Job Description:
We are seeking an experienced Threat Modeling Consultant to design and implement comprehensive threat models for 90-100 diverse applications. The consultant will evaluate application-generated logs, develop threat detection strategies, and report findings to the Information Security team. This role requires deep expertise in Microsoft Azure security tools, log analytics, and automation to enhance the customer's application anomaly detection capabilities.
Key Responsibilities:
- Develop detailed threat models tailored for a large portfolio of applications with varying threat categories.
- Analyze logs generated by applications using Azure Log Analytics and Azure Sentinel to identify anomalies and potential threats.
- Design, build, and maintain KQL queries to extract and correlate security-relevant data from logs.
- Implement automated alerting and reporting workflows through Azure Logic Apps integrated with Azure Sentinel.
- Collaborate with the customer's Information Security team to ensure actionable insights and timely incident escalation.
- Continuously refine and tune threat detection models based on evolving application risk profiles and feedback.
- Provide technical documentation and training as needed to internal teams and stakeholders.
- Stay updated with the latest security threats, Azure services, and best practices in threat modelling and log analytics.
Required Skills and Qualifications:
- Proven experience in threat modelling for complex and diverse application environments.
- Strong expertise in Azure Sentinel, including configuration, customization, and automation.
- In-depth knowledge of Azure Log Analytics, log ingestion, and data analysis.
- Proficiency in Kusto Query Language (KQL) for creating efficient, scalable queries.
- Experience with Azure Logic Apps to orchestrate automated response and reporting workflows.
- Solid understanding of application security principles, common threat categories, and attack vectors.
- Ability to work independently and collaboratively with cross-functional teams.
- Excellent communication skills to document findings and present complex technical information clearly.