
Security Consultant – Microsoft Sentinel
Posted Sep 1

Posted Sep 1
This is a fully remote position, open to applicants in United States.
• Evaluate and analyze Microsoft Sentinel incidents, analytics rules, detections, and trends for designated clients.
• Examine recurring security signals to detect attack patterns, identify control deficiencies, and track risk trends over time.
• Create, interpret, and clarify KQL queries, workbooks, and Sentinel dashboards.
• Collaborate with MDR and SecOps teams to verify detections, differentiate genuine risks from false alarms, and transform findings into actionable advisory recommendations.
• Advise clients on leveraging Sentinel insights beyond merely responding to alerts.
• Assist and participate in monthly Spyglass security coaching sessions.
• Convert technical outputs from Sentinel into straightforward, business-relevant narratives.
• Engage in both executive and technical security advisory discussions.
• Contribute to customer security roadmaps based on insights derived from Sentinel.
• Evaluate customer security posture across Microsoft Sentinel, Microsoft Defender XDR, and Entra ID.
• Align Sentinel findings with NIST CSF and CIS Controls.
• Identify shortcomings in telemetry, detection coverage, and control effectiveness.
• Aid in scoping, estimating, and validating customer security initiatives.
• Develop security narratives, coaching presentations, and summaries supported by Sentinel for customer-facing purposes.
• Work in conjunction with Security Coaches, Customer Success Managers, MDR, and SecOps teams.
• Practical experience with Microsoft Sentinel, including incident evaluation, analytics rules, workbooks, and KQL.
• Familiarity with Microsoft Defender for Endpoint, Identity, Office 365, Cloud Apps, and Entra ID.
• Proficient in conveying security insights effectively to non-SOC and business stakeholders.
• Background in a consultative or advisory security role.
• Strong sense of ownership and customer-centric communication abilities.
• Capability to manage and balance workload across multiple clients.
• US citizenship, Green Card status, or authorization to work in the United States.
• Preferred Microsoft security certifications (SC-200, SC-300, SC-400, AZ-500).
• Preferred understanding of NIST CSF and CIS Controls.
• Preferred experience in delivering ongoing security coaching or advisory services.
• Preferred background in supporting regulated sectors such as healthcare or financial services.
• Customer-facing advisory position within Spyglass, Quisitive’s Security-as-a-Service offering.
• Flexible remote work arrangement.
Robots & Pencils
Latitude IT Solutions | SDVOSB
Latitude IT Solutions | SDVOSB
11:11 SYSTEMS
Get handpicked remote jobs straight to your inbox weekly.