Senior Associate - Defense Microsoft Sentinel Engineer
Reference #: JR116498
We are the leading provider of professional services to the middle market globally, our purpose is to instill confidence in a world of change, empowering our clients and people to realize their full potential. Our exceptional people are the key to our unrivaled, culture and talent experience and our ability to be compelling to our clients. You'll find an environment that inspires and empowers you to thrive both personally and professionally. There's no one like you and that's why there's nowhere like RSM.The Defense Microsoft Sentinel Engineer will deploy, configure, and optimize Microsoft Sentinel to monitor, detect, and respond to security threats. This role involves designing SIEM workflows, developing custom analytics rules, and integrating log sources from cloud and on-premises environments. The engineer will automate incident response processes, conduct threat hunting, and ensure compliance with security best practices. Collaboration with SOC analysts, IT teams, and stakeholders is critical to enhancing organizational security posture and mitigating risks for this role.
Responsibilities:
SIEM Implementation: Configure Microsoft Sentinel workspaces, data connectors, and log analytics. Threat Detection: Develop custom KQL queries, analytics rules, and workbooks to identify security incidents. Incident Response: Investigate, triage, and remediate security events while documenting root causes. Automation: Build playbooks using Azure Logic Apps or PowerShell/Python scripts to streamline workflows. Log Integration: Ingest and normalize logs from Azure services, firewalls, endpoints, and third-party tools. Threat Hunting: Proactively identify vulnerabilities and adversarial tactics using advanced queries. Collaboration: Partner with SOC, network, and infrastructure teams to refine security strategies. Documentation: Maintain runbooks, incident reports, and configuration guidelines.Required Qualifications:
Bachelor's degree in Computer Science, Cybersecurity, or related field (or equivalent experience). 2+ years of hands-on experience with Microsoft Sentinel, including log ingestion and KQL query development. Proficiency in scripting languages (PowerShell, Python) for automation and custom tooling. Knowledge of Azure security services (e.g., Azure AD, Log Analytics, Defender). Understanding of SIEM/SOC operations, threat landscapes, and MITRE ATT&CK framework. Strong analytical and problem-solving skills for incident investigationPreferred Qualifications:
Certifications: Microsoft Certified: Azure Security Engineer Associate, CISSP, or GIAC certifications. 3+ years of SIEM experience, including advanced Sentinel use cases like UEBA or SOAR integration. Expertise in Azure infrastructure (e.g., ARM templates, RBAC, Azure Policy). Experience with threat intelligence platforms and hybrid cloud architectures. Familiarity with compliance standards (CMMC,NIST, ISO 27001) and regulatory requirementsAt RSM, we offer a competitive benefits and compensation package for all our people.We offer flexibility in your schedule, empowering you to balance life's demands, while also maintaining your ability to serve clients.Learn more about our total rewards at
All applicants will receive consideration for employment as RSM does not tolerate discrimination and/or harassment based on race; color; creed; sincerely held religious beliefs, practices or observances; sex (including pregnancy or disabilities related to nursing); gender; sexual orientation; HIV Status; national origin; ancestry; familial or marital status; age; physical or mental disability; citizenship; political affiliation; medical condition (including family and medical leave); domestic violence victim status; past, current or prospective service in the US uniformed service; US Military/Veteran status; pre-disposing genetic characteristics or any other characteristic protected under applicable federal, state or local law.
Accommodation for applicants with disabilities is available upon request in connection with the recruitment process and/or employment/partnership.RSM is committed to providing equal opportunity and reasonable accommodation for people with disabilities. If you require a reasonable accommodation to complete an application, interview, or otherwise participate in the recruiting process, please call us at 800-274-3978 or send us an email at [email protected].
RSM does not intend to hire entry level candidates who will require sponsorship now OR in the future (i.e. F-1 visa holders). If you are a recent U.S. college / university graduate possessing 1-2 years of progressive and relevant work experience in a same or similar role to the one for which you are applying, excluding internships, you may be eligible for hire as an experienced associate.
RSM will consider for employment qualified applicants with arrest or conviction records. For those living in California or applying to a position in California, please click here for additional information.
At RSM, an employee's pay at any point in their career is intended to reflect their experiences, performance, and skills for their current role. The salary range (or starting rate for interns and associates) for this role represents numerous factors considered in the hiring decisions including, but not limited to, education, skills, work experience, certifications, location, etc. As such, pay for the successful candidate(s) could fall anywhere within the stated range.
Compensation Range: $85,100 - $161,700Individualsselected for this role will be eligible for a discretionary bonus based on firm and individual performance.
RSM is an equal opportunity/affirmative action employer. Minorities/Females/Disabled/Veterans.
Recommended Jobs
Healthcare Sales and Marketing Representative
TITLE: Nurse Manager - Operative Services / OR Manager / Surgical Services Manager Location: Kingman, KS Now is your chance to join a hospital where they are committed to building healthc…
Cyber Security Solutions Architect (pre-sales)
Title: Cyber Security Solutions Architect (pre-sales) Location: Remote Office (within 90 miles radius of the Philly, PA area) Company: Solid growing IT Solution provider Compensation: Lucrativ…
Urologist for Pittsburgh marketplace to replace retiring
Urologist Needed at Pittsburgh marketplace to replace retiring physician - ready made practice. Work at one not for profit hospital and one outpatient clinic setting with 3 other Urologists and 4 AP…
Matl Plan/Sched Sr Partner
Responsibilities for this Position Matl Plan/Sched Sr Partner US-PA-Wilkes-Barre Job ID: 2026-35434 Type: Full Time # of Openings: 1 Category: Supply Chain/Logistics Hanover-P…
Instrumentation & Controls Engineer
Requisition ID: 97373 Job Category: Engineering Location: Pittsburgh, PA, United States Join a company that is passionately committed to the pursuit of a better world through positive ch…
Hand Repair Operator
Quintech Electronics and Communications, Inc. is seeking a Hand Repair Operator whose primary duties will include being responsible for performing precise manual repairs and rework on electronic…
LOCUM Cardiothoracic Physician Assistant
We are hiring a locum Cardiothoracic Physician Assistant for a 6-month LOCUM Need near Pittsburgh, Pennsylvania! Our need is to come and assist in our Operating Room, Floor and Clinic supporting our …
Healthcare Applications Support Lead
Lensa is a career site that helps job seekers find great jobs in the US. We are not a staffing firm or agency. Lensa does not hire directly for these jobs, but promotes jobs on LinkedIn on behalf of …
Board Certified Behavior Analyst (BCBA) (Philadelphia)
Board Certified Behavior Analyst (BCBA) Job description Thrive Therapy Board Certified Behavior Analyst (BCBA) Competitive hourly rate Immediate opening for full caseload or part time h…