LOG IN
SIGN UP
Canary Wharfian - Online Investment Banking & Finance Community.
Sign In
or continue with e-mail and password
Forgot password?
Don't have an account?
Join Canary Wharfian
or continue with e-mail and password
By signing up, you agree to our Terms & Conditions and Privacy Policy.

Sentinel Sr Analyst

ExperiencedNo visa sponsorship
Capgemini logo

at Capgemini

Consultancies

Posted 13 days ago

No clicks

**Sentinel Sr Analyst: Microsoft Sentinel Lead/SecOps Engineer** Drive enterprise SIEM and SOC solutions, leading complex security integrations. Key responsibilities include managing large-scale Microsoft Sentinel deployments, architecting hybrid security architectures, and optimizing detection capabilities using MITRE ATT&CK. Bring 6+ years of cybersecurity experience, with 4+ years in Microsoft Sentinel across enterprise or MSSP environments. Expertise in Azure Security, Detection Engineering, SOAR Automation, and Security Operations is crucial. Proven experience in incident response, stakeholder engagements, and cloud networking. Advance role with preference for Middle East market experience.

Compensation
Not specified

Currency: Not specified

City
Not specified
Country
United Arab Emirates

Full Job Description

Short Description

We are seeking an experienced Microsoft Sentinel Lead / Senior Security Operations Engineer to drive the design, deployment, optimization, and operation of enterprise-scale SIEM and SOC solutions. The ideal candidate will possess deep expertise in Microsoft Sentinel, Azure Security, Detection Engineering, SOAR Automation, and Security Operations, with the ability to lead incident response, stakeholder engagements, and complex security integrations.

Required Skills & Experience

  • 6 to 8 years of cybersecurity experience, preferably with exposure to the Middle East market.
  • 4+ years of hands-on experience with Microsoft Sentinel in enterprise or MSSP environments.
  • Strong expertise in Microsoft Azure security services and architecture.
  • Proven experience managing large-scale SIEM deployments and SOC operations.
  • Advanced knowledge of Azure Logic Apps and security automation.
  • Strong understanding of hybrid security architectures, cloud networking, and log management.
  • Experience with MITRE ATT&CK-based detection engineering.
  • Excellent analytical, reporting, and dashboarding skills.

Preferred Competencies

  • Strong ownership, accountability, and problem-solving skills.
  • Excellent communication and stakeholder management abilities.
  • Ability to simplify complex technical concepts for business audiences.
  • Experience working within SOC L1/L2/L3 operating models and major incident management processes.

SIEM & Security Operations

  • Lead the architecture, implementation, and management of large-scale Microsoft Sentinel environments.
  • Support complex hybrid architectures across multi-cloud, on-premises, multi-tenant, and multi-subscription environments.
  • Ensure SIEM platform health, log ingestion, connector performance, and overall operational excellence.
  • Drive SOC maturity through detection tuning, dashboard optimization, and automation initiatives.
  • Lead major incident investigations, root cause analysis, and escalation management.
  • Act as the primary escalation point for L1/L2 analysts and support BAU SOC operations.
  • Manage ITSM ticket lifecycle and ensure adherence to SLA metrics (TTD, TTR, MTTR).
  • Contribute to governance, reporting, and security review activities.

Security Engineering & Detection

  • Provide advanced expertise in Microsoft Azure security architecture and integrations.
  • Onboard and integrate log sources from Windows/Linux endpoints, network devices, security appliances, and SaaS platforms.
  • Design and optimize MITRE ATT&CK-aligned detection use cases and analytics rules.
  • Leverage Microsoft Defender XDR technologies to enhance threat detection and response capabilities.
  • Develop operational dashboards and executive-level security reports.

Automation & Integrations

  • Design and implement SOAR playbooks using Azure Logic Apps.
  • Integrate Microsoft Sentinel with ITSM platforms, Threat Intelligence feeds, TIP solutions, and Vulnerability Management tools.
  • Troubleshoot cloud, network, and data flow issues impacting security monitoring.

