Sysco Logo

Sysco

SIEM Engineer – Microsoft Sentinel

Reposted 4 Days Ago
Be an Early Applicant
In-Office or Remote
8 Locations
Mid level
In-Office or Remote
8 Locations
Mid level
The SIEM Engineer will design and maintain Microsoft Sentinel infrastructure, create KQL queries, and support threat detection and incident response, ensuring compliance reporting and performance monitoring.
The summary above was generated by AI
JOB DESCRIPTION
We are seeking a skilled and motivated SIEM Engineer with deep expertise in Microsoft Sentinel to join our Security Operations team. This role is responsible for designing, implementing, and maintaining our SIEM infrastructure, enabling proactive threat detection, incident response, and compliance reporting. The ideal candidate will have hands-on experience with Sentinel, KQL (Kusto Query Language), and Azure-native security tools.

Responsibilities: 

SIEM Engineering & Administration 

  • Design, deploy, and maintain Microsoft Sentinel SIEM infrastructure. 

  • Develop and optimize data connectors for log ingestion from cloud, on-prem, and hybrid sources. 

  • Manage and tune analytic rules, workbooks, playbooks, and automation workflows. 

Threat Detection & Response Enablement 

  • Create and refine KQL queries for custom detection use cases. 

  • Collaborate with Threat Intelligence and SOC teams to operationalize threat indicators and behavioral analytics. 

  • Support incident investigation through log enrichment and correlation. 

Monitoring & Performance 

  • Ensure high availability and performance of Sentinel components. 

  • Monitor ingestion costs and optimize data retention policies. 

  • Implement health checks and alerting for SIEM infrastructure. 

Compliance & Reporting 

  • Assist in generating reports for regulatory and audit requirements. 

  • Maintain documentation for SIEM architecture, data flows, and detection logic. 

Collaboration & Continuous Improvement 

  • Work closely with cloud, infrastructure, and application teams to onboard new log sources. 

  • Stay current with Microsoft Sentinel roadmap and security best practices.

  • Participate in purple team exercises and detection gap analysis. 

Qualifications: 

  • 3 years of experience in SIEM engineering or security operations. 

  • 2 years of hands-on experience with Microsoft Sentinel

  • Proficiency in KQL (Kusto Query Language)

  • Strong understanding of Azure Security Center, Defender for Cloud, Log Analytics, and related services. 

  • Experience with incident responsethreat detection, and log management

  • Familiarity with MITRE ATT&CKNIST, or other security frameworks. 

  • Microsoft certifications (e.g., SC-200, AZ-500). 

  • Experience with Azure Logic AppsMicrosoft Defender XDR, or M365 security tools

  • Scripting experience (PowerShell, Python) for automation. 

  • Exposure to SOAR platforms and playbook development. 

Benefits:

  • This is a hybrid position with on-site presence required based on business needs

  • Private Medical Insurance

  • Asociacion Solidarista

  • Life Insurance

  • Personal Day Off

Note: Only candidates with Costa Rican nationality or valid immigration status will be considered; applicants residing outside Costa Rica will not be considered, and relocation is not available

Top Skills

Azure Logic Apps
Azure Security Center
Defender For Cloud
Kql
Log Analytics
M365 Security Tools
Microsoft Defender Xdr
Microsoft Sentinel
Powershell
Python

Similar Jobs

4 Days Ago
In-Office or Remote
8 Locations
Mid level
Mid level
Food • Logistics
The SIEM Engineer will design, implement, and maintain Microsoft Sentinel infrastructure, facilitate threat detection and response, and ensure compliance reporting.
Top Skills: Azure Logic AppsAzure Security CenterDefender For CloudKqlLog AnalyticsM365 Security ToolsMicrosoft Defender XdrMicrosoft SentinelPowershellPython
49 Minutes Ago
Remote
Canada
201K-271K Annually
Senior level
201K-271K Annually
Senior level
Artificial Intelligence • Cloud • Consumer Web • Productivity • Software • App development • Data Privacy
Lead a team of engineers in the Multi-Product Enablement initiative, managing execution on business objectives, technical direction, and team career development. Ensure high-quality engineering practices and operations.
Top Skills: Agile ProcessesBilling SystemsCloud-Based SolutionsEntitlement ManagementIdentity ModelsPayments SystemsSoftware DevelopmentSubscription Commerce
49 Minutes Ago
Remote
Canada
201K-271K Annually
Senior level
201K-271K Annually
Senior level
Artificial Intelligence • Cloud • Consumer Web • Productivity • Software • App development • Data Privacy
Lead a team of engineers to enhance onboarding and activation for Teams users at Dropbox, focusing on software quality and elite execution of critical business objectives.
Top Skills: Agile

What you need to know about the Los Angeles Tech Scene

Los Angeles is a global leader in entertainment, so it’s no surprise that many of the biggest players in streaming, digital media and game development call the city home. But the city boasts plenty of non-entertainment innovation as well, with tech companies spanning verticals like AI, fintech, e-commerce and biotech. With major universities like Caltech, UCLA, USC and the nearby UC Irvine, the city has a steady supply of top-flight tech and engineering talent — not counting the graduates flocking to Los Angeles from across the world to enjoy its beaches, culture and year-round temperate climate.

Key Facts About Los Angeles Tech

  • Number of Tech Workers: 375,800; 5.5% of overall workforce (2024 CompTIA survey)
  • Major Tech Employers: Snap, Netflix, SpaceX, Disney, Google
  • Key Industries: Artificial intelligence, adtech, media, software, game development
  • Funding Landscape: $11.6 billion in venture capital funding in 2024 (Pitchbook)
  • Notable Investors: Strong Ventures, Fifth Wall, Upfront Ventures, Mucker Capital, Kittyhawk Ventures
  • Research Centers and Universities: California Institute of Technology, UCLA, University of Southern California, UC Irvine, Pepperdine, California Institute for Immunology and Immunotherapy, Center for Quantum Science and Engineering

Sign up now Access later

Create Free Account

Please log in or sign up to report this job.

Create Free Account