MNC InsiderMNC Insider
Microsoft logo

Security Consultant Secops

Microsoft

Security Consultant Secops

full-timePosted: Aug 7, 2026Updated: Aug 27, 2026Hyderabad, TS, IN

Job Description

OverviewThe EAG Security Consultant - SecOps helps customers modernize security operations by designing, implementing, and operationalizing Microsoft Sentinel, Microsoft Defender XDR, Security Copilot, and agentic SOC capabilities. The role blends hands-on delivery, consulting judgment, automation, and customer-facing execution to improve detection, investigation, response, threat hunting, and operational resilience across hybrid and multi-cloud estates.ResponsibilitiesLead SecOps discovery workshops, capture current-state SOC maturity, map detection, response, escalation, and operational gaps, and translate findings into pragmatic modernization roadmaps.Design and implement Microsoft Sentinel architectures including data onboarding, analytics rules, automation playbooks, workbooks, incident enrichment, and operational reporting.Operationalize Microsoft Defender XDR workloads across endpoint, identity, cloud, email, and SaaS signals to improve alert fidelity, investigation depth, and response consistency.Develop KQL hunting logic, incident triage workflows, response playbooks, and reusable delivery assets that reduce manual effort and improve analyst productivity.Apply agentic SOC patterns using SOCBot / Autonomous SOC concepts, with clear human-in-the-loop approval, read/write separation, auditability, and safe automation guardrails.Partner with security architects, customer SOC leaders, product groups, and engineering teams to resolve delivery risks, validate design choices, and drive customer outcomes.Support pre-sales and solution shaping through effort estimation, technical assumptions, discovery questions, solution narratives, and customer-facing demos.QualificationsTechnical Depth Expected-SecOps deliveryMicrosoft Sentinel, SIEM/SOAR modernization, Defender XDR, Microsoft Entra security, threat hunting, incident response, SOC operating model, playbooks, dashboards, and reporting.Automation and AISecurity Copilot usage, Azure AI Foundry awareness, Logic Apps, Azure Functions, PowerShell, KQL, APIs, managed identities, OAuth / OBO concepts, and automation safety controls.Required/Minimum Qualifications Consulting and DeliveryExecutive communication, discovery facilitation, architecture documentation, risk-based prioritization, stakeholder management, quality delivery, and reusable IP contribution.Required Qualifications-5+ years of experience in cybersecurity consulting, security operations, SOC engineering, incident response, SIEM/SOAR, or related security delivery roles.Hands-on experience with Microsoft Sentinel and at least two Defender workloads such as Defender for Endpoint, Defender for Identity, Defender for Cloud, Defender for Cloud Apps, or Defender for Office 365.Strong understanding of detection engineering, incident triage, threat hunting, investigation lifecycle, containment / remediation options, and SOC governance.Ability to produce high-quality customer-facing deliverables such as architecture documents, discovery outputs, deployment plans, design decisions, risk registers, and operational runbooks.Working knowledge of KQL, Microsoft security logs, identity and endpoint signals, cloud security telemetry, and common attack techniques.Experience communicating complex security concepts to technical teams, program stakeholders, and executive audiences.Degree or equivalent experience in Computer Science, Engineering, Information Security, Cybersecurity, or a related discipline. Additional or Preferred Qualifications Ability to identify repeatable delivery IP opportunities and convert project learnings into reusable accelerators, templates, workshops, and enablement materials.Comfortable working across multi-cloud and hybrid customer environments, including ITSM, CMDB, ticketing, threat intelligence, and vulnerability management integrations.Growth mindset to continuously learn EAG Security agent portfolio capabilities and position them in customer conversations and delivery engagements. This position will be open for a minimum of 5 days, with applications accepted on an ongoing basis until the position is filled.Microsoft is an equal opportunity employer. All qualified applicants will receive consideration for employment without regard to age, ancestry, citizenship, color, family or medical care leave, gender identity or expression, genetic information, immigration status, marital status, medical condition, national origin, physical or mental disability, political affiliation, protected veteran or military status, race, ethnicity, religion, sex (including pregnancy), sexual orientation, or any other characteristic protected by applicable local laws, regulations and ordinances. If you need assistance with religious accommodations and/or a reasonable accommodation due to a disability during the application process, read more about requesting accommodations.

