обновлено 5 дней назад
Security Tooling Engineer (Microsoft Defender)
Мэтч & Сопровод
Для мэтча с этой вакансией нужен Plus
Описание вакансии
Текст:
TL;DR
Security Tooling Engineer (Microsoft Defender): Maintaining and evolving security monitoring and endpoint protection capabilities across Microsoft Defender for Endpoint, Microsoft Sentinel, Azure, and log ingestion technologies with an accent on detection coverage, automation, and operational effectiveness. Focus on developing security tooling, onboarding applications with appropriate monitoring, supporting incident investigations and audits, and exploring AI-driven security operations use cases.
Location: Stirling, United Kingdom
Company
M&G provides asset management, insurance, savings, and investment solutions, combining financial services expertise with a long heritage of innovation.
What you will do
- Act as a subject matter expert for Microsoft Defender for Endpoint and maintain the platform's health and effectiveness.
- Develop and improve Microsoft Defender and Microsoft Sentinel capabilities, including monitoring coverage, automation, and operational performance.
- Onboard applications, services, and technology platforms with appropriate security monitoring and detection coverage.
- Maintain security log collection and ingestion capabilities, including Logstash integrations.
- Support incident response, investigations, audits, control testing, assurance reviews, and operational activities.
- Explore AI-driven security operations use cases and collaborate with technology, project, and business stakeholders.
Requirements
- Experience deploying, configuring, and managing Microsoft security technologies, particularly Microsoft Defender for Endpoint.
- Experience engineering Microsoft Sentinel capabilities and working in Azure cloud environments.
- Experience with log management, data ingestion, and integration technologies.
- Experience supporting audits, assurance activities, or control testing.
- Strong stakeholder management, communication, analytical, prioritisation, and planning skills.
- Ability to explain complex technical issues to non-specialist audiences and work independently or collaboratively across multiple priorities.
Nice to have
- Experience with Infrastructure as Code approaches and tooling.
- Experience mentoring junior team members and promoting security operations best practices.
Culture & Benefits
- Flexible working arrangements may be considered, with workplace adjustments available.
- UK pension scheme of up to 18%, including employer contributions.
- Share Save and Share Incentive Plan, plus financial wellbeing support.
- 38 days of annual leave including bank holidays, with the option to purchase up to five additional days.
- Paid parental leave, private healthcare, critical illness cover, and life assurance.
Будьте осторожны: если работодатель просит войти в их систему, используя iCloud/Google, прислать код/пароль, запустить код/ПО, не делайте этого - это мошенники. Обязательно жмите "Пожаловаться" или пишите в поддержку. Подробнее в гайде →
Похожие вакансии
9 дней назад
Senior Systems Engineer (Cybersecurity)
11 дней назад
Security Engineer - Detection Engineering (AI)
6 дней назад
Senior Cloud Security Engineer (Azure)
CrowdStrike
11 дней назад
Corporate Sales Engineer (Cybersecurity)
6 дней назад
AI Security Engineer
9 дней назад