Microsoft Security Automation & Incident Response Engineer - Contract Position
@ Magnet ForensicsMicrosoft Security Automation & Incident Response Engineer - Contract Position
This job is still taking applications, but it's been up a while.
About the job
Magnet Forensics develops digital investigative software used globally by law enforcement, security teams, and organizations to analyze and share digital evidence, fight crime, and protect assets. The role focuses on optimizing security operations and automating incident response processes.
Requirements
- 5+ years in Security Operations
- Strong Microsoft Sentinel experience
- Experience with Defender XDR
- Advanced KQL skills
- SOAR automation experience
Qualifications
- Security certifications preferred
- Threat hunting experience
- Detection engineering background
- Experience with third-party telemetry
- Knowledge of Purview and DLP
Full job description
Magnet Forensics is seeking a highly skilled Microsoft Security Automation & Incident Response Engineer to accelerate the maturity and efficiency of our security operations program.
This resource will be responsible for optimizing and integrating Microsoft's security platform, reducing manual analyst workload, automating repetitive tasks, improving detection coverage, and enhancing incident response capabilities.
The ideal candidate is a hands-on engineer with deep experience in Microsoft Sentinel, Defender XDR, automation, and modern security operations.
This is a 3-4 month contract role
What You'll Do
Security Operations Optimization
- Analyze existing alert triage and incident response processes
- Identify operational bottlenecks and manual activities
- Implement improvements that reduce analyst effort and response times
- Improve overall SOC efficiency and effectiveness
- Tune Microsoft Sentinel analytics rules
- Reduce false positives and alert fatigue
- Create advanced correlation rules and hunting content
- Improve quality and fidelity of security detections
- Alert enrichment
- Incident routing
- Ticket creation
- Escalation workflows
- Investigation support
- Standard response actions
- Microsoft Sentinel
- Microsoft Defender XDR
- Microsoft Defender for Endpoint
- Microsoft Defender for Identity
- Microsoft Defender for Cloud Apps
- Entra ID
- Zscaler telemetry
- Existing ITSM and ticketing platforms
- Improve incident response processes
- Enhance investigation playbooks
- Develop response automation
- Create operational runbooks and documentation
Detection Engineering
Security Automation
Design and implement automation for:
Platform Integration
Optimize and integrate:
Incident Response Support
What We're Looking For
Required Qualifications
- 5+ years in Security Operations, Detection Engineering, or Incident Response
- Strong Microsoft Sentinel experience
- Strong Microsoft Defender suite experience
- Advanced KQL skills
- Logic Apps experience
- SOAR automation experience
- SIEM engineering experience
- Security operations workflow optimization experience
- Microsoft Security certifications
- Threat hunting experience
- Detection engineering background
- Experience integrating third-party security telemetry
- Exposure to Purview and DLP technologies
Preferred Qualifications
Similar jobs in Columbus, OH
- L
Senior Security Engineer
Leidos · Columbus, OH, United States
Posted 5 days ago - G
Response Security Officer
GardaWorld Security Services U.S. · Grove City, Ohio
Posted 3 days ago - L
Site Reliability Engineer
Leidos · Columbus, OH, United States
Posted 2 weeks ago - C
Automation/Controls Engineer
Continental · Marysville, OH, United States
Posted 1 week ago - A
Technical Security Application Engineer, Manufacturing
Anduril Industries · Ashville, Ohio, United States
Posted today - G
Flex Security Officer
GardaWorld Security Services U.S. · Grove City, Ohio
Posted 1 day ago