Cyber Security Engineer
Indexed description
Microsoft Security Engineer (Azure)
Overview
We are seeking an experienced Microsoft Security Engineer with deep expertise across the Microsoft Security ecosystem to design, implement and optimise enterprise security solutions within Azure and Microsoft 365 environments.
The successful candidate will play a key role in delivering cloud security architecture, SIEM/XDR platforms, security automation and identity protection across complex enterprise environments. You will work closely with Security Operations, Infrastructure, Cloud and Architecture teams to strengthen security posture, improve detection and response capabilities, and support regulatory compliance.
This is an excellent opportunity for a Microsoft Security specialist with strong Azure experience who enjoys building modern security platforms using automation and Infrastructure as Code.
Key Responsibilities
- Design, implement and manage Microsoft security solutions across Azure and Microsoft 365.
- Deploy, configure and optimise Microsoft Sentinel as the organisation's SIEM platform.
- Engineer and maintain Microsoft Defender XDR, including:
- Defender for Endpoint
- Defender for Identity
- Defender for Office 365
- Defender for Cloud
- Defender for Cloud Apps
- Develop advanced detection rules, analytics, hunting queries and incident response playbooks using KQL.
- Build SOAR solutions using Azure Logic Apps and Azure Functions to automate security operations.
- Configure and integrate security telemetry from Azure, Microsoft 365 and third party platforms into Microsoft Sentinel.
- Design secure Azure environments aligned with Microsoft security best practices.
- Implement Microsoft Purview capabilities including Data Loss Prevention (DLP), Information Protection and Insider Risk Management.
- Manage Microsoft Intune and Endpoint Security policies across enterprise environments.
- Design and implement Identity and Access Management solutions using Microsoft Entra ID (Azure AD).
- Develop Infrastructure as Code solutions using Terraform, Bicep and ARM templates.
- Build secure CI/CD deployment pipelines using Azure DevOps and GitHub Actions.
- Support multi-tenant security environments and Azure Lighthouse deployments where required.
- Produce technical documentation, security standards and implementation guides.
- Work closely with Security Operations, Infrastructure, Architecture and Compliance teams to improve organisational security maturity.
- Ensure solutions align with ISO 27001, NIST, GDPR and Microsoft security best practices.
Required Skills & Experience
Essential
- Strong experience implementing Microsoft Sentinel in enterprise environments.
- Hands-on experience across the Microsoft Defender XDR suite.
- Excellent knowledge of Azure security services and cloud security architecture.
- Experience configuring Microsoft Purview security and compliance solutions.
- Strong Microsoft Intune administration and endpoint security experience.
- Experience designing Identity and Access Management solutions using Microsoft Entra ID.
- Strong Kusto Query Language (KQL) skills.
- Experience creating detection rules, workbooks, hunting queries and analytics.
- Experience building SOAR workflows using Azure Logic Apps.
- Knowledge of Azure Functions for security automation.
- Experience integrating third party security platforms into Microsoft Sentinel.
- Infrastructure as Code experience using Terraform and/or Azure Bicep.
- Experience with Azure DevOps and GitHub Actions.
- Good understanding of Azure Resource Manager (ARM), REST APIs and Service Principals.
- Knowledge of cloud security frameworks and security architecture.
- Excellent troubleshooting and analytical skills.
- Strong stakeholder engagement and communication skills.
Desirable Experience
- Multi-cloud security experience across Azure and AWS.
- Azure Lighthouse and multi-tenant security management.
- MSSP or Security Operations Centre (SOC) experience.
- Security monitoring and incident response.
- Threat intelligence integration.
- Event Hub integrations.
- Cloudflare, Wiz or other third-party security platform integrations.
- DevSecOps experience.
Create a free Caio profile to unlock more results and save your role and location preferences.
Unlock free search