FREE ACCESS
5,000–10,000 jobs/day
See all jobs on Scoutfield
Search thousands of fresh jobs every day.
Discover
- Fresh listings
- Fast filters
- No subscription required
Create a free account and start exploring right away.

Security Engineer
Integrity360. Deliver end-to-end onboarding of client Microsoft Sentinel environments into the MSSP service .
Core Competencies
Role fitCore Competencies
Use this summary to align your resume positioning with the role.
Demonstrates expertise in onboarding and configuring Microsoft Sentinel environments, including data connectors and analytics rules, while ensuring effective communication and collaboration with technical and non-technical stakeholders. Proficient in troubleshooting and optimizing security telemetry and incident workflows within managed security services.
Highest-signal resume keywords
Microsoft Sentinel ConfigurationKusto Query LanguageMicrosoft Defender XDR IntegrationLog Source OnboardingSIEM Operations Understanding
ATS Keywords
Tailor your resumeApplicant Tracking System Keywords
Tip: use these terms in your resume and cover letter to boost ATS matches.
Hard Skills
Microsoft SentinelData ConnectorsLog Analytics WorkspacesAzure Monitor AgentData Collection RulesIngestion FilteringData TransformationCustom Log ParsersDetection as CodeInfrastructure as Code
Soft Skills
Written CommunicationVerbal CommunicationIndependent WorkCollaboration
Tools & Technologies
Microsoft 365AzureAPIsNetworkingSecurity Operations Centre
Certifications & Qualifications
SC-200AZ-500SC-500SC-100
Industry Keywords
MSSPMDR ProviderDetection EngineeringIncident WorkflowsMITRE ATT&CK
Tech Stack
Tools & technologiesAzureCloud
About the role
Key responsibilities & impact- Deliver end-to-end onboarding of client Microsoft Sentinel environments into the MSSP service
- Configure Sentinel workspaces, content solutions, data connectors, analytics rules, automation rules, watchlists and workbooks
- Run technical discovery sessions covering log sources, connectivity, data volumes, retention, dependencies and priorities
- Onboard Microsoft, third-party, cloud, network, identity and application log sources using supported collection methods
- Design and implement data filtering and transformation to improve signal quality and control ingestion costs
- Validate ingestion, parsing, field mapping, timestamps, health and coverage, and troubleshoot issues
- Tune analytics rules, alert logic and incident generation with SOC and detection engineering teams
- Onboard and integrate Microsoft Defender XDR workloads, including Defender for Endpoint, Defender for Identity, Defender for Office 365 and Defender for Cloud Apps
- Produce high-level designs, implementation plans, configuration records, test evidence, operational runbooks and handover documentation
- Coordinate with clients, project managers, architects, SOC analysts and service teams
- Apply engineering standards, peer review and change control, and improve onboarding templates and procedures
- Support troubleshooting and remediation during onboarding and early-life support
- Undertake occasional travel for client delivery
- Manage onboarding activities from discovery and design through implementation, testing, documentation and handover; report to the Head of Cloud Security & Microsoft Security Services
Requirements
What you’ll need- Hands-on experience deploying, configuring or supporting Microsoft Sentinel in production or customer environments
- Practical knowledge of Sentinel data connectors, Log Analytics workspaces, Azure Monitor Agent, Data Collection Rules, syslog and CEF collection patterns
- Strong Kusto Query Language skills
- Experience onboarding and troubleshooting log sources across Microsoft 365, Azure, endpoints, identity, network, security and third-party platforms
- Understanding of ingestion filtering, data transformation, parsing, normalisation, retention and security telemetry cost implications
- Experience creating technical designs and delivery documentation, including HLDs, implementation plans, test records and operational handover materials
- Working knowledge of Microsoft Defender XDR and its integration with Microsoft Sentinel
- Understanding of SIEM operations, detection engineering principles, incident workflows and managed security service requirements
- Strong troubleshooting skills across Azure, APIs, identity, networking and data collection components
- Confident written and verbal communication skills with technical and non-technical client stakeholders
- Ability to manage assigned work independently while collaborating with project, architecture, SOC and service teams
- Experience with MSSP, MDR provider, Security Operations Centre or security-focused professional services team preferred
- Experience with custom log parsers, KQL functions, ASIM-compatible content or normalisation patterns preferred
- Experience with DevOps pipelines, source control, detection as code, infrastructure as code and automation preferred
- Familiarity with MITRE ATT&CK preferred
- Microsoft security certifications such as SC-200, AZ-500/SC-500 or SC-100 desired but not required
Benefits
Comp & perks- Learning, development and progression opportunities
- Training and certification opportunities across Microsoft security technologies
- Support from an experienced team