Security Operations Analyst (Azure Sentinel, KQL) at Hikru | Torre

Security Operations Analyst (Azure Sentinel, KQL)

Emma highlights
This highlight was written by Emma’s AI. Ask Emma to edit it.
Full-time

Legal agreement: Contractor

Currency exchange and payroll taxes to be paid by:

Candidate

Provide your expected compensation while applying
location_on
Remote (specific timezone)
public
GMT-07:00 to GMT-05:00
Posted 12 months ago

Responsibilities


We are seeking a Security Analyst with at least 3 years of cybersecurity experience and 2+ years working with Azure Sentinel and Kusto Query Language (KQL). The ideal candidate has hands-on expertise in Microsoft security solutions, incident response, and proactive threat detection, with strong analytical skills and relevant certifications. Key Responsibilities: * Monitor and analyze cloud security with Microsoft Sentinel, Defender for Cloud, and XDR/EDR. * Develop and optimize KQL queries, analytic rules, and automated incident workflows. * Lead and support incident response, triage, remediation, and RCA documentation. * Conduct vulnerability assessments, threat hunting, and risk analysis. * Ensure compliance with frameworks (NIST, ISO 27001, GDPR, PCI-DSS, HIPAA). * Collaborate with cross-functional teams and communicate findings to stakeholders. Required Qualifications: Education & Experience: * Bachelor’s degree in computer science, Information Security, related field, or equivalent work experience. * Minimum of 3 years in cybersecurity, focusing on security operations and incident response. At least 2 years of experience with Azure Sentinel. Technical Skills: * Hands-on experience with Azure Sentinel, including developing analytic rules and automated workflows. Familiarity with network security tools (IDS/IPS, firewalls, antivirus solutions) and endpoint protection technologies. * Experience with vulnerability assessment tools and risk management frameworks. * Proficiency in Kusto Query Language (KQL). Must have experience in creating and optimizing queries for threat detection and investigation. Certifications: * SC-200 - Security Operations Analyst Associate. * AZ-500 - Azure Security Engineer Associate. * Certifications such as CompTIA Security+, Certified Cyber Security Analyst, CCSP, or equivalent preferred.