1

Microsoft Sentinel Architect Jobs (NOW HIRING)

Be Seen First

The Microsoft Sentinel Architect will provide technical expertise for the design, implementation, configuration, testing, and operationalization of Microsoft Sentinel within a Microsoft Azure and ...

New

Be Seen First

The Microsoft Sentinel Architect will provide technical expertise for the design, implementation, configuration, testing, and operationalization of Microsoft Sentinel within a Microsoft Azure and ...

New

Be Seen First

The Microsoft Sentinel Architect will provide technical expertise for the design, implementation, configuration, testing, and operationalization of Microsoft Sentinel within a Microsoft Azure and ...

New

Provide recommendations for the architecture of the test environment, ensuring it aligns with best practices for Microsoft Sentinel and Defender XDR. * Develop a comprehensive deployment strategy for ...

next page

Showing results 1-20

Microsoft Sentinel Architect information

See salary details

$46.5K

$128.8K

$201.5K

How much do microsoft sentinel architect jobs pay per year?

As of Sep 10, 2026, the average yearly pay for microsoft sentinel architect in the United States is $128,756.00, according to ZipRecruiter salary data. Most workers in this role earn between $91,000.00 and $166,000.00 per year, depending on experience, location, and employer.

What does a Microsoft Sentinel Architect do?

A Microsoft Sentinel Architect is responsible for designing, implementing, and managing security information and event management (SIEM) solutions using Microsoft Sentinel. They analyze an organization's security requirements, create scalable architectures, integrate data sources, and develop detection rules and automation workflows. Their goal is to enhance security monitoring, incident detection, and response capabilities within the Microsoft cloud ecosystem. Additionally, they provide best practices, ongoing optimization, and support to ensure the effectiveness of the Sentinel deployment.

What are the key skills and qualifications needed to thrive as a Microsoft Sentinel Architect?

To thrive as a Microsoft Sentinel Architect, you need expertise in cybersecurity, cloud architecture, and SIEM solutions, along with relevant certifications such as Microsoft Certified: Security Operations Analyst Associate. Familiarity with tools like Microsoft Sentinel, Azure platform services, Kusto Query Language (KQL), and automation frameworks is crucial. Strong analytical thinking, problem-solving abilities, and effective communication set candidates apart in this role. These skills ensure robust security monitoring, efficient incident response, and optimal integration of Sentinel within complex enterprise environments.

How does a Microsoft Sentinel Architect typically collaborate with security operations and IT teams?

A Microsoft Sentinel Architect works closely with Security Operations Center (SOC) analysts, IT administrators, and other cybersecurity professionals to design and implement scalable security monitoring solutions. They translate business and security requirements into Sentinel use cases, coordinate with IT teams to integrate data sources, and assist SOC teams in developing effective detection rules and automated incident response procedures. Regular communication and cross-functional teamwork are essential, as architects often lead workshops, provide technical guidance, and ensure the Sentinel environment aligns with the organization's broader security strategy.

What is the difference between Microsoft Sentinel Architect vs Security Engineer?

AspectMicrosoft Sentinel ArchitectSecurity Engineer
CertificationsMicrosoft Certified: Security, Compliance, and Identity Fundamentals, Azure Security Engineer AssociateCompTIA Security+, CISSP, CEH
Work EnvironmentDesigning and implementing security solutions using Microsoft Sentinel in cloud and hybrid environmentsMonitoring, analyzing, and responding to security incidents across various systems
Industry UsagePrimarily in organizations leveraging Microsoft cloud servicesAcross diverse industries with varied security tools and platforms

The Microsoft Sentinel Architect focuses on designing and deploying security solutions using Microsoft Sentinel, while the Security Engineer handles day-to-day security monitoring and incident response across multiple platforms. Both roles require security certifications, but the Architect specializes in cloud security architecture, whereas the Engineer emphasizes operational security tasks.

What are popular job titles related to Microsoft Sentinel Architect jobs?

For Microsoft Sentinel Architect jobs, the most frequently searched job titles are:

Infographic showing various Microsoft Sentinel Architect job openings in the United States as of September 2026, with employment types broken down into 1% Internship, 89% Full Time, 7% Part Time, 1% Temporary, and 2% Contract. Highlights an 88% Physical, 4% Hybrid, and 8% Remote job distribution, with an average salary of $128,756 per year, or $61.9 per hour.

Microsoft Sentinel Architect - Federal Contract (Remote)

San Diego, CA • Remote

$100 - $140/hr

Contractor

This job post has expired 1 day ago. Applications are no longer accepted.


Job description

Job Summary

Golden Cloud Services LLC (GCS) is seeking an experienced Microsoft Sentinel Architect to support a proposed federal Microsoft Sentinel implementation project.

This is a remote contract position contingent upon federal contract award.

The Microsoft Sentinel Architect will provide technical expertise for the design, implementation, configuration, testing, and operationalization of Microsoft Sentinel within a Microsoft Azure and Microsoft 365 environment.

