Senior Cloud & Incident Response Security Engineer

WideNet Consulting Group

Seattle (WA)

On-site

USD 243,560,000 - 272,214,000

Full time

4 days ago
Be an early applicant

Get more replies from employers

Send a job-specific resume in minutes.

Benefits offered by this job

Health benefits
401K
Employee Assistance Program
Sick time

Job summary

WideNet Consulting Group in Seattle is seeking a Sr. Cybersecurity Engineer specializing in Cloud and Incident Response to strengthen cloud security posture and incident response capabilities.

The role requires onsite work 2-3 days per week with potential PST remote options. You will lead cloud security hardening, SIEM optimization, DLP, and zero-trust initiatives, coordinating with MSPs and internal teams.

Qualifications

  • 7+ years in security engineering or security operations.
  • Direct, demonstrable Microsoft Purview experience across DLP, sensitivity labels, and Insider Risk Management.
  • Deep hands-on Microsoft security stack experience: Sentinel, Defender XDR, Defender for Cloud, Entra ID, Intune.
  • Strong KQL authoring ability, including detection development and investigative hunting.
  • Clear written communication for both technical peers and executive audiences.
  • Azure cloud security depth, including identity, networking, and workload protection.

Responsibilities

  • Harden Azure and multi-cloud environments against benchmarks and cloud security posture findings.
  • Remediate Defender for Cloud findings and drive secure score improvement.
  • Implement workload protection, configuration baselines, and IaC security checks.
  • Address cloud identity and entitlement risk, including overprivileged roles and service principals.
  • Enhance and operationalize incident response playbooks aligned to NIST SP 800-61.
  • Lead investigations across cloud, identity, endpoint, email, and SaaS; coordinate with MSP on escalation and handoff.
  • Tune Microsoft Sentinel for signal quality, cost efficiency, and retention; develop KQL rules and hunting queries.
  • Map detection coverage to MITRE ATT&CK and close gaps; reduce false positives with SOAR automation.
  • Design and deploy Purview DLP policies; implement sensitivity labels and data classification at scale.
  • Advance zero trust maturity across identity, device, network, application, and data pillars.

Skills

Security engineering
KQL
PowerShell
Azure security
Security operations
Executive communication

Tools

Sentinel
Defender XDR
Defender for Cloud
Entra ID
Intune
Purview
Microsoft Graph API
SOAR

Job description

WideNet Consulting Group in Seattle is seeking a Sr. Cybersecurity Engineer specializing in Cloud and Incident Response to strengthen cloud security posture and incident response capabilities.

The role requires onsite work 2-3 days per week with potential PST remote options. You will lead cloud security hardening, SIEM optimization, DLP, and zero-trust initiatives, coordinating with MSPs and internal teams.

Get your free, confidential resume review.
or drag and drop your file here.
Similar jobs

Similar jobs worth comparing

Sr. Cybersecurity Engineer, Cloud and Incident Response
Sr. Cybersecurity Engineer, Cloud and Incident Response

WideNet Consulting Group • Seattle (WA)

On-site
USD 243,560,000 - 272,214,000
Health benefits
401K
Employee Assistance Program
+1
Senior Security Engineer — Incident Response & Cloud Security
Senior Security Engineer — Incident Response & Cloud Security

Conexess Group • Plantation (FL)

On-site
USD 120,000 - 180,000
Senior Cloud Security Engineer & Automation Lead
Senior Cloud Security Engineer & Automation Lead

Novacoast • Salt Lake City (UT)

On-site
USD 100,000 - 130,000
Senior Cloud Security & Incident Response Analyst
Senior Cloud Security & Incident Response Analyst

Ecmc Group • Minneapolis (MN)

Hybrid
USD 115,000 - 125,000
Health & wellness benefits
401(k) with company match
Tuition reimbursement
+2
Lead Cloud Security Engineer & Incident Response
Lead Cloud Security Engineer & Incident Response

Kpaonline • Lafayette (CO)

On-site
USD 110,000 - 130,000
Annual bonus (10%)
Cloud Security Engineer: AWS, SIEM & Incident Response
Cloud Security Engineer: AWS, SIEM & Incident Response

ManTech • Herndon (VA)

On-site
USD 120,000 - 170,000
Cyber Security Incident Response Lead
Cyber Security Incident Response Lead

Astound • Seattle (WA)

On-site
USD 70,000 - 90,000
401k retirement plan with employer match
Medical, dental, vision, life insurance
Paid Time Off/Vacation
+4
Remote Security Systems Admin: Cloud & Incident Response
Remote Security Systems Admin: Cloud & Incident Response

Advanced IT Concepts • Orlando (FL)

On-site
USD 80,000 - 110,000
Senior Security Engineer — Cloud & Incident Response Lead
Senior Security Engineer — Cloud & Incident Response Lead

Crexi • Los Angeles (CA)

On-site
USD 167,000 - 227,000
Health insurance
Dental insurance
Vision insurance
+1
Senior Cloud DFIR Lead - Remote Incident Response
Senior Cloud DFIR Lead - Remote Incident Response

Palo Alto Networks, Inc. • Arizona

Remote
USD 151,000 - 208,000