Bangalore, Karnataka, India
Information Technology
Full-Time
Terralogic
Overview
Overview
Seeking a Security Analyst with expertise in Microsoft Sentinel and the Microsoft Defender Suite (EDR, XDR, SIEM, SOAR). Role involves threat detection, incident response, threat hunting, and automation using KQL, PowerShell, Defender for Cloud, Defender for Office 365, MDVM, Copilot for Security, and ServiceNow SecOps SIR for incident tracking and workflow management.
Total Experience
2+ Years || Overall – 5 Years
Job Technologies
Seeking a Security Analyst with expertise in Microsoft Sentinel and the Microsoft Defender Suite (EDR, XDR, SIEM, SOAR). Role involves threat detection, incident response, threat hunting, and automation using KQL, PowerShell, Defender for Cloud, Defender for Office 365, MDVM, Copilot for Security, and ServiceNow SecOps SIR for incident tracking and workflow management.
Total Experience
2+ Years || Overall – 5 Years
Job Technologies
- 2+ years with Microsoft Sentinel in a SOC environment.
- Strong KQL skills; experience in threat hunting and incident handling.
- Familiarity with Azure Security Center, Defender Suite, Azure AD logs.
- Experience with ServiceNow SecOps SIR for incident workflow and ticketing.
- Understanding of MITRE ATT&CK and incident lifecycle.
- Experience onboarding log sources and building SOAR workflows.
- Knowledge of NIST, ISO 27001, CIS Controls.
- Solid grasp of network, cloud, and endpoint security.
- PowerShell scripting for automation.
- Manage and optimize Microsoft Sentinel for detection, investigation, and response.
- Build and tune Analytics Rules, Workbooks, and Hunting Queries (KQL).
- Develop Logic Apps / Playbooks for automated workflows.
- Onboard data connectors (M365, Azure AD, MDE, Firewall logs, custom APIs).
- Monitor and respond to alerts from MDE, MDO, MDI, Defender for Cloud, and MDVM.
- Correlate incidents via Microsoft 365 Defender (XDR).
- Use Copilot for Security for investigations and reporting.
- Leverage ServiceNow SecOps SIR module for case management, escalation, and incident lifecycle tracking.
- Perform threat hunting, triage, root cause analysis, and remediation.
- Fine-tune rules to reduce false positives.
- Produce SOC dashboards and compliance reports. Apply Now
Similar Jobs
View All
Talk to us
Feel free to call, email, or hit us up on our social media accounts.
Email
info@antaltechjobs.in