Apply

Ready to go for it?

AI Apply speeds things up—apply directly if you prefer.

FREE ACCESS
5,000–10,000 jobs/day
Scoutfield Logo

See all jobs on Scoutfield

Search thousands of fresh jobs every day.

Discover
  • Fresh listings
  • Fast filters
  • No subscription required
Create a free account and start exploring right away.
Integrity360

Security Engineer

Integrity360

. Onboard clients to the managed security service with Microsoft Sentinel at the centre .

Posted 10/5/2026full-timeMadrid • SpainMid-LevelSeniorWebsite

Core Competencies

Role fit
Core Competencies

Use this summary to align your resume positioning with the role.

Demonstrates expertise in deploying and configuring Microsoft Sentinel, including onboarding log sources and integrating security solutions. Proficient in technical documentation and collaboration with cross-functional teams to ensure effective security operations.

Highest-signal resume keywords
Microsoft Sentinel ConfigurationKusto Query LanguageLog Analytics WorkspacesMicrosoft Defender XDR IntegrationSIEM Operations

ATS Keywords

Tailor your resume
Applicant Tracking System Keywords

Tip: use these terms in your resume and cover letter to boost ATS matches.

Hard Skills
Microsoft SentinelData Collection RulesLog Source OnboardingData TransformationTroubleshootingTechnical Design DocumentationIngestion FilteringAPIsCustom Log ParsersAutomation Using Bicep
Soft Skills
Written CommunicationVerbal CommunicationIndependent WorkCollaboration
Tools & Technologies
Azure Monitor AgentSyslogCEFPowerShellAzure CLILogic AppsTerraform
Certifications & Qualifications
Microsoft SC-200AZ-500SC-500SC-100
Industry Keywords
MSSPMDRSecurity Operations CentreDetection EngineeringMITRE ATT&CK

Tech Stack

Tools & technologies
AzureCloudTerraform

About the role

Key responsibilities & impact
  • Onboard clients to the managed security service with Microsoft Sentinel at the centre
  • Configure and integrate Sentinel environments
  • Onboard and validate log sources
  • Prepare deployments for monitoring and operational handover to the Security Operations Centre
  • Configure Sentinel workspaces, content solutions, data connectors, analytics rules, automation rules, watchlists and workbooks
  • Run technical discovery sessions covering log sources, connectivity, data volumes, retention, dependencies and priorities
  • Onboard Microsoft, third-party, cloud, network, identity and application log sources using Azure Monitor Agent, Data Collection Rules, APIs, syslog, CEF and custom connectors
  • Design and implement data filtering and transformation
  • Validate ingestion, parsing, field mapping, timestamps, health and coverage; troubleshoot issues
  • Tune analytics rules, alert logic and incident generation with SOC and detection engineering teams
  • Onboard and integrate Microsoft Defender XDR workloads
  • Produce high-level designs, implementation plans, configuration records, test evidence, runbooks and handover documentation
  • Coordinate with clients, project managers, architects, SOC analysts and service teams
  • Apply engineering standards, peer review and change control; improve onboarding templates and procedures
  • Support troubleshooting and remediation during onboarding and early-life support
  • Manage onboarding activities from discovery and design through implementation, testing, documentation and handover

Requirements

What you’ll need
  • Hands-on experience deploying, configuring or supporting Microsoft Sentinel in production or customer environments
  • Practical knowledge of Sentinel data connectors, Log Analytics workspaces, Azure Monitor Agent, Data Collection Rules, syslog and CEF collection patterns
  • Strong Kusto Query Language skills
  • Experience onboarding and troubleshooting log sources across Microsoft 365, Azure, endpoints, identity, network, security and third-party platforms
  • Understanding of ingestion filtering, data transformation, parsing, normalisation, retention and security telemetry cost implications
  • Experience creating technical designs and delivery documentation, including HLDs, implementation plans, test records and operational handover materials
  • Working knowledge of Microsoft Defender XDR and integration of its workloads with Microsoft Sentinel
  • Understanding of SIEM operations, detection engineering principles, incident workflows and managed security service requirements
  • Strong troubleshooting skills across Azure, APIs, identity, networking and data collection components
  • Confident written and verbal communication skills with technical and non-technical client stakeholders
  • Ability to manage assigned work independently while collaborating with project, architecture, SOC and service teams
  • Occasional travel where required
  • Desired: MSSP, MDR, Security Operations Centre or security-focused professional services experience
  • Desired: custom log parsers, KQL functions, ASIM-compatible content or normalisation patterns
  • Desired: DevOps pipelines and source control for Microsoft Sentinel content
  • Desired: detection as code, infrastructure as code and automation using Bicep, ARM templates, Terraform, PowerShell, Azure CLI, Logic Apps or APIs
  • Desired: Microsoft Sentinel repositories, content management and multi-customer deployment patterns
  • Desired: Microsoft security services integration across tenants, subscriptions or delegated administration models such as Azure Lighthouse
  • Desired: MITRE ATT&CK familiarity
  • Desired qualifications include Microsoft SC-200, AZ-500/SC-500, SC-100, relevant Microsoft Applied Skills or other relevant security/cloud certifications; certifications are beneficial but not essential

Benefits

Comp & perks
  • Learning, development and progression opportunities
  • Training and certification opportunities across Microsoft security technologies
  • Support from an experienced team