**Microsoft Sentinel & Microsoft Defender Security Engineer (SIEM/SOC Support) Needed

Job ID: 40548746

Budget: ₹12,500 – ₹37,500 INR

We are looking for an experienced Microsoft Sentinel & Microsoft Defender Security Engineer to provide ongoing support for our SOC/SIEM operations. The ideal candidate should have hands-on experience in security monitoring, incident response, Microsoft security technologies, and enterprise IT environments.
This is a remote freelance opportunity with the possibility of long-term collaboration.



Responsibilities

Monitor, investigate, and validate security incidents using Microsoft Sentinel (SIEM).
Perform endpoint investigation and remediation using Microsoft Defender for Endpoint (MDE).
Analyze security alerts, identify root causes, and recommend remediation actions.
Investigate security threats across Azure and Microsoft 365 environments.
Review logs and perform threat analysis.
Handle security incidents, escalations, and coordinate with internal teams and clients.
Create and maintain incident documentation and remediation recommendations.
Develop or maintain automation/scripts to improve log collection and security workflows.
Support SIEM rule tuning, use case development, and security monitoring improvements.
Perform device audits and validate monitoring configurations.
Update security procedures, documentation, and escalation processes.
Create and manage service desk tickets during security incidents.
Communicate technical issues clearly with both technical and non-technical stakeholders.
Participate in incident response bridge calls and coordinate resolution activities.



Required Skills

Microsoft Sentinel
Microsoft Defender for Endpoint
Microsoft Defender XDR
Azure Security
Microsoft 365 Security
SIEM Monitoring
Incident Response
Threat Hunting
Log Analysis
KQL (Kusto Query Language)
Azure Monitor
Security Operations Center (SOC)
Endpoint Detection & Response (EDR)
Preferred Experience
Experience with one or more of the following is a plus:
LogicMonitor
SolarWinds MSP N-central
PagerDuty
BMC Remedy
IPsoft IPcenter
PowerShell
Automation scripting
Security process documentation



Ideal Candidate

3+ years of experience in SOC/SIEM or Cyber Security Operations.
Strong analytical and troubleshooting skills.
Experience handling critical security incidents.
Ability to prioritize multiple alerts and incidents simultaneously.
Excellent communication and documentation skills.
Comfortable working independently in a client-facing environment.



When Applying

Please include:
Your total experience with Microsoft Sentinel.
Your experience with Microsoft Defender for Endpoint/XDR.
Any Microsoft Security certifications (SC-200, SC-300, AZ-500, SC-100, etc.).
Similar projects you have completed.
Your hourly rate or fixed-price quote.
Your availability and time zone.