Microsoft Sentinel Engineer
<b>Requirements:</b>
<ul><li>I have a minimum of 3 years of experience as a Microsoft Sentinel or SIEM Engineer.</li><li>I possess a strong technical background across Microsoft 365, Azure, networking, and cybersecurity.</li><li>I have hands-on experience with KQL, PowerShell, and ideally Python.</li><li>I have proven experience automating processes using Logic Apps, Playbooks, or Terraform.</li><li>I understand encryption, data protection, and incident response.</li><li>I am a confident communicator, capable of working in client-facing scenarios.</li><li>I hold certifications in one or more of the following:</li><li>- SC-200 (Security Operations Analyst)</li><li>- AZ-500 (Azure Security Engineer)</li><li>- SC-100 (Cybersecurity Architect – highly desirable)</li><li>- CompTIA Security+, CISSP, or Ethical Hacker</li></ul>
<b>Responsibilities:</b>
<ul><li>I will design, configure, and deliver Sentinel SIEM solutions for enterprise clients.</li><li>I will develop and optimise automation rules, playbooks, and runbooks using Logic Apps and Power Automate.</li><li>I will write and fine-tune Kusto Query Language (KQL) queries to analyze and visualize raw security data.</li><li>I will integrate third-party tools (firewalls, IAM, telemetry) into Sentinel.</li><li>I will use MITRE ATT&CK to anticipate and counter adversarial activity.</li><li>I will apply cost-optimisation principles (data tiering, filtering).</li><li>I will collaborate with security architects to improve internal policies and ensure ISO 27001 alignment.</li><li>I will act as an escalation point within the SOC and mentor junior engineers.</li></ul>
<b>Technologies:</b>
<ul><li>Architect</li><li>Azure</li><li>IAM</li><li>Microsoft 365</li><li>PowerShell</li><li>Python</li><li>Security</li><li>Terraform</li><li>Office 365</li><li>Cloud</li><li>DevOps</li></ul>
<p><b>More:</b></p>
<p>We are a rapidly growing cybersecurity team within a specialist Microsoft consultancy, which is expanding quickly across the UK and globally. As a Microsoft Sentinel Engineer, I will take ownership of advanced security projects and help strengthen our clients' security operations. This role requires a combination of engineering depth and client interaction, perfect for individuals who enjoy both hands-on work and architectural thinking. By joining our team, I will have the opportunity to work in a fast-growing division with real progression opportunities and collaborate with senior leadership in a flat structure. This fully remote role allows for flexible working and global team collaboration.</p>
<p>last updated 12 week of 2026</p>