Experis Manpower Group is looking for an experienced Microsoft Sentinel Log Engineer to join their team in a fully remote capacity. You will be responsible for designing, implementing, and optimizing complex logging architectures to ensure robust security monitoring across diverse cloud and on-premise environments.
Key responsibilities
- Onboard on-prem servers to Sentinel using Azure Arc and AMA, ensuring full log coverage and troubleshooting reporting issues.
- Design and build scalable, fault-tolerant syslog/CEF forwarder layers for devices that cannot run agents.
- Close logging gaps in Azure and AWS by integrating control-plane and data-plane logs across all tenants.
- Optimize log routing and costs by managing Data Collection Rules and implementing data lake tiering strategies.
- Develop comprehensive monitoring dashboards and alerts to track agent health and identify potential gaps in log sources.
Requirements
- Over 5 years of experience in SIEM or security logging engineering, with at least 3 years specifically in Microsoft Sentinel.
- Expertise in Azure Arc, Azure Monitor Agent deployment, and managing Data Collection Rules at scale.
- Strong proficiency in KQL for data validation and gap analysis, alongside solid Linux and networking knowledge.
- Proven experience in designing syslog/CEF forwarder architectures and managing cloud logging for Azure and AWS.
- Familiarity with automated deployment tools like Ansible, PowerShell, or Python within formal change management processes.
What we offer
- Comprehensive private medical care through Medicover Premium.
- Access to the MultiSport Plus program for fitness and wellness.
- Group insurance coverage.