Senior Microsoft Sentinel & EDR Consultant

Deloitte France

San Francisco (CA)

On-site

USD 105,000 - 208,000

Full time

3 days ago
Be an early applicant
Application generator

A complete application in a minute — tailored resume and cover letter, ready to send.

Get past ATS filters

Job summary

Deloitte Cyber seeks a Senior Consultant, Sentinel to architect, implement, and optimize Microsoft Sentinel, Defender for Endpoint, and EDR across Azure, AWS, and Google Cloud environments. You will develop Kusto queries, dashboards, and automation playbooks for proactive threat hunting and incident response.

Responsibilities include migrations from legacy SIEM, end-to-end event analysis, and creating reports and lifecycle documentation for clients.

Qualifications

  • 4+ years of experience architecting, designing, and implementing Microsoft Sentinel, endpoint detection and response, or extended detection and response solutions in enterprise environments
  • 4+ years of experience with security information and event management, detection engineering, log management, or security operations in Azure, Amazon Web Services, or Google Cloud Platform environments
  • Experience developing Kusto Query Language queries and functions, analytical rules, dashboards, workbooks, and automation playbooks in Microsoft Sentinel
  • Experience migrating from legacy security information and event management platforms to Microsoft Sentinel, including parser development, custom data source integration, and log collection or forwarder deployment
  • Experience with scripting or automation tools such as PowerShell, Python, or Terraform for security operations or platform administration
  • Ability to travel 50%, on average, based on the work you do and the clients and industries/sectors you serve
  • Limited immigration sponsorship may be available

Responsibilities

  • Architecting, designing, and implementing Microsoft Sentinel, Defender for Endpoint, and EDR solutions across Azure, AWS, and GCP environments
  • Developing KQL queries, functions, dashboards, workbooks, and automation playbooks for monitoring, detection engineering, threat hunting, and incident response
  • Supporting migrations from legacy SIEM platforms to Microsoft Sentinel, including log onboarding, parser development, custom data source integration, log forwarder deployment, and log collection optimization
  • End-to-end event analysis, incident detection, escalation management, false positive tuning, and runbook-driven response activities
  • Implementing advanced Microsoft Sentinel capabilities, including threat intel integration, UEBA, custom dashboards, workbook development, and SaaS connections
  • Creating technical reports, security visuals, operating procedures, and lifecycle documentation for client security and operations

Skills

Work independently
Team collaboration
Written communication
Verbal communication
Attention to detail
Professional relationships
Project leadership
Task prioritization
Interpersonal skills
Meet deadlines
Provide guidance

Education

Bachelor's degree in Computer Science, Cyber Security, Information Security, Engineering, or Information Technology

Tools

PowerShell
Python
Terraform

Job description

Deloitte Cyber seeks a Senior Consultant, Sentinel to architect, implement, and optimize Microsoft Sentinel, Defender for Endpoint, and EDR across Azure, AWS, and Google Cloud environments. You will develop Kusto queries, dashboards, and automation playbooks for proactive threat hunting and incident response.

Responsibilities include migrations from legacy SIEM, end-to-end event analysis, and creating reports and lifecycle documentation for clients.

Get your free, confidential resume review.

or drag and drop your file here.

Similar jobs

Similar jobs worth comparing

Senior Cybersecurity Sentinel Architect & IR Lead
Senior Cybersecurity Sentinel Architect & IR Lead

Deloitte France • Indianapolis (IN)

On-site
USD 105,000 - 208,000
Senior Cyber Sentinel Architect
Senior Cyber Sentinel Architect

Deloitte France • Colorado Springs (CO)

On-site
USD 105,000 - 208,000
Cyber Security Senior Consultant - Sentinel
Cyber Security Senior Consultant - Sentinel

Deloitte France • San Francisco (CA)

On-site
USD 105,000 - 208,000
Cyber Security Senior Consultant - Sentinel
Cyber Security Senior Consultant - Sentinel

Deloitte France • Colorado Springs (CO)

On-site
USD 105,000 - 208,000
Cyber Security Senior Consultant - Sentinel
Cyber Security Senior Consultant - Sentinel

Deloitte France • Indianapolis (IN)

On-site
USD 105,000 - 208,000
Remote Senior SIEM Engineer — Microsoft Sentinel Expert
Remote Senior SIEM Engineer — Microsoft Sentinel Expert

ecsfederal • Virginia (MN)

Hybrid
USD 140,000 - 180,000
Sr. SIEM Engineering Consultant
Sr. SIEM Engineering Consultant

ecsfederal • Virginia (MN)

Hybrid
USD 140,000 - 180,000
Senior Microsoft Sentinel Engineer — SIEM & SOAR Expert
Senior Microsoft Sentinel Engineer — SIEM & SOAR Expert

Arctiq • Brentwood (AL)

On-site
USD 120,000 - 165,000
Sentinel Security Engineer: SIEM & SOAR Expert
Sentinel Security Engineer: SIEM & SOAR Expert

Arctiq: Intelligent Architecture • Brentwood (TN)

On-site
USD 110,000 - 170,000
Sr. Cybersecurity Engineering Consultant - SIEM/Microsoft (AIR)
Sr. Cybersecurity Engineering Consultant - SIEM/Microsoft (AIR)

Trustwave • United States

On-site
USD 140,000 - 190,000