Documentation & Stakeholder Management

  • Create high-quality HLDs, LLDs, architecture diagrams, and operational documentation.
  • Present security findings, recommendations, and reports to technical and executive stakeholders.
  • Act as a trusted advisor, translating technical risks into business-relevant insights.

Sentinel Sr Analyst

Compensation

Not specified

City: Not specified

Country: United Arab Emirates

Capgemini logo
Consultancies

13 days ago

No clicks

at Capgemini

ExperiencedNo visa sponsorship

**Sentinel Sr Analyst: Microsoft Sentinel Lead/SecOps Engineer** Drive enterprise SIEM and SOC solutions, leading complex security integrations. Key responsibilities include managing large-scale Microsoft Sentinel deployments, architecting hybrid security architectures, and optimizing detection capabilities using MITRE ATT&CK. Bring 6+ years of cybersecurity experience, with 4+ years in Microsoft Sentinel across enterprise or MSSP environments. Expertise in Azure Security, Detection Engineering, SOAR Automation, and Security Operations is crucial. Proven experience in incident response, stakeholder engagements, and cloud networking. Advance role with preference for Middle East market experience.

Full Job Description

Short Description

We are seeking an experienced Microsoft Sentinel Lead / Senior Security Operations Engineer to drive the design, deployment, optimization, and operation of enterprise-scale SIEM and SOC solutions. The ideal candidate will possess deep expertise in Microsoft Sentinel, Azure Security, Detection Engineering, SOAR Automation, and Security Operations, with the ability to lead incident response, stakeholder engagements, and complex security integrations.

Required Skills & Experience

  • 6 to 8 years of cybersecurity experience, preferably with exposure to the Middle East market.
  • 4+ years of hands-on experience with Microsoft Sentinel in enterprise or MSSP environments.
  • Strong expertise in Microsoft Azure security services and architecture.
  • Proven experience managing large-scale SIEM deployments and SOC operations.
  • Advanced knowledge of Azure Logic Apps and security automation.
  • Strong understanding of hybrid security architectures, cloud networking, and log management.
  • Experience with MITRE ATT&CK-based detection engineering.
  • Excellent analytical, reporting, and dashboarding skills.

Preferred Competencies

  • Strong ownership, accountability, and problem-solving skills.
  • Excellent communication and stakeholder management abilities.
  • Ability to simplify complex technical concepts for business audiences.
  • Experience working within SOC L1/L2/L3 operating models and major incident management processes.

SIEM & Security Operations

  • Lead the architecture, implementation, and management of large-scale Microsoft Sentinel environments.
  • Support complex hybrid architectures across multi-cloud, on-premises, multi-tenant, and multi-subscription environments.
  • Ensure SIEM platform health, log ingestion, connector performance, and overall operational excellence.
  • Drive SOC maturity through detection tuning, dashboard optimization, and automation initiatives.
  • Lead major incident investigations, root cause analysis, and escalation management.
  • Act as the primary escalation point for L1/L2 analysts and support BAU SOC operations.
  • Manage ITSM ticket lifecycle and ensure adherence to SLA metrics (TTD, TTR, MTTR).
  • Contribute to governance, reporting, and security review activities.

Security Engineering & Detection

  • Provide advanced expertise in Microsoft Azure security architecture and integrations.
  • Onboard and integrate log sources from Windows/Linux endpoints, network devices, security appliances, and SaaS platforms.
  • Design and optimize MITRE ATT&CK-aligned detection use cases and analytics rules.
  • Leverage Microsoft Defender XDR technologies to enhance threat detection and response capabilities.
  • Develop operational dashboards and executive-level security reports.

Automation & Integrations

  • Design and implement SOAR playbooks using Azure Logic Apps.
  • Integrate Microsoft Sentinel with ITSM platforms, Threat Intelligence feeds, TIP solutions, and Vulnerability Management tools.
  • Troubleshoot cloud, network, and data flow issues impacting security monitoring.

Documentation & Stakeholder Management

  • Create high-quality HLDs, LLDs, architecture diagrams, and operational documentation.
  • Present security findings, recommendations, and reports to technical and executive stakeholders.
  • Act as a trusted advisor, translating technical risks into business-relevant insights.