> Markdown version of [/jobs/ext/2190653-microsoft-security-engineer](https://www.wearedevelopers.com/jobs/ext/2190653-microsoft-security-engineer). Every page supports `.md` or `Accept: text/markdown`. Links point to the HTML versions so they work for humans too. Agent guide: [/agents.md](https://www.wearedevelopers.com/agents.md). --- # Microsoft Security Engineer - **Company:** Experis - **Location:** London, UK - **Experience:** Expert - **Contract:** Permanent contract - **Skills:** Microsoft Azure, Cloud Computing, Cloud Computing Security, Cyber Security, Intrusion Detection and Prevention, Python (Programming Language), Microsoft Security Essentials, Microsoft Office, Windows PowerShell, Azure Active Directory, Kusto Query Language, Microsoft Power Automate, Mitre Att&ck, Microsoft InTune, Azure Security Center, Microsoft Sentinel - **Published:** August 23, 2026 - **Apply:** https://www.experis.co.uk/job/senior-soc-engineer-6003509/apply ## About the Role We are looking for technically strong Microsoft Security Engineers with genuine hands-on experience designing, implementing, engineering and optimising Microsoft Sentinel and Defender solutions within enterprise customer environments., To be considered, you should have strong commercial experience across the following: * Microsoft Sentinel / Azure Sentinel * Microsoft Defender / Defender XDR * Strong KQL / Kusto Query Language capability * Security Engineering, SOC Engineering or Microsoft Security Consulting * SIEM engineering rather than solely alert monitoring or incident triage * Detection engineering and security monitoring optimisation * Automation, scripting, SOAR or Sentinel playbooks * Cloud security assessments, controls and risk analysis * Designing and documenting security processes * Customer-facing technical delivery Candidates whose experience is predominantly L1/L2 SOC monitoring without hands-on Sentinel and Defender engineering are unlikely to be suitable for this position. Highly Desirable Experience across any of the following would be particularly valuable: * Microsoft Purview * Microsoft Defender for Endpoint * Defender for Cloud * Defender for Identity * Defender for Office 365 * Microsoft Entra ID * Intune * Azure security architecture * Logic Apps / Sentinel playbooks * PowerShell or Python * MITRE ATT&CK * Microsoft Security architecture and tenant assessments Previous experience working directly for Microsoft, or within a leading Microsoft Security Partner, MSSP or specialist Microsoft consultancy, would be highly advantageous. ## Description Working alongside Security Engineers, SOC Analysts and wider delivery teams, you will take responsibility for the implementation, optimisation and ongoing improvement of Microsoft security solutions., * Design, implementation and support of Microsoft Sentinel and Microsoft Defender / Defender XDR * Engineering and optimisation of SIEM capabilities across enterprise environments * Developing and tuning KQL queries, analytics and detection rules * Designing and implementing SOC automation, playbooks and scripting * Improving security event detection and response capabilities * Conducting Microsoft tenant health checks, security audits and architecture reviews * Analysing cloud security risks and recommending appropriate security controls * Supporting complex incident triage and resolution * Designing and documenting security engineering standards and processes * Researching and implementing new Microsoft security capabilities * Producing high-quality technical and customer-facing documentation * Working directly with customers and technical stakeholders * Supporting and mentoring more junior members of the engineering team ## Related Videos - [Developer Tools for Microsoft Azure](https://www.wearedevelopers.com/videos/450-developer-tools-for-microsoft-azure) - [Thinking Differently - How to Make Money from Cyber Attacks & Cheats](https://www.wearedevelopers.com/videos/745-thinking-differently-how-to-make-money-from-cyber-attacks-cheats) - [Security Pitfalls for Software Engineers](https://www.wearedevelopers.com/videos/726-security-pitfalls-for-software-engineers) - [Develop enterprise-ready applications for Microsoft Teams with Azure resources on modern web technologies](https://www.wearedevelopers.com/videos/187-develop-enterprise-ready-applications-for-microsoft-teams-with-azure-resources-on-modern-web-technologies) - [Hacking MSSQL on Cloud. All of them. How I became sysadmin on Azure, AWS, GCP and Alibaba.](https://www.wearedevelopers.com/videos/100339-hacking-mssql-on-cloud-all-of-them-how-i-became-sysadmin-on-azure-aws-gcp-and-alibaba) - [Checkmate: 5 Real Incidents That Can End a Software Company](https://www.wearedevelopers.com/videos/100126-checkmate-5-real-incidents-that-can-end-a-software-company) ## Related Articles - [What Are The Top Skills Required For Azure Developers?](https://www.wearedevelopers.com/magazine/77-what-are-the-top-skills-required-for-azure-developers) - [Fully Remote Software Engineer Jobs](https://www.wearedevelopers.com/magazine/447-fully-remote-software-engineer-jobs) - [Is Software Engineering Over-Saturated?](https://www.wearedevelopers.com/magazine/418-is-software-engineering-over-saturated) - [Where To Find Software Engineering Jobs](https://www.wearedevelopers.com/magazine/396-where-to-find-software-engineering-jobs) - [Why Upskilling And Reskilling is Important For Developers](https://www.wearedevelopers.com/magazine/428-why-upskilling-and-reskilling-is-important-for-developers) - [Dev Digest 191: Malware interviews, EU ❤️ Open Source and Skilled Agents](https://www.wearedevelopers.com/magazine/645-dev-digest-191-malware-interviews-eu-open-source-and-skilled-agents)