incident investigation and response skill set

  • Advanced log parsing and analysis skill set

  • Proficient in Python, PowerShell or C#/.NET

  • Proficient in Linux configuration and common administration tasks

  • Proficient in English

About BlueVoyant

At BlueVoyant, we recognize that effective cyber security requires active prevention and defense across both your organization and supply chain. Our proprietary data, analytics, and technology, coupled with deep expertise, works as a force multiplier to secure your full ecosystem. Accuracy! Actionability! Timeliness! Scalability! Led by CEO, Jim Rosenthal, BlueVoyant’s highly skilled team includes former government cyber officials with extensive frontline experience in responding to advanced cyber threats on behalf of the National Security Agency, Federal Bureau of Investigation, Unit 8200, and GCHQ, together with private sector experts. BlueVoyant services utilize large real-time datasets with industry leading analytics and technologies. Founded in 2017 by Fortune 500 executives, including Executive Chairman, Tom Glocer, and former Government cyber officials, BlueVoyant is headquartered in New York City and has offices in Maryland, Tel Aviv, San Francisco, London, Budapest, and Latin America. All employees must be authorized to work in the United States. BlueVoyant provides equal employment opportunities to all employees and applicants for employment without regard to race, color, religion, sex, national origin, age, disability or genetics. In addition to federal law requirements, BlueVoyant complies with applicable state and local laws governing non-discrimination in employment in every location in which the company has facilities.

Disclaimer: Please note that pursuant to contractual requirements and applicable law, in order for employees to perform work on some of the company’s federal contracts, U.S. citizenship is required. Accordingly, an employee’s ability to perform work on such contracts is contingent upon the company’s verification of the employee’s citizenship status.

BlueVoyant Candidate Privacy Notice

To understand how we secure and manage your personal data upon submitting a job application, please see our Candidate Privacy Notice, which can be found here - Candidate Privacy Notice

Powered by JazzHR

DirectEmployers