INTERIM SOC Architect - Microsoft Sentinel (gn)

Michael Page International (Deutschland) GmbH
Düsseldorf, Germany
about 1 month ago

Role details

Contract type
Contract
Employment type
Full-time (> 32 hours)
Working hours
Regular working hours
Languages
German
Job source

Tech stack

Data Analysis Microsoft Azure Cloud Computing Cloud Computing Security Cyber Security Security Information and Event Management Microsoft Power Automate Microsoft Sentinel

Job description

  • Architektur, Design und Weiterentwicklung einer modernen SIEM-/SOC-Landschaft auf Basis von Microsoft Sentinel
  • Konzeption und Implementierung von Security-Monitoring- und Detection-Strategien
  • Integration und Anbindung relevanter Log-Quellen aus Cloud-, Infrastruktur-, Netzwerk- und Endpoint-Systemen
  • Entwicklung, Optimierung und Pflege von Detection Rules, Analytics Rules und Security Use Cases
  • Aufbau und Weiterentwicklung von Automatisierungen und Response-Workflows
  • Unterstützung beim Ausbau und der Optimierung eines SOC-Umfelds
  • Analyse sicherheitsrelevanter Ereignisse sowie Ableitung geeigneter Maßnahmen zur Verbesserung der Detection- und Response-Fähigkeiten, Sollten Sie nicht verfügbar sein, freue ich mich trotzdem über Ihr Profil mit Angabe Ihrer voraussichtlichen Verfügbarkeit, um in Kontakt zu bleiben Ich freue mich auf Ihre zeitnahe Rückmeldung. Viele Grüße, Emmanuel Tatara

Requirements

Must-have

  • Mehrjährige Erfahrung als SOC Architect, SIEM Architect oder in vergleichbaren Rollen im Cyber-Security-Umfeld
  • Erfahrung mit Migrationen Onpremise -> Cloud
  • Sehr gute Kenntnisse in Microsoft Sentinel
  • Erfahrung im Aufbau und Betrieb von SIEM-/SOC-Landschaften
  • Know-how in der Integration verschiedener Log- und Security-Quellen
  • Kenntnisse in Cloud Security, idealerweise im Azure-Umfeld
  • Erfahrung mit Security-Automatisierung und SOAR-Ansätzen
  • Sehr gute Deutschkenntnisse

Nice-to-have

  • Kenntnisse in Microsoft Defender XDR
  • Erfahrung mit Logic Apps und Azure Security Services
  • Zertifizierungen wie SC-200, AZ-500, CISSP oder vergleichbar

Apply for this position

This job is hosted externally. Click below to view the full posting and apply.

Apply on www.xing.com

Good distractions

Talks and stories from around this role — technically off-topic, practically not.

2:47 min

Exploring career opportunities and recruitment open positions

Kurt Eder · LIVE

1:48 min

Automating exploratory data analysis within training pipelines

Dora Petrella · WWC 2023

4:11 min

Introduction to cloud-native application developer security

Micah Silverman · WWC 2022

1:06 min

Outline of free tools for Microsoft Azure

Radu Vunvulea Radu Vunvulea · WWC 2022

1:45 min

Transitioning from software development to security roles

Stefania Chaplin · WWC 2022

1:36 min

Performing exploratory data analysis to uncover underlying patterns

Julian Joseph · LIVE

Videos

See all

Related articles

See all