Job ID: 795245
Job Title: GGC Senior SOC Analyst
Location: Lawrenceville GA (On-Site)
Job Summary:
An ideal candidate will have experience in the Microsoft security products since thats what were using for now
- MS Defender
- MS Entra ID
- On-premises Active Directory
Daily tasks entail:
- Monitoring and remediating security alerts from Sentinel and Defender
- Helping develop Sentinel workflows/workbooks for automating response
- Utilizing MS Threat Explorer and Advanced Hunting for investigations
- Configuring Exchange transport rules with respect to security events
- Configuring Defender Tenant Block/Allow lists
- Providing forensic data for future investigations
Required / Desired
| Skills | Required / Desired | Amount of Experience |
| Microsoft Defender for Identity (Threat Explorer Tenant Block/Allow Lists Incidents and Alerts etc) | Required | 3 |
| Microsoft Active Directory | Required | 3 |
| Microsoft Entra ID (formerly Azure Active Directory) | Required | 3 |
| MS Sentinel (SIEM and Investigations ) | Required | 2 |
| Knowledge in Defender Kusto Query Language | Highly desired | 1 |
Job ID: 795245 Job Title: GGC Senior SOC Analyst Location: Lawrenceville GA (On-Site) Job Summary: An ideal candidate will have experience in the Microsoft security products since thats what were using for now MS Defender MS Entra ID On-premises Active Directory Daily tasks entail: Monitorin...
Job ID: 795245
Job Title: GGC Senior SOC Analyst
Location: Lawrenceville GA (On-Site)
Job Summary:
An ideal candidate will have experience in the Microsoft security products since thats what were using for now
- MS Defender
- MS Entra ID
- On-premises Active Directory
Daily tasks entail:
- Monitoring and remediating security alerts from Sentinel and Defender
- Helping develop Sentinel workflows/workbooks for automating response
- Utilizing MS Threat Explorer and Advanced Hunting for investigations
- Configuring Exchange transport rules with respect to security events
- Configuring Defender Tenant Block/Allow lists
- Providing forensic data for future investigations
Required / Desired
| Skills | Required / Desired | Amount of Experience |
| Microsoft Defender for Identity (Threat Explorer Tenant Block/Allow Lists Incidents and Alerts etc) | Required | 3 |
| Microsoft Active Directory | Required | 3 |
| Microsoft Entra ID (formerly Azure Active Directory) | Required | 3 |
| MS Sentinel (SIEM and Investigations ) | Required | 2 |
| Knowledge in Defender Kusto Query Language | Highly desired | 1 |
View more
View less