MS Azure DWP Security Specialist

Extelligence is an intelligent partner that goes the extra mile. We provide customized information management solutions for major industries. Our team in Prague and Bucharest is working with international companies, transforming, and adding value to their business on a daily basis. We are growing quickly, and we are interested to bring more talented individuals into our team. 

Candidate Persona:

  • Ability to work with very large and complex network. 
  • Self-motivated individual and creative thinker who will take ownership of tasks and projects, able to work with the team, and manages tasks effectively and has a proven track record of consist and organized outputs.
  • The ideal candidate will demonstrate an eagerness to understand complex problems and requirements, an aptitude for translating these problems/ business risks into workable designs and solutions thereby improving/enhancing security posture, and will possess a keen eye for detail. 
  • Excellent collaboration, documentation and conflict handling skills

Skills Required:

  • Overall experience 4+ years’ for L2: Hands-on experience in 2 or more of the endpoint security technologies. Relevant Microsoft Defender/ADATP experience of 1-3 years
  • Hands on experience on working on Defender/ EDRs
  • Exposure to MITRE framework, Kill Chain and equivalent, Hands on experience in EDR platforms and threat analysis, threat hunting/incident response experience, preferably on defender ATP/MDO/MDI/MDE/Azure Security Center dashboard.

Responsibilities:

  • Check compatibility of EDR with endpoint/ Servers OS (for on prem), Cloud compatibility exists
  • Review and implement defender/ATP Policies/ MDO/MDI/MDE
  • Create a Grouping Structure for EndPoints
  • Deliver a Proof of Concept (POC) and walkthe customer through the implemented policies
  • Security Center ATP dashboard monitoring
  • Provide breakfix support for cases like EDR not detected/corrupt and likewise MDO/MDI/MDE issues
  • Analysis, Investigate and diagnosis of Security Alerts detected by EDR
  • Mitigation of threats detected on security center (EDR)
  • Major incident handling – participation in bridge
  • Vendor Coordination activities for breakfix scenarios
  • Provide RCA for P1/Sev1/Security Incident scenarios
  • Open a problem record in line with the customer policies/processes (based on ITIL best practices)
  • Vendor and cross team coordination
  • Problem Management periodic update and stakeholder communication at agreed frequency
  • Maintain EDR version compliance on endpoints/servers as per the agreed Service Levels
  • Maintain EDR coverage compliance at agreed Service Level
  • Exception Handling/policies configuration for non-compliance machines in line with the exception management policy in place
  • EDR Platform configuration changes
  • Emergency Change compliance report
  • Provide SLA report against agreed SLAs
  • SLA Exception business Case
  • Provide EDR Compliance Report (Version and Coverage) at an agreed frequency
  • SOPs Creation
  • Create/Review/Present weekly/monthly client facing security reports

Qualification:

  • B.E/B.Tech/Degree in CyberSecurity/Forensics
  • B.Tech/preferably a computer science engineering graduate
  • Minimum of 3-9 years of relevant experience and certifications viz: EDR Solution,
  • Defender ATP, Defender for Identity/End Point and Office, SC900, AZ500, SC200, Ninja for MDO/MDI/MDE
  • Understand the partner requirements and business priorities to effectively communicate cyber risks and threats.
  • Experience with analysing host based logs to filter known versus unknown with a goal of finding malicious activity.
  • Ability to work with partners to gather requirements and provided scalable and actionable analytic responses.
  • In-depth experience in intrusion analysis or incident response or pen testing
  • Strong experience analytic techniques using primarily Open Source tools and development.
  • Experience in writing Python or equivalent script
  • Host and Network based malware knowledge preferred
  • General understanding of Linux and Windows and Network Devices.
  • Ability to work in a team environment is a must
  • Experience in working in a high bandwidth team setting

Soft skills: 

  • Shall have Excellent verbal/written communication skills 
  • Shall possess excellent documentation, technical analysis report comprehension and presentation skills
  • Should be willing to work in complex environments/matrix organisation 
  • Should be willing to work in 24×7 environment
  • Incumbents should carry a continual system improvement mindset and be able to demonstrate in work.

Working with Extelligence:

  • We take care of the important things that matter to contractors, for example, we guarantee on-time payment for your work. You will never have to chase us for payment.
  • We always seek to have long term relationships with our team and we always seek to offer opportunities to extend cooperation beyond the first contract or project.
  • Extelligence is a multicultural team, we have more than 15 different nationalities working with us.
  • We also organize events to bring our team together including team building activities and social events.
Job Type: Contract
Job Location: Hybrid in Poland Remote in EU

Apply for this position

Allowed Type(s): .pdf, .doc, .docx