Senior Associate - Defense Microsoft Sentinel Engineer

Reposted Yesterday
Be an Early Applicant
2 Locations
In-Office
85K-162K Annually
Senior level
Legal Tech • Other • Professional Services • Business Intelligence • Consulting
The Role
The role involves deploying and optimizing Microsoft Sentinel for security monitoring, developing analytics, automating responses, and collaborating with teams to enhance security posture.
Summary Generated by Built In

We are the leading provider of professional services to the middle market globally, our purpose is to instill confidence in a world of change, empowering our clients and people to realize their full potential. Our exceptional people are the key to our unrivaled, culture and talent experience and our ability to be compelling to our clients. You’ll find an environment that inspires and empowers you to thrive both personally and professionally. There’s no one like you and that’s why there’s nowhere like RSM.

The Defense Microsoft Sentinel Engineer will deploy, configure, and optimize Microsoft Sentinel to monitor, detect, and respond to security threats. This role involves designing SIEM workflows, developing custom analytics rules, and integrating log sources from cloud and on-premises environments. The engineer will automate incident response processes, conduct threat hunting, and ensure compliance with security best practices. Collaboration with SOC analysts, IT teams, and stakeholders is critical to enhancing organizational security posture and mitigating risks for this role.

Responsibilities:

  • SIEM Implementation: Configure Microsoft Sentinel workspaces, data connectors, and log analytics.
  • Threat Detection: Develop custom KQL queries, analytics rules, and workbooks to identify security incidents.
  • Incident Response: Investigate, triage, and remediate security events while documenting root causes.
  • Automation: Build playbooks using Azure Logic Apps or PowerShell/Python scripts to streamline workflows.
  • Log Integration: Ingest and normalize logs from Azure services, firewalls, endpoints, and third-party tools.
  • Threat Hunting: Proactively identify vulnerabilities and adversarial tactics using advanced queries.
  • Collaboration: Partner with SOC, network, and infrastructure teams to refine security strategies.
  • Documentation: Maintain runbooks, incident reports, and configuration guidelines.

Required Qualifications:

  • Bachelor’s degree in Computer Science, Cybersecurity, or related field (or equivalent experience).
  • 2+ years of hands-on experience with Microsoft Sentinel, including log ingestion and KQL query development.
  • Proficiency in scripting languages (PowerShell, Python) for automation and custom tooling.
  • Knowledge of Azure security services (e.g., Azure AD, Log Analytics, Defender).
  • Understanding of SIEM/SOC operations, threat landscapes, and MITRE ATT&CK framework.
  • Strong analytical and problem-solving skills for incident investigation

Preferred Qualifications:

  • Certifications: Microsoft Certified: Azure Security Engineer Associate, CISSP, or GIAC certifications.
  • 3+ years of SIEM experience, including advanced Sentinel use cases like UEBA or SOAR integration.
  • Expertise in Azure infrastructure (e.g., ARM templates, RBAC, Azure Policy).
  • Experience with threat intelligence platforms and hybrid cloud architectures.
  • Familiarity with compliance standards (CMMC,NIST, ISO 27001) and regulatory requirements

At RSM, we offer a competitive benefits and compensation package for all our people. We offer flexibility in your schedule, empowering you to balance life’s demands, while also maintaining your ability to serve clients. Learn more about our total rewards at https://rsmus.com/careers/working-at-rsm/benefits.

All applicants will receive consideration for employment as RSM does not tolerate discrimination and/or harassment based on race; color; creed; sincerely held religious beliefs, practices or observances; sex (including pregnancy or disabilities related to nursing); gender; sexual orientation; HIV Status; national origin; ancestry; familial or marital status; age; physical or mental disability; citizenship; political affiliation; medical condition (including family and medical leave); domestic violence victim status; past, current or prospective service in the US uniformed service; US Military/Veteran status; pre-disposing genetic characteristics or any other characteristic protected under applicable federal, state or local law. 

