1100 IT & Software Developer jobs in the US
Microsoft Sentinel Administrator
$130,000 - 143,000
AIT
Ellipse Road Northwest, Washington
$130,000 - 143,000
Requirements
Must:
- 5+ years of experience in cybersecurity, SIEM administration, security engineering, or SOC engineering.
- 2+ years of practical experience with Microsoft Sentinel.
- Proficient in Kusto Query Language (KQL).
- Experience in configuring data connectors, analytics rules, incidents, workbooks, watchlists, and automation rules within Sentinel.
- Knowledge of integrating Microsoft Sentinel with Microsoft Defender XDR and Microsoft Entra ID.
- Solid understanding of SOC operations, incident response, threat detection, and security monitoring.
- Experience troubleshooting log ingestion and data quality issues.
- Familiarity with Azure security services and cloud-native security monitoring.
- Capable of documenting technical procedures, engineering choices, and operational workflows.
- Strong communication skills with the ability to collaborate with both technical and non-technical stakeholders.
- U.S. citizenship may be required for federal contract support.
Responsibilities
- Administer, configure, and uphold Microsoft Sentinel in a federal or enterprise setting.
- Oversee Sentinel workspaces, data connectors, analytics rules, watchlists, workbooks, automation rules, and playbooks.
- Configure and resolve issues with log ingestion from Microsoft and third-party sources, including Microsoft Defender XDR and other security platforms.
- Create, refine, and manage KQL queries aimed at threat detection, investigative activities, dashboards, and reporting.
- Develop and enhance analytics rules for improved detection accuracy and to minimize false positives.
- Support Security Operations Center (SOC) operations by optimizing alert triage, escalation workflows, case management, and incident response procedures.
- Construct and maintain Microsoft Sentinel workbooks and dashboards for operational and compliance reporting.
- Design and support automation initiatives using Logic Apps, playbooks, and workflow integrations.
- Provide assistance with threat hunting, security investigations, and root cause analysis.
- Integrate Microsoft Sentinel with other Microsoft security solutions when applicable.
- Champion Zero Trust and cloud security monitoring initiatives.
- Document configurations, standard operating procedures, detection logic, playbooks, and changes.
- Participate in change management and security control validation activities.
- Monitor performance, data utilization, retention, and ingestion trends within Sentinel.
- Suggest enhancements to detection coverage, log source onboarding, automation, and SOC maturity.
- Partner with Zvolvant AI and cybersecurity teams to explore AI-enabled security operations capabilities.
Description
We are on the lookout for a Microsoft Sentinel Administrator / Engineer to enhance our cybersecurity posture in a federal environment. This hybrid role necessitates local applicants who can obtain Federal Government Clearance. You will play a vital role in the continuous design, administration, optimization, and advancement of Microsoft Sentinel and its integration within the broader Microsoft security framework. We offer competitive compensation ranging from $130,000 to $143,000 annually, alongside a comprehensive benefits package that includes 401(k), health insurance, dental insurance, and paid time off. Join our dedicated team in Washington, DC, as we work together to strengthen our security landscape.
Something wrong or incorrect with this job? Tell us in the chat 💬 on the right ➡️
You can find DevOps salaries in the United States here.
How many DevOps jobs are in the United States?
Currently, there are 1100 DevOps openings. Check also: Cloud jobs, AWS jobs, Azure jobs, GCP jobs, Kubernetes jobs, Docker jobs, Terraform jobs - all with salary brackets.
Is the US a good place for DevOps?
The US is one of the best countries to work as a DevOps. It has a vibrant startup community, growing tech hubs and, most important: lots of interesting jobs for people who work in tech.
Which companies are hiring for DevOps jobs in the United States?
micro1, Paxyl inc., Infovirtuel, Allied Technical Solutions, CMI Financial Group, DataAnnotation, Baptist Health South Florida among others, are currently hiring for DevOps roles in the United States.
The company with most openings is Jobot as they are hiring for 137 different DevOps jobs in the United States. They are probably quite committed to find good DevOps.
The company with most openings is Jobot as they are hiring for 137 different DevOps jobs in the United States. They are probably quite committed to find good DevOps.