Microsoft Azure Sentinel SIEM Engineer

3 months ago


Vienna, United States Shuvel Digital Full time

Senior Secure Innovation and Resilience (SI&R) Resource - Microsoft Azure Professional who is experienced with Kusto Query Language (KQL) and design of security-specific alerts. The senior resource will work within the current information security team and perform as a lead technical Subject Matter Expert (SME) that will also liaise to the appropriate business units (BU) to support security strategy and ensure accuracy of related data.

Resource will evaluate specific logging, monitoring, and alerting events for efficiency and provide industry best practice recommendation for continuous improvement as Navy Federal Credit Unions application portfolio is moved into a Security Information and Event Management (SIEM) solution. Additionally, the resource will follow Navy Federal Credit Unions established delivery cadence for either agile (methods for sprint planning, sprint refinements, sprint standup, and retrospectives) or traditional waterfall where appropriate.

Resource will provide professional services deeply rooted in Azure Log Analytics with focus on Kusto Query Language (KQL). The resource will collaborate with NFCU's technical and business teams as needed to determine any deficiencies and ensure continuous improvement as well as take part in any related agile or traditional development engagements which ultimately integrate with the team's application portfolio.

The resource shall provide the following analytical, development, and support services:

  • Evaluate specific application's capability for logging, monitoring, and alerting information in the NFCU environment either on-prem, cloud, or hybrid
  • Serve as a critical Quality Assurance (QA) point within a four-stage process used to integrate NFCU's application portfolio to Splunk Logging and Alerting
  • Evaluate the completeness and accuracy of the information provided and verify that the log entries meet criteria provided for monitoring and alerting
  • Validate the submitted information through use of Microsoft (KQL) and assist with mapping to data in Splunk
  • Identify deficiencies and revert the workflow as needed to collect additional information when encountering inaccurate or incomplete information
  • Interact with the appropriate Business Unit (BU) contact and/or technical contact to gain clarity on difficult to obtain, incomplete, or inaccurate information

Activity

  • Development and Analysis functions to validate existing logs are sufficient to implement monitoring and alerting.
  • Use Azure Log Analytics to collect and index log data, develop queries, log integration support and reporting
  • Ingest new data sources to implement use cases, dashboards, and automated reports
  • Perform Quality Assurance review of new use cases prior to deployment into application portfolio
  • Ensure standards are maintained
  • Validate the submitted information through use of KQL
  • Troubleshoot existing use cases for root cause and provide issue resolution
  • Assist with identifying and escalating issues and risks developing plans for resolution
  • Assist with issue and risk prioritization

Deliverables

  • Azure Log Analytics CSOC use cases and related queries
  • Associated scripts, etc. for remediation of use cases that failed to execute
  • Define and assist in the creation of operational and executive security reports and dashboards
  • Root Cause Analysis of issues
  • Capture and migration of documentation of use cases, queries, alerts, etc. for storing into ServiceNow Knowledge Management articles or leverage Azure ADO Wiki pages to create knowledge management articles
  • Conduct 1-1 training and job shadowing for comprehensive knowledge transfer

Critical Skills

  • Expert-level, hands-on Log Analytics engineer with experience in complex environments
  • Expert in Kusto Query Language (KQL)
  • Deep knowledge of other SIEM platforms, such as Splunk, QRadar, or Arcsight
  • Previous experience in applying knowledge to uncover threats based on log data within Cloud Service Provider (CSP) environments (Azure AAD, Azure Resources, Event logs, etc.) to build, analyze, and tune detections.
  • Experience with Microsoft Cloud Security Technologies such as Azure Sentinel, Microsoft Defender, MDE, ATP, Azure Data Explorer and Azure Log Analytics or similar products like ArcSight, Splunk and Logstash
  • Demonstrated ability to understand and communicate technical details with varying levels of management


  • Vienna, Virginia, United States Shuvel Digital Full time

    Position OverviewThe Senior Secure Innovation and Resilience (SI&R) Resource is a seasoned Microsoft Azure Professional with expertise in Kusto Query Language (KQL) and the development of security-specific alerts. This role involves acting as a lead technical Subject Matter Expert (SME) within the information security team, collaborating with relevant...


  • Vienna, Virginia, United States Shuvel Digital Full time

    Position OverviewThe Senior Secure Innovation and Resilience (SI&R) Resource will serve as a Microsoft Azure Professional with expertise in Kusto Query Language (KQL) and the development of security-specific alerts. This senior position will act as a principal technical Subject Matter Expert (SME) within the information security team, collaborating with...


  • Vienna, Virginia, United States Shuvel Digital Full time

    Position OverviewWe are seeking a Senior Secure Innovation and Resilience (SI&R) Specialist with expertise in Microsoft Azure. The ideal candidate will possess extensive experience with Kusto Query Language (KQL) and the development of security-specific alerts. This role involves acting as a lead technical Subject Matter Expert (SME) within the information...

  • Senior SIEM Engineer

    3 weeks ago


    Vienna, United States Zen Strategics LLC Full time

    Job DescriptionJob DescriptionDescription:About Zen:Own your opportunity to work with a client-focused agile small business. Make an impact by advancing our government organizations charged with keeping our country safe, prosperous, and secure. Zen Strategics, LLC is a cleared, minority-owned SBA 8(a) specialized consulting firm, offering innovative...


  • Vienna, United States ALTA IT Services Full time $60 - $80

    Job DescriptionJob DescriptionHi, I hope this email finds you well! My name is Julianna Spicer with ALTA IT Services. We have an opening for Azure Devops Engineer role with one of our top clients. If this position interests you, please reply and I will reach out to you IT AnalystLocation: Hybrid reporting to Vienna, VA, Winchester, VA, Pensacola, FL or San...

