NuHarbor Security-posted 26 days ago
Full-time • Mid Level
Colchester, VT
101-250 employees

As a Sentinel/XDR Security Deployment Architect at NuHarbor Security, you play a pivotal role in designing and implementing advanced SIEM solutions using both Microsoft Sentinel and Splunk platforms. You will leverage your deep expertise in cybersecurity, SIEM architecture, and complex problem-solving to drive initiatives to successful and timely conclusions. In this role, you will mentor engineers, collaborate with cross-functional teams, and engage with clients to ensure the highest standards of security architecture and implementation are met. This role is a senior technical leader and a recognized expert in Sentinel Security technology with supporting experience in Splunk, providing the context to deliver valuable outcomes to our clients. Success will be defined by meaningful advancements and insights in the application of multi-SIEM capabilities to provide a single and manageable experience of security for NuHarbor operators and client managers and technologists.

  • Architect and implement SIEM solutions using Microsoft Sentinel and Splunk.
  • Develop and maintain SIEM deployment standards, policies, and procedures.
  • Ensure integration with various security tools and technologies.
  • Develop use cases, correlation rules, and alerting for threat detection, analysis, and response.
  • Collaborate with SOC teams to enhance detection and response capabilities.
  • Optimize SIEM performance through tuning and scaling.
  • Conduct regular health checks and maintenance activities.
  • Mentor junior engineers and architects.
  • Provide training sessions and knowledge sharing on SIEM best practices.
  • Work closely with clients to understand their security requirements.
  • Provide technical guidance and recommendations.
  • Participate in client meetings and presentations.
  • Maintain comprehensive documentation of SIEM configurations and changes.
  • Generate reports and dashboards for various stakeholders.
  • Bachelor’s Degree and five (5) or more years in the Information Technology field.
  • Typical Degrees: Computer Science, Computer Engineering, Software Engineering or related field(s).
  • In lieu of a degree, two (2) years of experience in a related technology field and relevant industry certifications are required.
  • 8 years of IT experience, Security or related experience
  • 5 years security architecture/engineering experience in the Microsoft ecosystem, including AD and Azure
  • 3 years of commercial experience implementing DevOps practices and tooling, such as CI/CD pipelines and Infrastructure-as-Code
  • Hands-on experience in Azure Architecture and working independently to manage related projects
  • Designing and deploying solutions in Azure at enterprise scale
  • Strong automation skills.
  • In-depth knowledge of Microsoft Defender, Entra ID, Purview, and Sentinel.
  • Strong understanding of security event logging, correlation, and alerting.
  • Experience with scripting and automation (e.g., PowerShell, Python).
  • Experience with Microsoft Azure IaaS/PaaS/SaaS services (Azure VMs, Azure Storage, Azure SQL, Azure CosmosDB, Azure App Services, etc.).
  • Experience deploying infrastructure with Azure Resource Manager (ARM) and Terraform IaC tools.
  • Experienced and comfortable in architecting highly available systems that utilize Azure-native platforms, horizontal & vertical scalability, load balancing, high availability, and geographical redundancy.
  • Active Microsoft certifications in one or more of the following, acquired at least 1 or more years ago: Microsoft Cybersecurity Architect Expert (SC-100) Azure Solutions Architect Expert (AZ-305)
  • Must be a US Citizen
  • 12 years of IT experience, Security or related experience.
  • Proficient in utilizing Azure monitoring tools and services, such as Azure Monitor, Azure Monitor for Containers, Application Insights, Azure Managed Grafana, Azure Advisor, and Azure Cost Analysis.
  • Skilled in database administration and management using platforms like SQL Server Management Studio and Azure Data Studio, among others.
  • Experience with Docker and Containers Orchestration (Azure Kubernetes Service and/or Azure Container Apps).
  • Published articles or presentations within a security product or services company.
  • Experience in a similar role within a security product or services company.
  • The engagement and support of company leadership who recognize the challenge of marketing a complex cybersecurity service in a chaotic market.
  • An organization that recognizes and rewards employee commitment and contribution to our customers’ satisfaction and success
  • Growth in your career and capabilities as you help to chart a path to improving customer interactivity and service adoption.
  • A collaborative and driven working environment in a rapidly growing company and market
  • A fun and social working environment where you are encouraged to be your true self.
  • You can also expect competitive salary and benefits, including paid time to give back in your community and generous PTO.
© 2024 Teal Labs, Inc
Privacy PolicyTerms of Service