405,710open jobs
14,091companies
78,515added this week
Browse all
Salary
$106k – $197k per year (Estimated)
Location
Remote (United States)
Seniority
Senior · 5+ years exp
Employment
Contractor
Overview
Company
Impact
Profile match
Magnet Forensics is a company that specializes in providing digital forensics and incident response tools. Their solutions, such as Magnet AXIOM and Magnet GrayKey, are used by law enforcement, military, intelligence, and enterprise organizations to recover, analyze, and manage digital evidence. They offer a wide range of tools to support digital investigations, including data extraction from mobile devices, video recovery, and workflow automation.

Role Summary

Magnet Forensics is seeking a highly skilled Microsoft Security Automation & Incident Response Engineer to accelerate the maturity and efficiency of our security operations program.

This resource will be responsible for optimizing and integrating Microsoft's security platform, reducing manual analyst workload, automating repetitive tasks, improving detection coverage, and enhancing incident response capabilities.

The ideal candidate is a hands-on engineer with deep experience in Microsoft Sentinel, Defender XDR, automation, and modern security operations.

This is a 3-4 month contract role

What You'll Do

    Security Operations Optimization

    • Analyze existing alert triage and incident response processes
    • Identify operational bottlenecks and manual activities
    • Implement improvements that reduce analyst effort and response times
    • Improve overall SOC efficiency and effectiveness
    • Detection Engineering

      • Tune Microsoft Sentinel analytics rules
      • Reduce false positives and alert fatigue
      • Create advanced correlation rules and hunting content
      • Improve quality and fidelity of security detections
      • Security Automation

        Design and implement automation for:

        • Alert enrichment
        • Incident routing
        • Ticket creation
        • Escalation workflows
        • Investigation support
        • Standard response actions
        • Platform Integration

          Optimize and integrate:

          • Microsoft Sentinel
          • Microsoft Defender XDR
          • Microsoft Defender for Endpoint
          • Microsoft Defender for Identity
          • Microsoft Defender for Cloud Apps
          • Entra ID
          • Zscaler telemetry
          • Existing ITSM and ticketing platforms
          • Incident Response Support

            • Improve incident response processes
            • Enhance investigation playbooks
            • Develop response automation
            • Create operational runbooks and documentation

What We're Looking For

    Required Qualifications

    • 5+ years in Security Operations, Detection Engineering, or Incident Response
    • Strong Microsoft Sentinel experience
    • Strong Microsoft Defender suite experience
    • Advanced KQL skills
    • Logic Apps experience
    • SOAR automation experience
    • SIEM engineering experience
    • Security operations workflow optimization experience
    • Preferred Qualifications

      • Microsoft Security certifications
      • Threat hunting experience
      • Detection engineering background
      • Experience integrating third-party security telemetry
      • Exposure to Purview and DLP technologies
Free account
Stop reading job ads. Get the ones that fit.
One free account turns this page into a shortlist built around your stack, your level and your pay.
Match on every job. Stack, seniority, pay and location, scored against your profile.
405,710 open roles. Read straight off company career pages, refreshed every day.
Unlimited applications. Every one you send is tracked in one place, on-site or on a company board.
3 tailored CVs a month. Rewritten for the exact job you are applying to. Included free.
Create a free account
Free forever. No card. Under a minute.

Your match

How well do you fit this role?
Two answers are enough for a real match. No account needed.
Check my fit
Answers stay in this browser until you create an account.

Recommended for you based on this role

Similar stack
Same company
In your city
$55k – $142k per year (Estimated) • Remote/Hybrid • Sheffield
DevOps
AWS
Cybersecurity
Microsoft Defender
Microsoft Defender for Cloud
Nessus
Qualys Cloud Platform
Apply
$142k – $236k per year • In office • 7+ years exp • Bachelor's Degree • Chantilly
PowerShell
Python
Databases
Oracle
DevOps
Ansible
AWS
Azure
Azure DevOps
Docker
GCP
GitHub
GitLab
Jenkins
Kubernetes
Terraform
Cybersecurity
Microsoft Defender
Microsoft Sentinel
Apply
In office • 3+ years exp
PowerShell
DevOps
Azure
IAM
Cybersecurity
CyberArk
Microsoft Entra ID
Apply
In office • 3+ years exp • Bachelor's Degree
DevOps
AWS
Azure
Incident Management
Cybersecurity
Zscaler
Apply
$160k – $190k per year • In office • 8+ years exp • Bachelor's Degree
PowerShell
Python
AI/ML
AI Agents
DevOps
AWS
Azure
CI/CD
CloudFormation
GCP
IAM
Rest API
Terraform
Cybersecurity
Delinea
HashiCorp Vault
HIPAA
ISO 27001
Least Privilege
Microsoft Entra ID
Okta
PCI DSS
Cryptography
Vault
Apply
$106k – $190k per year (Estimated) • In office • Full-Time • Las Vegas
Apply
$93k – $129k per year • Remote • Full-Time • 8+ years exp
AI/ML
AI Agents
Apply
Country Manager 9 days ago
Remote • Full-Time • Singapore
Apply
$73k – $154k per year (Estimated) • Remote • Full-Time • 4+ years exp • Bachelor's Degree
C#
JavaScript
PowerShell
Python
SQL
TypeScript
AI/ML
Claude
Claude Code
Copilot
Cursor
Human-in-the-Loop
Management
Jira
Power Automate
Zapier
Apply
$63k – $171k per year (Estimated) • Remote/Hybrid • Full-Time • 4+ years exp • Bachelor's Degree • Waterloo
C#
JavaScript
PowerShell
Python
SQL
TypeScript
AI/ML
Claude
Claude Code
Copilot
Cursor
Human-in-the-Loop
Management
Jira
Power Automate
Zapier
Apply
See all jobs
This is one of many
405,710 more open roles from verified company boards, updated every day.