The ideal candidate will have extensive SIEM/SOAR experience with significant hands-on Microsoft Sentinel implementation experience. The candidate should be comfortable designing enterprise security-monitoring solutions, integrating Microsoft security services, developing detection and automation capabilities, troubleshooting security integrations, and producing professional technical documentation.

Responsibilities

  • Design, deploy, configure, and optimize Microsoft Sentinel within a Microsoft Azure and Microsoft 365 environment.
  • Assess existing Azure and Microsoft 365 security environments and recommend appropriate Sentinel architecture and configurations.
  • Configure and optimize Azure Log Analytics workspaces.
  • Configure and validate Microsoft Sentinel data connectors.
  • Integrate relevant Microsoft 365, Microsoft Entra ID, Microsoft Defender, Microsoft Intune, Azure, and endpoint security data sources.
  • Develop and tune Microsoft Sentinel analytics and detection rules.
  • Develop Kusto Query Language (KQL) queries for security monitoring, detection, investigation, and reporting.
  • Configure Microsoft Sentinel incidents, alerts, workbooks, and dashboards.
  • Design and implement Sentinel automation rules and SOAR playbooks.
  • Support endpoint and cloud-service onboarding into the security-monitoring environment.
  • Apply SIEM/SOAR, Zero Trust, identity, logging, and security-monitoring best practices.
  • Support testing, validation, troubleshooting, and operational acceptance of the Sentinel environment.
  • Develop solution-design, configuration, operational, and as-built technical documentation.
  • Provide technical knowledge transfer and administrator training.
  • Collaborate with GCS management, cybersecurity personnel, system administrators, and customer technical stakeholders throughout implementation.

Required Qualifications

  • 5+ years of professional SIEM/SOAR experience.
  • 2+ years of hands-on Microsoft Sentinel experience.
  • Demonstrated experience designing or implementing Microsoft Sentinel in production environments.
  • Strong Microsoft Azure and Microsoft 365 security experience.
  • Hands-on experience with Azure Log Analytics.
  • Hands-on experience with Kusto Query Language (KQL).
  • Experience configuring Microsoft Sentinel data connectors, analytics rules, incidents, workbooks, automation rules, and playbooks.
  • Experience integrating Microsoft Sentinel with services such as Microsoft Entra ID, Microsoft Defender, Microsoft Intune, Microsoft 365, and Azure.
  • Strong understanding of cybersecurity monitoring, incident detection, identity and access management, vulnerability management, and security operations.
  • Familiarity with federal cybersecurity frameworks and requirements, including NIST and the Risk Management Framework (RMF).
  • Ability to develop professional technical architecture, configuration, operational, and as-built documentation.
  • Strong written and verbal communication skills.

Preferred Qualifications

  • Previous federal government or Department of Defense IT/cybersecurity experience.
  • Experience implementing Microsoft Sentinel in government or other highly regulated environments.
  • Experience with Microsoft Defender XDR.
  • Experience developing security automation using Azure Logic Apps, PowerShell, APIs, or related technologies.
  • Experience with Zero Trust security architectures.
  • Familiarity with FedRAMP, FISMA, NIST 800-series guidance, and federal cloud-security requirements.
  • Experience providing technical training and knowledge transfer.

Certifications

Candidates should identify all current Microsoft, Azure, cloud, and cybersecurity certifications on their resume.

Relevant certifications may include:

  • Microsoft Certified: Cybersecurity Architect Expert
  • Microsoft Certified: Security Operations Analyst Associate
  • Microsoft Certified: Azure Security Engineer Associate
  • Microsoft Certified: Azure Solutions Architect Expert
  • CISSP
  • CompTIA Security+
  • Other relevant Microsoft security, Azure, SIEM, or cybersecurity certifications

Federal Proposal / Key Personnel Documentation

This position may be proposed as Key Personnel on a federal government contract.

Candidates must be willing to provide documentation supporting their qualifications, including:

  • Current professional resume
  • Employment and project history
  • Dates demonstrating required SIEM/SOAR experience
  • Microsoft Sentinel implementation experience
  • Current professional certifications
  • Availability
  • Desired contract/hourly rate

Candidate information will only be used for the applicable federal proposal with the candidate's authorization.

Position Details

Location: Remote – United States

Employment Type: Contract / 1099

Compensation: $100–$140 per hour, depending on qualifications, Microsoft Sentinel experience, certifications, and relevant federal experience.

Schedule: Project-based. Actual hours will be determined by project requirements.

Project Duration: Anticipated up to 12 months, subject to final contract requirements.

Start Date: Contingent upon federal contract award.

Important Notice

This position is contingent upon Golden Cloud Services LLC receiving the applicable federal contract award.

This job posting does not constitute a guarantee of employment, contract engagement, start date, project duration, or minimum number of hours.