Security Engineer I

Jobtailor

United States

On-site

USD 85,000 - 130,000

Full time

14 days+

Get more replies from employers

Send a job-specific resume in minutes.

Job summary

Jobtailor is seeking an experienced cybersecurity professional in the United States to assist with threat hunting, incident response, and threat-detection optimization. You will work with Microsoft Defender XDR, Sentinel, and related tools to identify and remediate threats across client environments.

The role involves improving detections, collaborating with security teams, and supporting onboarding of new managed clients onto the Microsoft security stack.

Qualifications

  • Hands-on cybersecurity or IT/Microsoft cloud experience (internships/lab work count).
  • Familiarity with at least two Microsoft security tools (Sentinel, Defender, Entra ID, Intune, Purview).
  • Understanding of core security concepts: SIEM, threat detection, identity management, endpoint protection, MITRE ATT&CK.

Responsibilities

  • Assist in preparing client-ready security reports, executive summaries, and monthly posture reviews.
  • Perform threat hunting in customer environments using Defender XDR, Sentinel, and other tools to identify, investigate, and remediate threats.
  • Help train security operations teams on Microsoft tools and workflows to aid investigations.
  • Collaborate with incident security operations to manage and resolve Microsoft customer incidents in a timely manner.
  • Create and improve threat detection strategies based on intelligence from internal and external sources.
  • Support onboarding of new managed clients onto the Microsoft security stack.
  • Investigate endpoint, identity, and cloud alerts; perform initial root cause analysis and document findings.
  • Support Defender XDR configuration across Defender for Endpoint, Identity, Cloud Apps, and Office 365.
  • Tune detection rules, analytics queries (KQL), and suppression logic to reduce alert fatigue.
  • Participate in incident response efforts, coordinating with senior engineers and client stakeholders.
  • Identify repeatable tasks and propose automation solutions to improve team efficiency.

Skills

Threat hunting
Incident response
Security monitoring
Microsoft security tools
Cloud security
KQL queries
Communication
Problem-solving
Team collaboration
Certification readiness

Tools

Sentinel
Defender
Entra ID
Intune
Purview

Job description

Responsibilities
  • Assist in preparing client-ready security reports, executive summaries, and monthly posture reviews
  • Perform threat hunting exercises within customer environments using Microsoft Defender XDR, Sentinel, and other tools to identify, investigate, and remediate threats
  • Help facilitate training for security operations team on becoming more proficient with Microsoft tools and workflows to aid in investigations
  • Collaborate with the incident security operations teams to manage and resolve incidents for Microsoft customers in a timely manner
  • Create and improve threat detection strategies based on intelligence from both internal and external sources
  • Support onboarding of new managed clients onto the Microsoft security stack
  • Investigate endpoint, identity, and cloud alerts; perform initial root cause analysis and document findings
  • Support Defender XDR configuration across Defender for Endpoint, Identity, Cloud Apps, and Office 365
  • Tune detection rules, analytics queries (KQL), and suppression logic to reduce alert fatigue
  • Participate in incident response efforts, coordinating with senior engineers and client stakeholders
  • Identify repeatable tasks and propose automation solutions to improve team efficiency
Requirements
  • Hand-on experience in cybersecurity, IT, or a Microsoft cloud role (internships and lab experience count)
  • Demonstrated familiarity with at least two Microsoft security tools (Sentinel, Defender, Entra ID, Intune, or Purview)
  • Understanding of core security concepts: SIEM, threat detection, identity management, endpoint protection, and the MITRE ATT&CK framework
  • Experience writing KQL queries — even basic ones — or a clear demonstrated ability and motivation to learn
  • Understanding of cloud security concepts and Azure services
  • Ability to analyze and mitigate security threats and incidents
  • Problem-solving skills and the ability to work under pressure
  • Excellent communication skills to effectively collaborate with technical and non-technical stakeholders
  • Current Microsoft SC-200 certification strongly encouraged
Get your free, confidential resume review.
or drag and drop your file here.
Similar jobs

Similar jobs worth comparing

Security Engineer
Security Engineer

Carex Consulting Group • Madison (WI)

On-site
USD 90,000 - 120,000
Cybersecurity Engineer
Cybersecurity Engineer

Jobtailor • Illinois

On-site
USD 95,000 - 130,000
Senior Security Engineer
Senior Security Engineer

Recru • Houston (TX)

On-site
USD 120,000 - 170,000
Security Engineer
Security Engineer

Phoenix Staff, Inc. • Tempe (AZ)

On-site
USD 85,000 - 110,000
IT Security Operations & Engineering Specialist
IT Security Operations & Engineering Specialist

Tata Consultancy Services • New York (NY)

On-site
USD 100,000 - 120,000
Discretionary Annual Incentive
Medical Coverage
Dental & Vision Coverage
+6
Cyber Security Engineer
Cyber Security Engineer

TEKsystems • Milwaukee (WI)

On-site
USD 90,000 - 130,000
Cybersecurity Engineer
Cybersecurity Engineer

Jobtailor • Washington

On-site
USD 120,000 - 160,000
Security Infrastructure Engineer
Security Infrastructure Engineer

Spotlight Inc. • Saint Paul (MN)

On-site
USD 100,000 - 150,000
Security Engineer
Security Engineer

RouteOne • Farmington Hills (MI)

On-site
USD 85,000 - 115,000
Cybersecurity Analyst
Cybersecurity Analyst

Jobtailor • Cincinnati (OH)

On-site
USD 110,000 - 140,000