Experis Manpower Group is seeking a highly skilled Cloud Security Engineer to join their team. The ideal candidate will possess deep expertise in Azure, Microsoft Sentinel, and Defender for Cloud, with a proven track record of building data exfiltration detection capabilities and implementing robust security controls at an enterprise scale.
Key responsibilities
- Deploy Microsoft Defender for Cloud protections across multiple Azure tenants using Azure Policy and Policy-as-Code pipelines.
- Centralize logging in Microsoft Sentinel by connecting Azure, M365, and AWS environments.
- Develop and tune KQL-based exfiltration detections to identify unusual data volumes, rate changes, and abnormal access patterns.
- Detect exfiltration from Azure IaaS workloads by leveraging Defender for Servers, VNet/NSG flow logs, and firewall traffic analysis.
- Create comprehensive triage playbooks and runbooks to support the InfoSec and SOE teams.
Requirements
- Over 5 years of experience in cloud security engineering, with at least 3 years focused on Azure environments.
- Advanced proficiency in building and testing custom Sentinel exfiltration detections using KQL.
- Proven experience deploying Microsoft Defender for Cloud plans at an enterprise scale across multiple tenants.
- Strong knowledge of Azure Policy, CI/CD pipelines, M365 audit logs, Entra ID, and Defender XDR.
- Ability to map exfiltration paths to security controls and document coverage gaps effectively.
What we offer
- Opportunity to work on complex, large-scale cloud security projects.
- Professional development through exposure to advanced threat hunting and detection engineering.
- Collaborative environment focused on incident remediation and security architecture.