We are seeking a skilled Microsoft Sentinel Security Engineer with expertise in the Extended Detection and Response (XDR) and E5 Security Stack to join our team in Karachi, Pakistan. This is an onsite position with working hours from 6 PM to 3 AM PKT. The ideal candidate will play a critical role in managing and enhancing our security operations by leveraging Microsoft Sentinel and other advanced security tools to detect, investigate, and respond to threats effectively.
Key Responsibilities:
- Design, implement, and manage Microsoft Sentinel environments to ensure robust security monitoring and incident response capabilities.
- Develop and maintain detection rules, playbooks, and automation workflows within the Microsoft security ecosystem.
- Monitor security alerts and perform thorough investigations to identify potential threats and vulnerabilities.
- Collaborate with cross-functional teams to integrate security solutions across the E5 Security Stack, including Defender for Endpoint, Defender for Identity, and Defender for Office 365.
- Conduct regular tuning and optimization of security alerts to reduce false positives and improve detection accuracy.
- Provide expert guidance on security best practices and assist in incident response activities during security events.
- Stay updated with the latest cybersecurity trends, threats, and technologies related to Microsoft security products and the broader security landscape.
- Document security processes, incident reports, and provide training or knowledge transfer sessions as needed.
Required Qualifications:
- Proven experience working with Microsoft Sentinel and other components of the Microsoft E5 Security Stack.
- Strong understanding of Extended Detection and Response (XDR) concepts and implementation.
- Hands-on experience in developing detection rules, automation playbooks, and security alert management.
- Solid knowledge of cybersecurity principles, threat detection, and incident response methodologies.
- Familiarity with security information and event management (SIEM) systems and security orchestration, automation, and response (SOAR) tools.
- Ability to work onsite in Karachi during the specified shift hours (6 PM to 3 AM PKT).
- Excellent analytical and problem-solving skills with attention to detail.
- Strong communication skills to effectively collaborate with technical teams and stakeholders.
Preferred Qualifications and Benefits:
- Certifications such as Microsoft Certified: Security Operations Analyst Associate or related security certifications will be an advantage.
- Experience with cloud security, particularly within Microsoft Azure environments.
- Opportunity to work with cutting-edge security technologies in a dynamic and supportive environment.
- Exposure to a variety of security challenges and the chance to grow professionally in the cybersecurity field.
This role offers a unique opportunity to contribute to a forward-thinking security team focused on protecting critical assets using Microsoft’s advanced security tools. If you are passionate about cybersecurity and have the required expertise, we encourage you to apply and be part of our mission to enhance organizational security posture.