Senior SOC Engineer - Azure Defender XDR

CPX

Abu Dhabi Emirate

On-site

AED 320,000 - 520,000

Full time

14 days+
Application generator

An application made for this job — a tailored resume and cover letter that speak straight to the posting.

Get past ATS filters

Job summary

CPX is seeking a Senior SOC Engineer specializing in Azure Defender XDR and Sentinel SIEM management to deliver premier SOC services. Responsibilities include onboarding log sources, optimizing telemetry, and maintaining SIEM performance according to best practices within a fast-paced SOC environment.

The role requires hands-on expertise with Sentinel SIEM, MS Defender, and Azure Logic Apps, plus strong collaboration with customers and cross-functional teams.

Qualifications

  • Minimum 6-8 years of experience in SOC operations.
  • Significant experience in Sentinel SIEM management.
  • Degree or equivalent in a related field.

Responsibilities

  • Sentinel SIEM management within the SOC environment.
  • Govern and on-board log sources with Sentinel.
  • Diagnose and resolve log source issues for cloud and network infra.
  • Enhance telemetry and data collection, correlation, and reporting.
  • Automate SOC operations using Azure Logic Apps.
  • Provide regular, accurate reports on Sentinel services and SOC operations.

Skills

Sentinel SIEM
MS Defender
Cloud & network tech
Azure Logic Apps
SOC operations
Cybersecurity principles
Problem solving
Customer collaboration
Written & verbal communication

Education

Degree in computer science/IT/Cybersecurity or related

Tools

Azure Logic Apps
Sentinel SIEM

Job description

The Senior SOC Engineer, Azure Defender XDR, is a critical role responsible for delivering SIEM management services, particularly focusing on Sentinel, within the Security Operations Center (SOC). This role encompasses onboarding new log sources, enhancing and optimizing telemetry, ensuring system updates, resolving issues, and maintaining SIEM performance according to best practices. Reporting to the SOC Engineering & Architecture Manager, the SOC Engineer, Sentinel, is a professional with a solid foundation in SOC operations.

Responsibilities
  • Sentinel SIEM management services within the SOC environment.
  • Govern SOC critical log sources, ensuring their proper functionality and integration with Sentinel SIEM.
  • Log source issues, coordinate with customers to diagnose and resolve them in a timely manner and optimize telemetry within the Sentinel environment to improve data collection, correlation, and reporting.
  • Enhance Automation and orchestration for SOC Operations using Azure Logic Apps.
  • The performance of the Azure XDR stack (Sentinel & Defender) according to established best practices.
  • In continuous process improvements to increase SOC efficiency and effectiveness.
  • Regular and accurate reports on Sentinel services and SOC operations to relevant stakeholders.
Skills
  • Knowledge and hands-on experience with Sentinel SIEM and other related technologies such as MS Defender.
  • Understanding of cloud and network technologies, essential for efficient log source onboarding.
  • Technical proficiency in SOC Automation using Azure Logic Apps.
  • Technical capabilities in a complex, fast-paced SOC environment.
  • To diagnose and troubleshoot log source issues related to cloud and network infrastructures.
  • Understanding of SOC operations, cybersecurity principles, and best practices.
  • Problem-solving skills and the ability to make decisions under pressure.
  • To collaborate effectively with a variety of team members, including interfacing with customers to resolve issues.
  • Proficiency in written and verbal communication
Certifications
  • Must have:
  • in SC-200
  • in AZ 500
  • Optional:
  • Certifications like AWS Certified Solutions Architect, Google Professional Cloud Architect, or Microsoft Certified: Azure Solutions Architect Expert.
  • Certifications such as CCNA or CCNP are advantageous.
Educational Experience
  • Degree in computer science, Information Technology, Cybersecurity, or a related field.
  • Minimum of 6-8 years of experience in SOC operations, with significant experience in Sentinel SIEM management.
  • Experience in a technical role within a SOC or similar cybersecurity environment.
Get your free, confidential resume review.
or drag and drop your file here.
Similar jobs

Similar jobs worth comparing

Senior SOC Engineer - Sentinel SIEM & Azure Defender XDR
Senior SOC Engineer - Sentinel SIEM & Azure Defender XDR

CPX • Abu Dhabi Emirate

On-site
AED 320,000 - 520,000
Lead SOC Engineer (SIEM) (CPX)
Lead SOC Engineer (SIEM) (CPX)

CPX • Abu Dhabi

On-site
AED 300,000 - 420,000
Senior Cyber Security Engineer
Senior Cyber Security Engineer

MEX Group • Dubai

On-site
Cloud Security Specialist
Cloud Security Specialist

CPX • Abu Dhabi

On-site
AED 120,000 - 170,000
Lead SOC Engineer (SIEM) (CPX)
Lead SOC Engineer (SIEM) (CPX)

Showcify • Abu Dhabi

On-site
AED 400,000 - 640,000
Senior Security Engineer - Splunk Sentinel and Cribl
Senior Security Engineer - Splunk Sentinel and Cribl

HELP INFORMATION TECHNOLOGY CONSULTANCY - SOLE PROPRIETORSHIP L.L.C • Dubai

On-site
AED 300,000 - 550,000
Services Delivery Manager
Services Delivery Manager

Noventiq Seven Seas Technology • Dubai

On-site
AED 280,000 - 520,000
Azure Cloud Security Operations Specialist
Azure Cloud Security Operations Specialist

CPX • Abu Dhabi

On-site
AED 120,000 - 170,000
SOC Manager
SOC Manager

Noventiq Seven Seas Technology • Dubai Emirate

On-site
AED 500,000 - 700,000
SOC Manager
SOC Manager

Noventiq Seven Seas Technology • Dubai

On-site
AED 380,000 - 660,000