Jobs · Engineering

Cyber Security Consultant

Mission.dev · United States · 1 wk ago
RemoteRemoteEngineeringContract

About the Company

This cybersecurity firm provides managed detection and response (MDR), offensive security, and threat intelligence services. The organization specializes in proactive risk reduction and strategic advisory for complex environments, including cloud and industrial infrastructure. Its professional services division delivers technical security engagements such as SIEM deployment and security architecture for clients across various highly regulated sectors.

About the Role

As a SIEM Deployment Consultant, you will lead and execute end-to-end platform deployments for external clients on a contract basis. This hands-on role involves designing workspace architectures, building detection content, and integrating full-stack security ecosystems. You will take ownership of the delivery lifecycle, from initial configuration to final hand-off, ensuring a production-ready environment. Your work directly impacts client security posture by enabling automated response workflows and high-fidelity detection capabilities across diverse cloud and on-premise infrastructures.

What You'll Do

  • Lead end-to-end deployment of SIEM environments, including workspace design, log ingestion architecture, and governance.
  • Develop custom analytics rules and detection content using KQL, mapped to industry-standard threat frameworks and client risk priorities.
  • Configure automation workflows and playbooks to streamline incident response and security orchestration.
  • Integrate diverse security stacks across endpoint, identity, and cloud environments to ensure unified visibility.
  • Implement data ingestion strategies and cost governance models to optimize platform performance and efficiency.
  • Execute migrations of security detections and use cases from legacy platforms to modern cloud-based SIEM solutions.
  • Document architectural decisions and create knowledge-transfer materials for client stakeholders and internal delivery teams.
  • Partner with engagement leads to manage project milestones, user acceptance testing, and go-live readiness.

What You Bring

  • 4+ years of experience deploying and administering Microsoft Sentinel in production environments.
  • Proficiency with the Microsoft security ecosystem, including Defender XDR, Entra ID, and Azure Monitor.
  • Advanced KQL skills for developing analytics rules, hunting queries, and reporting workbooks.
  • Experience configuring security automation (Logic Apps, Playbooks) and SOAR concepts.
  • Technical expertise in data connector configuration, including AMA, Syslog/CEF, and API-based integrations.
  • Experience migrating legacy security platforms or MDR services to cloud-native solutions.
  • Strong communication skills with a background in technical consulting or professional services.

Nice to Haves

  • Relevant certifications such as SC-200, AZ-500, or SC-100.
  • Experience in Managed Security Service Provider (MSSP) or MDR delivery environments.
  • Familiarity with multi-cloud environments including AWS and GCP.

Compensation & Benefits

  • 3-month contract with potential for extension.
  • Remote work environment with travel to client sites as required for engagement work.

Similar jobs

Cyber Security Consultant

BMO U.S.Chicago, IL· 1 mo ago
Information Technology$89k–$166k/yrapply on bmo.wd3.myworkdayjobs.com

Cyber Consultant

JobgetherUnited States· 3 wk ago
RemoteEngineering$90–$100/hrapply on jobs.lever.co