Locations

  • Hyderabad, TS, IN

Skills Required

  • cybersecurity consultingintermediate
  • Microsoft Sentinelintermediate
  • KQLintermediate
  • Computer Scienceintermediate

Required Qualifications

  • Technical Depth Expected- (experience)
  • Microsoft Sentinel, SIEM/SOAR modernization, Defender XDR, Microsoft Entra security, threat hunting, incident response, SOC operating model, playbooks, dashboards, and reporting. (experience)
  • Security Copilot usage, Azure AI Foundry awareness, Logic Apps, Azure Functions, PowerShell, KQL, APIs, managed identities, OAuth / OBO concepts, and automation safety controls.Required/Minimum Qualifications (experience)
  • Executive communication, discovery facilitation, architecture documentation, risk-based prioritization, stakeholder management, quality delivery, and reusable IP contribution. (experience)
  • 5+ years of experience in cybersecurity consulting, security operations, SOC engineering, incident response, SIEM/SOAR, or related security delivery roles. (experience, 5 years)
  • Hands-on experience with Microsoft Sentinel and at least two Defender workloads such as Defender for Endpoint, Defender for Identity, Defender for Cloud, Defender for Cloud Apps, or Defender for Office 365. (experience)
  • Strong understanding of detection engineering, incident triage, threat hunting, investigation lifecycle, containment / remediation options, and SOC governance. (experience)
  • Ability to produce high-quality customer-facing deliverables such as architecture documents, discovery outputs, deployment plans, design decisions, risk registers, and operational runbooks. (experience)
  • Working knowledge of KQL, Microsoft security logs, identity and endpoint signals, cloud security telemetry, and common attack techniques. (experience)
  • Experience communicating complex security concepts to technical teams, program stakeholders, and executive audiences. (experience)
  • Degree or equivalent experience in Computer Science, Engineering, Information Security, Cybersecurity, or a related discipline. (experience)

Preferred Qualifications

  • Ability to identify repeatable delivery IP opportunities and convert project learnings into reusable accelerators, templates, workshops, and enablement materials. (experience)
  • Comfortable working across multi-cloud and hybrid customer environments, including ITSM, CMDB, ticketing, threat intelligence, and vulnerability management integrations. (experience)
  • Growth mindset to continuously learn EAG Security agent portfolio capabilities and position them in customer conversations and delivery engagements. (experience)
  • This position will be open for a minimum of 5 days, with applications accepted on an ongoing basis until the position is filled. (experience)

Responsibilities

  • Lead SecOps discovery workshops, capture current-state SOC maturity, map detection, response, escalation, and operational gaps, and translate findings into pragmatic modernization roadmaps.
  • Design and implement Microsoft Sentinel architectures including data onboarding, analytics rules, automation playbooks, workbooks, incident enrichment, and operational reporting.
  • Operationalize Microsoft Defender XDR workloads across endpoint, identity, cloud, email, and SaaS signals to improve alert fidelity, investigation depth, and response consistency.
  • Develop KQL hunting logic, incident triage workflows, response playbooks, and reusable delivery assets that reduce manual effort and improve analyst productivity.
  • Apply agentic SOC patterns using SOCBot / Autonomous SOC concepts, with clear human-in-the-loop approval, read/write separation, auditability, and safe automation guardrails.
  • Partner with security architects, customer SOC leaders, product groups, and engineering teams to resolve delivery risks, validate design choices, and drive customer outcomes.
  • Support pre-sales and solution shaping through effort estimation, technical assumptions, discovery questions, solution narratives, and customer-facing demos.

Benefits

  • general: Flexibility: Balance what matters—your work, your life, and your team—through trust, autonomy, and shared accountability
  • general: Growth: Stretch your skills, expand your impact, and grow with support that meets you where you are
  • general: Wellbeing: Support for your body, mind, and financial future—so you can stay energized and do your best work
  • general: Community PCS: Find your people, build your network, and feel supported every step of the way

Travel Requirements

Less than 25%

Target Your Resume for "Security Consultant Secops" , Microsoft

Get personalized recommendations to optimize your resume specifically for Security Consultant Secops. Takes only 15 seconds!

AI-powered keyword optimization
Skills matching & gap analysis
Experience alignment suggestions

Check Your ATS Score for "Security Consultant Secops" , Microsoft

Find out how well your resume matches this job's requirements. Get comprehensive analysis including ATS compatibility, keyword matching, skill gaps, and personalized recommendations.

ATS compatibility check
Keyword optimization analysis
Skill matching & gap identification
Format & readability score

Tags & Categories

Technology ConsultingConsulting ServicesTechnology ConsultingConsulting Services

Answer 10 quick questions to check your fit for Security Consultant Secops @ Microsoft.

Quiz Challenge
10 Questions
~2 Minutes
Instant Score

Related Books and Jobs

No related jobs found at the moment.