Enable job alerts via email!

Senior Microsoft Sentinel / SIEM Engineer

JR United Kingdom

Kingston upon Hull

Remote

GBP 85,000

Full time

6 days ago
Be an early applicant

Boost your interview chances

Create a job specific, tailored resume for higher success rate.

Job summary

Join a leading cybersecurity consultancy as a Senior Microsoft Sentinel / SIEM Engineer, fully remote. This role involves working with a global Microsoft partner to enhance cyber defense capabilities and requires expertise in Microsoft's security frameworks and complex log integration. Collaborate with top industry professionals and gain direct access to Microsoft Sentinel's product roadmap.

Benefits

Direct access to Microsoft Sentinel product teams
Opportunity to work on real-world nation-state attack detection
Flexible remote work culture
Career growth and development opportunities

Qualifications

  • Experience with complex Microsoft Sentinel solutions.
  • Scripting skills in PowerShell and Python are crucial.
  • Understanding of security telemetry across various layers.

Responsibilities

  • Own and optimize enterprise-wide log onboarding into Microsoft Sentinel.
  • Collaborate with incident response teams during live threats.
  • Develop advanced detection capabilities in partnership with Microsoft.

Skills

Microsoft Sentinel integration
cyber threat detection
log ingestion
PowerShell
Python
REST APIs
KQL

Tools

Microsoft Sentinel
Azure
AWS
GCP
Defender
Carbon Black
Okta

Job description

Social network you want to login/join with:

Senior Microsoft Sentinel / SIEM Engineer, Kingston upon Hull, East Yorkshire

Client: Cloud Decisions

Location: Kingston upon Hull, East Yorkshire, United Kingdom

Job Category: Other

EU work permit required: Yes

Job Views: 3

Posted: 31.05.2025

Expiry Date: 15.07.2025

Job Description:

Job Title:

To £85,000 + Benefits + Microsoft

Fully Remote, UK

(Global Microsoft Managed MISA Partner)

+ complex Sentinel Engineering/Integration

The Opportunity

This is a standout opportunity for a Microsoft Sentinel expert to step into a high-impact, technically advanced role with a global security Microsoft powerhouse.

You'll be joining a Microsoft managed global partner, a prominent MISA member, a team with Security MVPs, and a Microsoft Verified Safe XDR Solution Partner, and a trusted Security Depth Partner.

This role provides unparalleled access to Microsoft’s security product roadmap, security previews, and frontline support.

You will work at the forefront of cyber defense, directly involved in investigations involving nation-state threat actors (including IR, CH, and NK based campaigns), and refining your skills in enterprise-scale log ingestion and customized Sentinel integration engineering, with opportunities to learn and handle complex logs from various cloud and data sources.

The Role

You will own and optimize enterprise-wide log onboarding into Microsoft Sentinel – deploying standard and custom connectors, Function Apps, and parsers to build tailored SIEM solutions that enhance threat detection and response.

  • Log ingestion at scale across hybrid and multi-cloud environments
  • Enhance custom Function Apps and ingestion pipelines
  • Parse, normalize, and optimize log telemetry for accuracy and cost efficiency
  • Collaborate with IR teams during real attacks to tune rules based on live threat activity
  • Work closely with Microsoft teams to develop advanced detection capabilities
  • Contribute to internal knowledge base and engineering standards
Requirements
  • Experience building and integrating complex Microsoft Sentinel solutions at SMC and enterprise levels
  • Understanding of security telemetry across identity, endpoint, cloud, and network layers
  • Experience with SIEM content development, including KQL, analytics rules, and custom data connectors
  • Scripting and engineering skills in Python, PowerShell, APIs, and Function Apps
  • Background in cyber threat detection, incident response, or DFIR is advantageous
  • Ability to work effectively in fast-paced, customer-facing environments
Technical Skills
  • PowerShell, Python, REST APIs
  • Log ingestion and parsing across platforms (Azure, AWS, GCP, M365, Defender, Entra, Copilot, Carbon Black, Okta, Tier 1 Network vendors)
  • Knowledge of MITRE ATT&CK, threat detection frameworks, IOC enrichment
  • Problem-solving skills and resourcefulness
  • Sentinel/Log Analytics Cost Management and Data Optimization
Benefits
  • Direct access to Microsoft Sentinel product teams and early feature previews
  • Involvement in real-world nation-state attack detection
  • Opportunity to develop Sentinel expertise
  • Part of a Microsoft Security elite MISA and Depth partner
  • Exposure to multi-cloud detection and advanced security automation
  • Fully remote, flexible work culture with global collaboration
  • Recognition, career growth, and development within a respected security consultancy
Get your free, confidential resume review.
or drag and drop a PDF, DOC, DOCX, ODT, or PAGES file up to 5MB.

Similar jobs

Senior Microsoft Sentinel / SIEM Engineer

JR United Kingdom

Lincoln

Remote

GBP 60,000 - 90,000

5 days ago
Be an early applicant

Senior Microsoft Sentinel / SIEM Engineer

JR United Kingdom

Hemel Hempstead

Remote

GBP 70,000 - 100,000

5 days ago
Be an early applicant