FREE ACCESS
5,000–10,000 jobs/day
See all jobs on Scoutfield
Search thousands of fresh jobs every day.
Discover
- Fresh listings
- Fast filters
- No subscription required
Create a free account and start exploring right away.
Core Competencies
Role fitCore Competencies
Use this summary to align your resume positioning with the role.
Demonstrates expertise in Microsoft Azure security, including Microsoft Sentinel and Microsoft Defender XDR, with a focus on designing and implementing security controls, automation, and risk assessments. Proficient in developing KQL queries and collaborating with cross-functional teams to enhance cyber resilience.
Highest-signal resume keywords
Microsoft Azure Security EngineeringMicrosoft Sentinel ImplementationMicrosoft Defender XDR ExpertiseKQL Query DevelopmentTechnical Security Assessments
ATS Keywords
Tailor your resumeApplicant Tracking System Keywords
Tip: use these terms in your resume and cover letter to boost ATS matches.
Hard Skills
Azure Security ServicesCloud Security ArchitectureKQL QueriesAutomation with PowerShellREST APIsSecurity Monitoring Use CasesVulnerability RemediationData ConnectorsAnalytics RulesThreat Hunting
Soft Skills
CollaborationTechnical GuidanceProblem-SolvingCommunication
Tools & Technologies
Microsoft Entra IDAzure MonitorLog AnalyticsAzure FunctionsLogic AppsAzure DevOpsGitCI/CDAzure ArcKey Vault
Certifications & Qualifications
Microsoft AZ-500Microsoft SC-200Microsoft SC-100Microsoft SC-300Microsoft AZ-104CISSPCCSPGIAC
Industry Keywords
Cyber SecurityIaaSPaaSHybrid EnvironmentsSecure Development PracticesOperational ReadinessPlatform HardeningControl ValidationIncident ResponseCSPM
Tech Stack
Tools & technologiesAzureCloudCyber SecurityPythonVault
About the role
Key responsibilities & impact- Act as a Subject Matter Expert for Microsoft Azure security, Microsoft Sentinel, Microsoft Defender XDR and associated Microsoft security technologies
- Design, implement and support enterprise security controls across Azure, Microsoft Entra ID and the Microsoft security ecosystem
- Engineer and maintain Microsoft Sentinel capabilities, including data connectors, analytics rules, KQL queries, workbooks, watchlists, automation rules and playbooks
- Design, implement and optimise Microsoft Defender capabilities across Endpoint, Identity, Cloud, Office 365 and Defender XDR
- Develop security monitoring use cases, threat detections and hunting queries aligned to business risks, threat intelligence and MITRE ATT&CK
- Design secure cloud and hybrid architecture patterns and provide technical guidance to projects and engineering teams
- Engineer telemetry and logging solutions using Azure Monitor, Log Analytics, Azure Monitor Agent, Data Collection Rules, custom tables and API integrations
- Design and implement security automation using Logic Apps, Azure Functions, REST APIs, PowerShell and Python
- Perform technical security assessments and review cloud solutions against enterprise security standards and secure-by-design principles
- Implement and maintain cloud security baselines, hardening standards, policy controls and configuration-management practices
- Support vulnerability and configuration-risk remediation across Azure and Microsoft security platforms
- Support cyber incident investigations and provide security expertise during critical incidents and major technology changes
- Produce and maintain high-level designs, low-level designs, engineering standards, operating procedures, support documentation and implementation records
- Lead platform enhancements, proof-of-concepts, migrations, upgrades, troubleshooting and service-improvement activities
- Build platform health monitoring, operational dashboards and KPI/KRI reporting for the Proactive Security function
- Collaborate with Security Operations, Infrastructure, Cloud Engineering, Architecture, Identity and Application teams to strengthen cyber resilience
Requirements
What you’ll need- Proven Azure security engineering experience within a large, complex enterprise environment
- Strong hands-on experience implementing and supporting Azure security services across IaaS, PaaS and hybrid environments
- Practical experience with Microsoft Entra ID security, including Conditional Access, Privileged Identity Management, Identity Protection and hybrid identity controls
- Strong experience with Microsoft Sentinel and Microsoft Defender XDR, including Endpoint, Identity, Cloud and Office 365 security capabilities
- Experience designing and implementing cloud security architecture, platform hardening, technical security controls and security baselines
- Experience onboarding and validating infrastructure, cloud, application, identity and security telemetry
- Experience developing KQL queries, analytics rules, workbooks, automation and threat-hunting content
- Experience conducting technical risk assessments, security-control validation and vulnerability-remediation support
- Experience with REST APIs, PowerShell, Python, automation, enterprise troubleshooting and operational support
- Experience working with Security Operations, Incident Response, Cloud, Infrastructure, Identity and Architecture teams
- Knowledge of Azure Policy, Defender for Cloud, Azure Monitor, Log Analytics, Azure Arc, Key Vault, managed identities, RBAC, landing-zone security and CSPM
- Knowledge of Azure networking and hybrid-cloud security patterns
- Knowledge of Microsoft Entra ID, Microsoft Sentinel, Defender XDR and associated security technologies
- Knowledge of KQL, analytics rules, hunting queries, workbooks, data connectors, DCRs, watchlists, automation rules and playbooks
- Knowledge of Logic Apps, Azure Functions, REST APIs, PowerShell, Python, Azure DevOps, Git, CI/CD and Infrastructure-as-Code concepts
- Knowledge of security architecture, technical risk assessment, platform hardening, vulnerability remediation, control validation, secure development practices and operational readiness
- Degree or equivalent professional experience in Information Technology, Cyber Security, Engineering or a related discipline
- Microsoft AZ-500 and SC-200 certifications strongly preferred
- Microsoft SC-100, SC-300 or AZ-104 certifications desirable
- CISSP, CCSP or relevant GIAC qualifications advantageous
Benefits
Comp & perks- Hybrid working arrangement with 1 day per month reporting to the London office
