Deliver consulting-led cyber security services with a specialisation in Microsoft Sentinel across a range of customer environments
Plan and execute security engagements, manage delivery milestones, and provide hands-on implementation and advisory support
Lead customer engagements end to end, from scoping and kick-off through to delivery, acting as the trusted technical point of contact
Own assigned engagements, managing milestones, risks, and escalations with confidence
Design, deploy, configure, and optimise Microsoft Sentinel environments including data connector integration, analytics rules, KQL detection logic, and custom alerting
Configure and manage SOAR automation, incident response playbooks, and automation rules within Sentinel
Build workbooks, dashboards, and UEBA configurations to enhance threat visibility and operational insight
Conduct security operations assessments and threat detection capability reviews, providing pragmatic best practice guidance
Produce clear technical documentation and customer-ready reports to a consistently high standard
Requirements
Minimum 2 years of experience in a customer-facing or consulting cyber security role
Hands-on experience with Microsoft Sentinel across data connector configuration, KQL-based detection, analytics rules, SOAR automation, and workbook or dashboard development
Solid understanding of Azure, cloud security fundamentals, and SIEM-based threat detection and incident response
Microsoft Certified: Security Operations Analyst Associate (SC-200) and Azure Security Engineer Associate (AZ-500)