Jobs and Careers
PR

Principal Microsoft Sentinel Services Engineer

Proficio
United Statesfull_timeVerifiedPosted 26 Oct 2023
💰 $140,000/yr

About the role

Proficio is an award-winning managed detection and response (MDR) services provider. We provide 24/7 security monitoring, investigation, alerting and response services to organizations in healthcare, financial services, manufacturing, retail and other industries. Take a video tour of our global network of 24/7 Security Operations Centers (SOCs).

Proficio has been highlighted in Gartner’s Market Guide for Managed Detection and Response Services for the last five consecutive years. MSSP Alert ranks Proficio among the top 250 global Managed Security Services Providers (MSSPs).

We have a track record of innovation. Proficio invented the concept of SOC-as-a-Service. We were the first MSSP to provide automated response services and are the only company in our space with a patent for cyber risk scoring and security posture gap analysis.

Our typical client is a medium to large-sized organization that lacks the in-house resources to address the challenges of a rapidly changing threat landscape. The difficulty of hiring and retaining cybersecurity professionals are widely understood. Our prospective clients are also challenged to effectively harness technology and build hardened processes that reduce the risk of security breaches.

While Proficio has developed a unified service delivery platform designed to meet the needs of the most demanding clients, what sets us apart is the quality and passion of our people. We believe the SOC of the Future will meld the creativity of human intelligence with the power of advanced technologies like AI.

Proficio’s commitment to developing and promoting our team members is unparalleled in our industry. Most of our senior managers were promoted from within.

SUMMARY

Under the direction of our Sentinel Services Manager, the Microsoft Sentinel Services Engineer Principalis a hands on engineer who works to help organize, train, document, process, and optimize the efforts of the Sentinel Managed SIEM team. This role helps train and mentor new staff, works on escalated problems, helps strategize architecture needs, and is the go-to in the Manager’s absence. A critical role in the growth of our Managed Sentinel Service Offering, this role will be deeply technically focused and have exceptional visibility to upper management.

Responsibilities

  • Demonstrated proficiency in utilizing Microsoft Sentinel.
  • In-depth knowledge of SOC standards and ensuring their synchronization with event logging.
  • Skilled in drafting detailed SIEM use case documentation.
  • Familiarity with ServiceNow Knowledge Management or equivalent platforms preferred.
  • Exceptional teamwork capabilities, experienced in managing virtual teams and international clients.
  • Competence in automation technologies, including Azure DevOps and Azure Functions.
  • Practical experience with Jupyter Notebooks and Threat Hunting.
  • Knowledge of CMMC 2.0 and NIST 800-171 rev2 standards.
  • Proven track record of identifying security requirements, formulating and executing solutions, and upholding Azure security protocols and norms.
  • Effective collaboration with stakeholders to develop holistic strategies for service enhancement, cost minimization, and deployment protocols.
  • Contribute to the creation of critical reporting metrics and high-level presentations to promote awareness and backing for new feature and product launches.
  • Engage in, and possibly spearhead, initiatives assessing novel technologies or services, encompassing industry analysis, leading pilot studies, and advising management on valuable investments.
  • Maintain currency with MSFT Sentinel updates, disseminate advantageous updates to clients, and identify advanced preview opportunities for forefront customers.
  • Utilize threat intelligence resources and comprehensive security systems to identify vulnerabilities, conceive and implement countermeasures, and fully support the architecture and operation of these solutions.
  • Coordinate and synchronize present and prospective security infrastructures, policies, and controls with regional regulatory stipulations for clients, including during mergers and acquisitions.
  • Formulate and execute customized strategies providing ongoing value to clients during incident investigations, report examinations, and escalation procedures. Create or revise existing techni

Apply for this role

Generate a tailored application kit with a matched cover letter, interview prep, and CV highlights — in under 60 seconds.

Apply Now →Generate Application Kit

Free account required — sign up in 30s

Company

Proficio

View company profile →