UltraViolet Cyber Logo

UltraViolet Cyber

Senior Microsoft Sentinel Engineer

Posted 8 Days Ago
Be an Early Applicant
Remote
Expert/Leader
Remote
Expert/Leader
Responsible for architecting, deploying, and maintaining Microsoft Sentinel and related security tools; optimizing threat detection, response, and collaborating with teams on security incidents.
The summary above was generated by AI

Make a difference here.


UltraViolet Cyber is a leading platform-enabled unified security operations company providing a comprehensive suite of security operations solutions. Founded and operated by security practitioners with decades of experience, the UltraViolet Cyber security-as-code platform combines technology innovation and human expertise to make advanced real-time cybersecurity accessible for all organizations by eliminating risks of separate red and blue teams.


By creating continuously optimized identification, detection, and resilience from today’s dynamic threat landscape, UltraViolet Cyber provides both managed and custom-tailored unified security operations solutions to the Fortune 500, Federal Government, and Commercial clients. UltraViolet Cyber is headquartered in McLean, Virginia, with global offices across the U.S. and in India. 


We are seeking a talented and highly motivated Microsoft Sentinel SIEM Engineer to join our Dedicated Defense group. As a key member of our team, you will be responsible for deploying and maintaining Microsoft Security technologies to enhance threat detection, response, and overall security posture. This is an exciting opportunity for an individual with expertise in major SIEM technologies, aiming to help safeguard critical systems and data from evolving cyber threats. 

What You'll Do:

  • Architect, deploy, and maintain Microsoft Sentinel for SIEM use cases including log ingestion, data normalization, and incident correlation.
  • Manage and optimize Microsoft Defender for Endpoint, Identity, Cloud, M65, and other Defender tools to maximize protection and visibility.
  • Develop custom queries, detection rules, workbooks, and automation playbooks to improve threat detection and response efficiency.
  • Lead the design and implementation of security monitoring, including data connectors, analytics rules, and incident automation.
  • Collaborate with threat analysts and incident response teams to triage, investigate,and respond to security alerts and incidents.
  • Provide technical guidance in security best practices, incident response procedures, and threat hunting using Microsoft security tools.
  • Continuously assess the security landscape and recommend improvements to policies, tools, and configurations.
  • In addition to strong technical acumen, the ideal candidate will bring excellent communication and client-facing skills to collaborate directly with customers, understand their security needs, and deliver tailored solutions that align with their risk posture and compliance requirements.

What You've Done:

  • 10 years of SIEM experience in Splunk, Qradar, Microsoft, and comparable SIEMS • Hands-on experience with other SIEM platforms (Splunk, IBM QRadar, Microsoft Sentinel, etc.) and integrating them with endpoint security tools.
  • Strong understanding of cybersecurity principles, threat detection, and SIEM management.
  • Experience working with Sentinel One Core EDR technology • Proficiency in scripting and automation (Python, PowerShell, etc.).
  • Experience with cloud security (AWS, Azure, GCP) and cloud-native SIEM solutions is a plus.
  • Bachelor’s degree in Computer Science, Information Security, or a related field (or equivalent experience). 
  • 10+ years of experience in cybersecurity in a SOC or security engineering capacity.
  • Proven hands-on expertise with Microsoft Sentinel and Microsoft Defender suite.
  • Deep knowledge of Kusto Query Language (KQL) and building custom analytics rules and workbooks in Sentinel.
  • Strong experience in customer-facing roles.
  • Experience with incident response, threat detection, and threat hunting techniques.
  • Strong understanding of cloud security, especially in Azure environments.
  • Familiarity with MITRE ATT&CK, NIST, and other security frameworks.
  • Experience integrating Sentinel with third-party solutions (e.g., threat intel feeds, ticketing systems).

What We Offer:

  • 401(k), including an employer match of 100% of the first 3% contributed and 50% of the next 2% contributed  
  • Medical, Dental, and Vision Insurance (available on the 1st day of the month following your first day of employment)  
  • Group Term Life, Short-Term Disability, Long-Term Disability  
  • Voluntary Life, Hospital Indemnity, Accident, and/or Critical Illness  
  • Participation in the Discretionary Time Off (DTO) Program  
  • 11 Paid Holidays Annually 

We sincerely thank all applicants in advance for submitting their interest in this position. We know your time is valuable.


UltraViolet Cyber welcomes and encourages diversity in the workplace regardless of race, gender, religion, age, sexual orientation, gender identity, disability, or veteran status. 


If you want to make an impact, UltraViolet Cyber is the place for you! 

Top Skills

AWS
Azure
GCP
Kusto Query Language (Kql)
Microsoft Defender
Microsoft Sentinel
Powershell
Python
SIEM

Similar Jobs

6 Hours Ago
Remote
Hybrid
United States
Mid level
Mid level
Artificial Intelligence • Cloud • Information Technology • Sales • Security • Software • Cybersecurity
The Product Security Consultant opens and manages security product deployments, advises on best practices, and automates solutions for customers. Responsibilities include documentation, scripting, and providing pre-sales support.
Top Skills: AWSGoogle Cloud PlatformGrcIdsIpsAzurePowershellPythonSIEMSQL
9 Hours Ago
Easy Apply
Remote
2 Locations
Easy Apply
157K-217K Annually
Senior level
157K-217K Annually
Senior level
Artificial Intelligence • Fintech • Machine Learning • Social Impact • Software
As a Senior Offensive Security Engineer, you'll build and lead the Offensive Security program, test Upstart's controls, and collaborate with various security teams.
Top Skills: AWSCi/CdEksKubernetesmacOSOktaPython
16 Hours Ago
Remote
USA
110K-180K Annually
Senior level
110K-180K Annually
Senior level
Cloud • Computer Vision • Information Technology • Sales • Security • Cybersecurity
The Sr. Cloud Red Team Engineer emulates threat actors in cloud environments, assesses security, and enhances CrowdStrike's Falcon security capabilities.
Top Skills: .NetAWSC/C++GdbGhidraGoIdaRustWindbg

What you need to know about the Los Angeles Tech Scene

Los Angeles is a global leader in entertainment, so it’s no surprise that many of the biggest players in streaming, digital media and game development call the city home. But the city boasts plenty of non-entertainment innovation as well, with tech companies spanning verticals like AI, fintech, e-commerce and biotech. With major universities like Caltech, UCLA, USC and the nearby UC Irvine, the city has a steady supply of top-flight tech and engineering talent — not counting the graduates flocking to Los Angeles from across the world to enjoy its beaches, culture and year-round temperate climate.

Key Facts About Los Angeles Tech

  • Number of Tech Workers: 375,800; 5.5% of overall workforce (2024 CompTIA survey)
  • Major Tech Employers: Snap, Netflix, SpaceX, Disney, Google
  • Key Industries: Artificial intelligence, adtech, media, software, game development
  • Funding Landscape: $11.6 billion in venture capital funding in 2024 (Pitchbook)
  • Notable Investors: Strong Ventures, Fifth Wall, Upfront Ventures, Mucker Capital, Kittyhawk Ventures
  • Research Centers and Universities: California Institute of Technology, UCLA, University of Southern California, UC Irvine, Pepperdine, California Institute for Immunology and Immunotherapy, Center for Quantum Science and Engineering

Sign up now Access later

Create Free Account

Please log in or sign up to report this job.

Create Free Account