Siem Security Engineer

MOBS Lab

Not specified; not specified; competitive salary +...
Hybrid
Microsoft sentinel platform administration
Kusto query language (kql) proficiency
Cribl log ingestion pipeline management
MOBS Lab is seeking a SIEM Security Engineer to manage their Microsoft Sentinel platform, focusing on log ingestion, data engineering, and detection engineering. The role requires collaboration with various teams to enhance security monitoring and incident response in a dynamic environment

Job Summary

  • This role is responsible for taking ownership of the Microsoft Sentinel platform to enable scalable security monitoring and high-fidelity detections.
  • The engineer will design and maintain log ingestion pipelines using Cribl while optimizing data quality and costs before ingestion into Azure Data Explorer.
  • Candidates must possess strong communication skills in English to collaborate effectively with global teams across SOC, Cloud, and Network departments.

Matching Summary

Match Score: 85

MOBS Lab is seeking a SIEM Security Engineer to manage their Microsoft Sentinel platform, focusing on log ingestion, data engineering, and detection engineering. The role requires collaboration with various teams to enhance security monitoring and incident response in a dynamic environment.

Salary

Not specified; Not specified; Competitive salary and benefits package

Skills & Requirements

Must-have

  • Microsoft Sentinel platform administration
  • Kusto Query Language (KQL) proficiency
  • Cribl log ingestion pipeline management
  • Azure Data Explorer (ADX) experience
  • SOC incident response support
  • MITRE ATT&CK framework alignment

Nice-to-have

  • Sentinel SOAR Logic Apps automation
  • Python and PowerShell scripting skills
  • Zero-trust architecture exposure
  • Regulated industry experience
  • Global team collaboration ability

Key Requirements

  • Strong hands-on experience with Microsoft Sentinel
  • Advanced proficiency in Kusto Query Language (KQL)
  • Practical experience with Cribl for log routing
  • Experience working with Azure Data Explorer (ADX)
  • Solid understanding of security logging and telemetry
  • Familiarity with ITIL processes and ServiceNow/Jira

Work Rights

Not specified

Tailored Resume

Cover Letter