Microsoft Azure Sentinel SIEM Engineer

4 weeks ago


Vienna, United States Shuvel Digital Full time

Senior Secure Innovation and Resilience (SI&R) Resource - Microsoft Azure Professional who is experienced with Kusto Query Language (KQL) and design of security-specific alerts. The senior resource will work within the current information security team and perform as a lead technical Subject Matter Expert (SME) that will also liaise to the appropriate business units (BU) to support security strategy and ensure accuracy of related data.

Resource will evaluate specific logging, monitoring, and alerting events for efficiency and provide industry best practice recommendation for continuous improvement as Navy Federal Credit Unions application portfolio is moved into a Security Information and Event Management (SIEM) solution. Additionally, the resource will follow Navy Federal Credit Unions established delivery cadence for either agile (methods for sprint planning, sprint refinements, sprint standup, and retrospectives) or traditional waterfall where appropriate.

Resource will provide professional services deeply rooted in Azure Log Analytics with focus on Kusto Query Language (KQL). The resource will collaborate with NFCU's technical and business teams as needed to determine any deficiencies and ensure continuous improvement as well as take part in any related agile or traditional development engagements which ultimately integrate with the team's application portfolio.

The resource shall provide the following analytical, development, and support services:

  • Evaluate specific application's capability for logging, monitoring, and alerting information in the NFCU environment either on-prem, cloud, or hybrid
  • Serve as a critical Quality Assurance (QA) point within a four-stage process used to integrate NFCU's application portfolio to Splunk Logging and Alerting
  • Evaluate the completeness and accuracy of the information provided and verify that the log entries meet criteria provided for monitoring and alerting
  • Validate the submitted information through use of Microsoft (KQL) and assist with mapping to data in Splunk
  • Identify deficiencies and revert the workflow as needed to collect additional information when encountering inaccurate or incomplete information
  • Interact with the appropriate Business Unit (BU) contact and/or technical contact to gain clarity on difficult to obtain, incomplete, or inaccurate information
Activity
  • Development and Analysis functions to validate existing logs are sufficient to implement monitoring and alerting.
  • Use Azure Log Analytics to collect and index log data, develop queries, log integration support and reporting
  • Ingest new data sources to implement use cases, dashboards, and automated reports
  • Perform Quality Assurance review of new use cases prior to deployment into application portfolio
  • Ensure standards are maintained
  • Validate the submitted information through use of KQL
  • Troubleshoot existing use cases for root cause and provide issue resolution
  • Assist with identifying and escalating issues and risks developing plans for resolution
  • Assist with issue and risk prioritization
Deliverables
  • Azure Log Analytics CSOC use cases and related queries
  • Associated scripts, etc. for remediation of use cases that failed to execute
  • Define and assist in the creation of operational and executive security reports and dashboards
  • Root Cause Analysis of issues
  • Capture and migration of documentation of use cases, queries, alerts, etc. for storing into ServiceNow Knowledge Management articles or leverage Azure ADO Wiki pages to create knowledge management articles
  • Conduct 1-1 training and job shadowing for comprehensive knowledge transfer
Critical Skills
  • Expert-level, hands-on Log Analytics engineer with experience in complex environments
  • Expert in Kusto Query Language (KQL)
  • Deep knowledge of other SIEM platforms, such as Splunk, QRadar, or Arcsight
  • Previous experience in applying knowledge to uncover threats based on log data within Cloud Service Provider (CSP) environments (Azure AAD, Azure Resources, Event logs, etc.) to build, analyze, and tune detections.
  • Experience with Microsoft Cloud Security Technologies such as Azure Sentinel, Microsoft Defender, MDE, ATP, Azure Data Explorer and Azure Log Analytics or similar products like ArcSight, Splunk and Logstash
  • Demonstrated ability to understand and communicate technical details with varying levels of management


  • Vienna, United States ASCENDING LLC Full time

    - This role is only available for W2 or individual contracts. Please no C2C. - No sponsorships are provided, US Citizen and Green Card Holder only.   - Hybrid in Vienna VA, 1~2 days onsite.  - Gov long-term project, no clearance needed.  Job Description: As a Senior Azure DevOps Engineer, you will play a critical role in shaping our DevOps strategy,...

  • Sr. DevOps Engineer

    4 days ago


    Vienna, United States INSPYR Solutions Full time

    Title: Sr. DevOps Engineer (Azure DevOps) Location: Vienna, VA (Hybrid) Duration: Initial 6 month duration, with potential extension Compensation: $65/hour to $80/hour Work Requirements: US Citizen, GC Holders or Authorized to Work in the U.S. Skillset / Experience Seeking DevOps Engineer for data pipelines working with cloud platforms and has a passion for...


  • Vienna, United States Ampcus Incorporated Full time

    Job Title- Azure Data Engineer III with heavy SQL & ETL Location- Vienna, VA or Pensacola, FL (fully onsite work, Candidate must be on site 5 days per week. Prefer Pensacola, FL, but open to Vienna, VA) Duration- 06 Months with possibility of extension Description: *FT Onsite* - Employee Powered Member Centric - Journeys Member...

  • Azure Data Engineer

    4 days ago


    Vienna, United States INSPYR Solutions Full time

    Title: Azure Data EngineerLocation: REMOTE or HybridDuration: 6+ monthsCompensation: 65-75/hrWork Requirements: US Citizen, GC Holders or Authorized to Work in the USJob Description: · Design and implement highly performant data ingestion & transformation pipelines from multiple sources using Azure Databricks and PySpark · SPARK...

  • Azure Data Engineer

    5 days ago


    Vienna, United States INSPYR Solutions Full time

    Title: Azure Data EngineerLocation: REMOTE or HybridDuration: 6+ monthsCompensation: 65-75/hrWork Requirements: US Citizen, GC Holders or Authorized to Work in the USJob Description: · Design and implement highly performant data ingestion & transformation pipelines from multiple sources using Azure Databricks and PySpark · SPARK...


