Cyber Security Consultant- Remote
An exciting opportunity has arisen for a Cyber Security Consultant who can provide practical advice and hands-on support to improve security project and manage alerts.
We're seeking a specialist who has expertise in Microsoft Defender & Sentinel who can turn alert data into actionable intelligence, identify opportunities for optimisation, and advance the customer's SOC maturity through data-driven improvements and Sentinel/Defender best practices.
As a Cyber Security Consultant, your mission is clear; be technically proficient and provide practical solutions rather than theoretical advice. The consultant should be able to work closely with the team to implement changes and improve security.
Cyber Security Consultant's Responsibilities:
- Develop and fine-tune KQL queries for advanced threat hunting and custom analytics in Microsoft Sentinel.
- Analyse Defender and Sentinel alert data to uncover insights, refine alerts, and reduce false positives.
- Design and optimise correlation rules across Defender, Sentinel, and integrated data sources to improve detection accuracy and triage speed.
- Review and enhance data connectors to ensure complete, efficient log ingestion and enrichment.
- Build automated response workflows and playbooks using Logic Apps to streamline remediation and alert handling.
- Use advanced Defender tools such as Advanced Hunting, Threat Analytics, and Attack Surface Reduction to strengthen detection and response.
- Recommend SOC process improvements through data-driven insights and best practice alignment.
Cyber Security Consultant's Required Knowledge and Experience:
- Extensive experience with Microsoft Defender, Sentinel, and possibly working in a Security Operations Centre (SOC).
- Experience extracting alert data and able to put strategies in place to improve business operations.
- Expertise in creating runbooks and provide expert knowledge to improve the security environment.
- Proficiency in creating and optimising Sentinel workbooks and Logic Apps.
- Profound knowledge of KQL for developing advanced detection solutions.
- Experience in integrating Sentinel with diverse security technologies.
- Relevant security certifications would be desirable: (CSA, CompTIA Security+, CISSP, CISM)
Details:
- Role: Cyber Security Consultant
- Location: Remote
- Outside IR35
Apply now to speak with VIQU IT in confidence. Or reach out to Phoebe Thompson via the VIQU IT website.
Do you know someone great? We'll thank you with up to £1,000 if your referral is successful (terms apply).
For more exciting roles and opportunities like this, please follow us on IT Recruitment.