Accommodation for applicants with disabilities is available upon request in connection with the recruitment process and/or employment/partnership. RSM is committed to providing equal opportunity and reasonable accommodation for people with disabilities. If you require a reasonable accommodation to complete an application, interview, or otherwise participate in the recruiting process, please call us at 800-274-3978 or send us an email at [email protected].

RSM does not intend to hire entry level candidates who will require sponsorship now OR in the future (i.e. F-1 visa holders). If you are a recent U.S. college / university graduate possessing 1-2 years of progressive and relevant work experience in a same or similar role to the one for which you are applying, excluding internships, you may be eligible for hire as an experienced associate.

RSM will consider for employment qualified applicants with arrest or conviction records in accordance with the requirements of applicable law, including but not limited to, the California Fair Chance Act, the Los Angeles Fair Chance Initiative for Hiring Ordinance, the Los Angeles County Fair Chance Ordinance for Employers, and the San Francisco Fair Chance Ordinance. For additional information regarding RSM’s background check process, including information about job duties that necessitate the use of one or more types of background checks, click here.

At RSM, an employee’s pay at any point in their career is intended to reflect their experiences, performance, and skills for their current role. The salary range (or starting rate for interns and associates) for this role represents numerous factors considered in the hiring decisions including, but not limited to, education, skills, work experience, certifications, location, etc. As such, pay for the successful candidate(s) could fall anywhere within the stated range.

Compensation Range: $85,100 - $161,700

Individuals selected for this role will be eligible for a discretionary bonus based on firm and individual performance.

Top Skills

Azure Ad
Azure Logic Apps
Defender
Log Analytics
Microsoft Sentinel
Mitre Att&Ck
Powershell
Python
Am I A Good Fit?
beta
Get Personalized Job Insights.
Our AI-powered fit analysis compares your resume with a job listing so you know if your skills & experience align.

The Company
HQ: Chicago, IL
16,030 Employees
Year Founded: 1926

What We Do

RSM is the leading provider of audit, tax and consulting services to the middle market. With over 11,000 employees across the U.S. and Canada and a global presence in 120 countries, our purpose is to deliver the power of being understood to our clients, colleagues and communities. As first-choice advisors, we are focused on developing leading professionals and innovative services to meet our clients’ evolving needs in today’s ever-changing business environment.

Through a supportive, caring culture, our people are empowered to be their authentic selves and share their unique perspectives. Our culture of diversity and inclusion enhances the insights we provide while transforming innovation, collaboration and business results through fostering an inclusive environment, working hard to engage a talented workforce and reflect our diverse community, and developing relationships that serve others in business and the broader community. Together, our people’s individual talents and diverse perspectives strengthen our teams and enhances the unique insights that we provide to our clients.

Through a supportive, caring culture, our people are empowered to be their authentic selves and share their unique perspectives. Our culture of diversity and inclusion enhances the insights we provide while transforming innovation, collaboration and business results through fostering an inclusive environment, working hard to engage a talented workforce and reflect our diverse community, and developing relationships that serve others in business and the broader community. Together, our people’s individual talents and diverse perspectives strengthen our teams and enhances the unique insights that we provide to our clients.

For more information, visit rsmus.com.

Similar Jobs

Hybrid
Columbus, OH, USA
289097 Employees
Hybrid
Columbus, OH, USA
289097 Employees

JPMorganChase Logo JPMorganChase

Controller

Financial Services
Hybrid
Columbus, OH, USA
289097 Employees
Hybrid
Columbus, OH, USA
289097 Employees

Similar Companies Hiring

Northslope Technologies Thumbnail
Software • Information Technology • Generative AI • Consulting • Artificial Intelligence • Analytics
Denver, CO
60 Employees
Compa Thumbnail
Software • Other • HR Tech • Business Intelligence • Artificial Intelligence
Irvine, CA
60 Employees
Amplify Platform Thumbnail
Fintech • Financial Services • Consulting • Cloud • Business Intelligence • Big Data Analytics
Scottsdale, AZ
62 Employees

Sign up now Access later

Create Free Account

Please log in or sign up to report this job.

Create Free Account