Назад
Company hidden
3 дня назад

Senior XDR Specialist

Формат работы
hybrid
Тип работы
fulltime
Грейд
senior
Английский
b2
Страна
UK
Вакансия из списка Hirify.GlobalВакансия из Hirify Global, списка международных tech-компаний
Для мэтча и отклика нужен Plus

Мэтч & Сопровод

Для мэтча с этой вакансией нужен Plus

Описание вакансии

Текст:
/

TL;DR

Senior XDR Specialist: Designing and implementing Microsoft Sentinel-led detection and response strategies with an accent on SOAR playbook automation and XDR optimization across endpoints, identity, email, and cloud. Focus on KQL-led threat hunting, securing data with Purview/DLP, and translating technical details into business-ready outcomes.

Location: Cheltenham, Manchester or London

Company

hirify.global is a global leader in cyber and escrow services, dedicated to creating a more secure digital future for clients across various industries.

What you will do

  • Design, build, and optimize Microsoft Sentinel for detection and response.
  • Automate security operations by creating pragmatic SOAR playbooks (Logic Apps/Power Automate).
  • Deploy and optimize Microsoft Defender XDR across various domains, aligning detections to MITRE ATT&CK.
  • Conduct KQL-led threat hunting, provide incident triage guidance, and improve detection content.
  • Advise on Purview information protection & DLP from policy design to rollout.
  • Translate technical security insights into business-ready outcomes for stakeholders.

Requirements

  • Proven experience delivering Microsoft security projects: Sentinel, Defender XDR, SOAR (Logic Apps), and Purview/DLP.
  • Proficiency with KQL, scripting (PowerShell), and Git for version control.
  • Ability to optimize costs related to data ingestion and retention.
  • Solid consulting skills including workshops, architecture reviews, and stakeholder management.
  • Familiarity with control frameworks (ISO 27001, NIST CSF/800-53, PCI DSS, GDPR).
  • Must be willing and able to undergo mandatory pre-employment background checks (BS7858 screening).

Nice to have

  • Azure Resource Manager/Bicep or IaC pipelines
  • Entra ID/Conditional Access
  • Defender for Cloud
  • Intune
  • MITRE mapping
  • Incident response exposure
  • Relevant certifications (e.g., SC-200/SC-100, CISSP/CISM)

Culture & Benefits

  • Flexible working arrangements.
  • Financial and investment benefits including Pension, Life Assurance, and Share Save Scheme.
  • Maternity & Paternity leave.
  • Community & Volunteering Programmes.
  • Green Car Scheme and Cycle Scheme.
  • Employee Referral Program.
  • Wellness programs and opportunities for learning and development and career growth.

Будьте осторожны: если работодатель просит войти в их систему, используя iCloud/Google, прислать код/пароль, запустить код/ПО, не делайте этого - это мошенники. Обязательно жмите "Пожаловаться" или пишите в поддержку. Подробнее в гайде →

Текст вакансии взят без изменений

Источник - загрузка...