Назад
Company hidden
обновлено 5 дней назад

Security Tooling Engineer (Microsoft Defender)

Формат работы
onsite
Тип работы
fulltime
Грейд
senior
Английский
b2
Страна
UK
Вакансия из списка Hirify.GlobalВакансия из Hirify Global, списка международных tech-компаний
Для мэтча и отклика нужен Plus

Мэтч & Сопровод

Для мэтча с этой вакансией нужен Plus

Описание вакансии

Текст:
/
TL;DR
Security Tooling Engineer (Microsoft Defender): Maintaining and evolving security monitoring and endpoint protection capabilities across Microsoft Defender for Endpoint, Microsoft Sentinel, Azure, and log ingestion technologies with an accent on detection coverage, automation, and operational effectiveness. Focus on developing security tooling, onboarding applications with appropriate monitoring, supporting incident investigations and audits, and exploring AI-driven security operations use cases.

Location: Stirling, United Kingdom

Company

M&G provides asset management, insurance, savings, and investment solutions, combining financial services expertise with a long heritage of innovation.

What you will do

  • Act as a subject matter expert for Microsoft Defender for Endpoint and maintain the platform's health and effectiveness.
  • Develop and improve Microsoft Defender and Microsoft Sentinel capabilities, including monitoring coverage, automation, and operational performance.
  • Onboard applications, services, and technology platforms with appropriate security monitoring and detection coverage.
  • Maintain security log collection and ingestion capabilities, including Logstash integrations.
  • Support incident response, investigations, audits, control testing, assurance reviews, and operational activities.
  • Explore AI-driven security operations use cases and collaborate with technology, project, and business stakeholders.

Requirements

  • Experience deploying, configuring, and managing Microsoft security technologies, particularly Microsoft Defender for Endpoint.
  • Experience engineering Microsoft Sentinel capabilities and working in Azure cloud environments.
  • Experience with log management, data ingestion, and integration technologies.
  • Experience supporting audits, assurance activities, or control testing.
  • Strong stakeholder management, communication, analytical, prioritisation, and planning skills.
  • Ability to explain complex technical issues to non-specialist audiences and work independently or collaboratively across multiple priorities.

Nice to have

  • Experience with Infrastructure as Code approaches and tooling.
  • Experience mentoring junior team members and promoting security operations best practices.

Culture & Benefits

  • Flexible working arrangements may be considered, with workplace adjustments available.
  • UK pension scheme of up to 18%, including employer contributions.
  • Share Save and Share Incentive Plan, plus financial wellbeing support.
  • 38 days of annual leave including bank holidays, with the option to purchase up to five additional days.
  • Paid parental leave, private healthcare, critical illness cover, and life assurance.

Будьте осторожны: если работодатель просит войти в их систему, используя iCloud/Google, прислать код/пароль, запустить код/ПО, не делайте этого - это мошенники. Обязательно жмите "Пожаловаться" или пишите в поддержку. Подробнее в гайде →