  • Azure DevOps Engineer

    1 month ago


    Vienna, United States CC Pace Full time

    Description:Focus on delivering rapid, incremental capabilities to the Cloud that improve the member/user experience and drive value.Drive towards automation and strategies that align with industry best practices; will collaborate with product owners/developers/cloud engineers to ensure Digital’s CI/CD (Continuous Integration/Continuous Delivery) processes...

  • Azure DevOps Engineer

    1 month ago


    Vienna, United States CC Pace Full time

    Description:Focus on delivering rapid, incremental capabilities to the Cloud that improve the member/user experience and drive value.Drive towards automation and strategies that align with industry best practices; will collaborate with product owners/developers/cloud engineers to ensure Digital’s CI/CD (Continuous Integration/Continuous Delivery) processes...


  • Vienna, United States M.C. Dean, Inc. Full time

    Security is critical to M.C. Dean's IT solutions that support critical business functions. The successful candidate will join a dynamic multidiscipline team responsible for design, implementation, integration, and support of access control, system integration, endpoint protection, data protection / data loss prevention, and other components of our...

  • Sr DevSecOps Engineer

    1 month ago


    Vienna, United States Page Mechanical Group Inc Full time

    Are you looking for the next exciting project opportunity with a great company? Our professional recruiting staff at CC Pace is here to support you in every step of the process! We have been in business for nearly four decades and have deep roots in the Washington, DC, metro area. Our direct client relationships with companies in various industries and sizes...


  • Vienna, United States Halvik Full time

    Halvik is a highly successful company that puts people first, and we are looking for someone just like you. We are committed to delivering smarter IT-driven solutions bolstered by quality and innovation to help our customers succeed. Come be a part of something truly special! Halvik is looking for a full time .Net Azure DevOps Engineer...


  • Vienna, United States Halvik Full time

    Halvik is a highly successful company that puts people first, and we are looking for someone just like you. We are committed to delivering smarter IT-driven solutions bolstered by quality and innovation to help our customers succeed. Come be a part of something truly special! Halvik is looking for a full time .Net Azure DevOps Engineer (virtual). Required...


  • Vienna, United States Halvik Full time

    Halvik is a highly successful company that puts people first, and we are looking for someone just like you. We are committed to delivering smarter IT-driven solutions bolstered by quality and innovation to help our customers succeed. Come be a part of something truly special! Halvik is looking for a full time .Net Azure DevOps Engineer (virtual). Required...


  • Vienna, United States NetApp Full time

    Title: Azure Sales Specialist - Federal Location: Baltimore, MD, US Chantilly, VA, US, 20151 Research Triangle Park, NC, US, 27709 US Vienna, VA, US, 22182 US Requisition ID: 126317 Job Summary As the Azure Sales Specialist for the US Public Sector Federal Business, you will be responsible for driving the adoption of NetApp’s Azure cloud portfolio...

  • Linux Engineer

    3 months ago


    Vienna, United States Zen Strategics LLC Full time

    Job DescriptionJob DescriptionDescription:About Zen: Own your opportunity to work with a client-focused agile small business. Make an impact by advancing our government organizations charged with keeping our country safe, prosperous, and secure. Zen Strategics, LLC is a cleared, minority-owned SBA 8(a) specialized consulting firm, offering innovative...


  • Vienna, United States GSSR Inc Full time

    Job DescriptionJob Description*In person interview required. Onsite 1 x a week.Description:Provide technical architecture guidance and expertise indeveloping, architecting, and maintaining Azure Synapse Analytics end to endsolution, Azure Databricks, spark pool, and monitoring of high-volume ofcomplex data warehouse and analytical processes. Experience in...


  • Vienna, Virginia, United States M.C. Dean, Inc. Full time

    Overview:Security is paramount in M.C. Dean's IT solutions that underpin essential business operations. The ideal candidate will become part of a vibrant, multidisciplinary team tasked with the design, execution, integration, and maintenance of access control, system integration, endpoint protection, data safeguarding, and various elements of our...

  • Sr. DevOps Engineer

    3 days ago


    Vienna, United States INSPYR Solutions Full time

    Title: Sr. DevOps Engineer Location: Vienna, VA or Winchester, VA or Pensacola, FL (Hybrid) Duration: Inital 6 months plus extensions Compensation: $70.00 - $79.00/hr Work Requirements: USC, GC or Authorized to work in US Job Description: Seeking Azure DevOps Engineer with experience working with cloud platforms and has a passion for automation and...


  • Vienna, United States Zen Strategics LLC Full time

    Job DescriptionJob DescriptionDescription:Requirements...Demonstrated programming expertise, Python preferred and preferably using the Boto3 Python libraryHands on experience in cloud application development (e.g. PaaS, Serverless, API Management)Experience using integrated development environments targeting Linux, Windows, public clouds (i.e. Azure,...


  • Vienna, United States Shuvel Digital Full time

    Description: The Digital DevOps Engineer will join the Digital Engineering organization focused on delivering rapid, incremental capabilities to the Cloud that improve the member/user experience and drive value to Navy Federal. The Digital DevOps Engineer will become a member of the Digital DevOps & Release team that...


  • Vienna, United States Zen Strategics LLC Full time

    Job DescriptionJob DescriptionDescription:About Zen: Zen Strategics, LLC is a cleared, minority-owned SBA 8(a) specialized consulting firm, offering innovative Cybersecurity, Cloud Migration, and Information Technology Modernization. We are a leading organization committed to delivering innovative solutions and ensuring the highest standards of security for...