  • Vienna, United States Navy Federal Credit Union Full time

    OverviewThis role will function as the senior technical leader for all managed VPC (virtual private cloud) workloads under the Cloud Native Engineering organization.To provide technical leadership and direction for a team of highly skilled professionals responsible for cloud-native product engineering across all areas of Cloud Native Engineering: security,...


  • Vienna, United States Shuvel Digital Full time

    Purpose In Digital, we develop innovative member and team member experiences that leverage the latest technologies in open source and the Cloud. Digital Information Management (DIM) is a team of engineers committed to championing a data- driven decision-making culture and meets the business demand for timely insight-focused analytics and information...


  • Vienna, Virginia, United States Navy Federal Credit Union Full time

    OverviewThis role will function as the senior technical leader for all managed VPC (virtual private cloud) workloads under the Cloud Native Engineering organization.To provide technical leadership and direction for a team of highly skilled professionals responsible for cloud-native product engineering across all areas of Cloud Native Engineering: security,...

  • IT Engineer

    2 weeks ago


    Vienna, United States Ampcus Incorporated Full time

    To research, evaluate, design, implement, and maintain CI/CD tooling and pipelines, and deliver Azure infrastructure for development teams. To provide technical direction and DevOps engineering support for projects and infrastructure. Automate and improve development and release processes and secure the deployment process by integrating and managing scan...


  • Vienna, United States Shuvel Digital Full time

    Location: Vienna, VA—Hybrid—1 day a week onsite needed. Description: Provide technical architecture guidance and expertise in developing, architecting, and maintaining Azure Synapse Analytics end to end solution, Azure Databricks, spark pool, and monitoring of high-volume of complex data warehouse and analytical processes. Experience in designing and...


  • Vienna, United States GSSR Inc Full time

    Job DescriptionJob Description*In person interview required. Onsite 1 x a week.Description:Provide technical architecture guidance and expertise indeveloping, architecting, and maintaining Azure Synapse Analytics end to endsolution, Azure Databricks, spark pool, and monitoring of high-volume ofcomplex data warehouse and analytical processes. Experience in...


  • Vienna, United States Shuvel Digital Full time

    Overview This position resides within the Information Security Department/Agile Services Team/ Technology and Reporting Workstream. Agile Services Team’s (AST) mission is to help Security teams adopt Agile methodologies and ways of working. The Senior Engineer will support the Agile Services Team Technology and Reporting (ATR) workstream responsible for...


  • Vienna, United States Shuvel Digital Full time

    Overview This position resides within the Information Security Department/Agile Services Team/ Technology and Reporting Workstream. Agile Services Team's (AST) mission is to help Security teams adopt Agile methodologies and ways of working. The Senior Engineer will support the Agile Services Team Technology and Reporting (ATR) workstream responsible for...

  • DevOps Engineer

    4 days ago


    Vienna, United States INSPYR Solutions Full time

    Title: DevOps Engineer (Azure) Location: Vienna, VA (Hybrid or 100% Remote) Duration: Initial 6 month duration, with potential extension Compensation: $65/hour - $80/hour Work Requirements: US Citizen, GC Holders or Authorized to Work in the U.S. Skillset / Experience To research, evaluate, design, implement, and maintain CI/CD tooling and pipelines, and...


  • Vienna, United States Zen Strategics LLC Full time

    Job DescriptionJob DescriptionDescription:Position Description: Seize your opportunity to make a personal impact as a Lead Cybersecurity Engineer. Zen is your place to make meaningful contributions to challenging projects and grow a rewarding career. As a Lead Cybersecurity Engineer you will be you will be responsible for ensuring the security of our...

  • DevOps Engineer III

    2 days ago


    Vienna, United States Ampcus Incorporated Full time

    Description: *This role is Hybrid and candidate must be local to HQ with a 2 days a week in office requirement. The DevOps Engineer will join a 8 person Digital DevOps team and support the multiple Development/Experience Teams who are developing our next generation, Cloud-based banking system. While there will be some operations related tasks, the focus of...

  • DevOps Engineer

    22 hours ago


    Vienna, United States Georgia IT Inc Full time

    Position: DevOps Engineer Location: Vienna, VA (Hybrid) Type : Full-Time Rate: DOE U.S. Citizens and those who are authorized to work independently in the United States are encouraged to apply. We are unable to sponsor at this time. Summary: The DevOps Engineer will join Digital DevOps team and support the multiple Development/Experience Teams who...

  • ETS Engineer IV

    3 weeks ago


    Vienna, United States Navy Federal Credit Union Full time

    OverviewTo research, evaluate, design, implement, and maintain CI/CD tooling and pipelines, and deliver Azure infrastructure for development teams. To provide technical direction and DevOps engineering support for projects and infrastructure. Automate and improve development and release processes and secure the deployment process by integrating and managing...

  • ETS Engineer IV

    2 weeks ago


    Vienna, United States Navy Federal Credit Union Full time

    OverviewTo research, evaluate, design, implement, and maintain CI/CD tooling and pipelines, and deliver Azure infrastructure for development teams. To provide technical direction and DevOps engineering support for projects and infrastructure. Automate and improve development and release processes and secure the deployment process by integrating and managing...

  • ETS Engineer IV

    3 weeks ago


    Vienna, United States Navy Federal Credit Union Full time

    OverviewTo research, evaluate, design, implement, and maintain CI/CD tooling and pipelines, and deliver Azure infrastructure for development teams. To provide technical direction and DevOps engineering support for projects and infrastructure. Automate and improve development and release processes and secure the deployment process by integrating and managing...