- Company Name
- Beacon Hill
- Job Title
- Cybersecurity Engineer (SIEM/DLP)
- Job Description
-
**Job title**
Cybersecurity Engineer (SIEM/DLP)
**Role Summary**
Design, implement, monitor, and optimize Microsoft Sentinel, Defender, and Purview DLP solutions to protect cloud, endpoint, identity and data assets, while responding to incidents and improving security posture.
**Expectations**
- Deliver end‑to‑end SIEM and DLP engineering, configuration, and operational health.
- Maintain high‑quality alerting, playbooks, and workflows with minimal false positives.
- Ensure compliance with security best practices and industry regulations.
**Key Responsibilities**
- Monitor, investigate, and respond to alerts in Microsoft Sentinel and Microsoft Defender suite.
- Build, tune, and maintain analytic rules, automation playbooks, and incident response workflows in Sentinel.
- Use KQL for advanced log analysis, threat hunting, and correlation.
- Manage and optimize Defender for Cloud recommendations, secure score, and cloud posture improvements.
- Strengthen identity, endpoint, and cloud security controls using Microsoft‑native capabilities.
- Own end‑to‑end engineering, configuration, and operational health of Microsoft Purview DLP and other DLP platforms across endpoint, network, and cloud.
- Design, deploy, and maintain DLP policies protecting payment card data, PII, financial records, and proprietary data.
- Continuously monitor, tune, and optimize DLP policies to maximize detection accuracy while reducing false positives.
**Required Skills**
- ≥5 years of cybersecurity engineering experience.
- Deep experience with Microsoft Sentinel (KQL, rule creation, automation, incident handling).
- Hands‑on expertise with Microsoft Defender products (Endpoint, Identity, Office 365).
- Proven experience with Defender for Cloud (CSPM, workload protection, secure score).
- Strong understanding of cloud security concepts, identity security, and threat detection.
- Ability to analyze logs, investigate threats, and respond to incidents using Microsoft‑native tools.
**Required Education & Certifications**
- Bachelor’s degree in Computer Science, Information Security, or related field (or equivalent experience).
- Relevant certifications such as Microsoft Certified: Security, Compliance & Identity Fundamentals, Microsoft Certified: Azure Security Engineer Associate, or equivalent.
---