2

Remote Microsoft Security Operations Analyst Jobs in Forney, TX

Senior Microsoft Security Engineer

Murphy, TX ยท Remote

$109K - $150K/yr

Remote About the Role Senior Microsoft Security Engineer who knows Sentinel inside and out - and ... Security Operations Analyst Associate (SC-200) - strongly preferred * Microsoft Certified:

New

Senior Microsoft Security Engineer

Murphy, TX ยท Remote

$109K - $150K/yr

Remote About the Role Senior Microsoft Security Engineer who knows Sentinel inside and out - and ... Security Operations Analyst Associate (SC-200) - strongly preferred * Microsoft Certified:

New

Monitor and analyze threat intelligence to identify potential security threats. * Implement and manage threat detection and prevention technologies. * Conduct penetration testing and red-team ...

THE ROLE As a Data Operations Analyst, you will help identify promising markets, companies ... This is a remote, flexible role for candidates who are analytical, commercially curious, and ...

THE ROLE As a Technical Operations Analyst, you will help identify promising markets, companies ... This is a remote, flexible role for candidates who are analytical, commercially curious, and ...

New

Cloud Security Engineer

Dallas, TX ยท On-site +1

  • Medical

  • Dental

  • Vision

  • Life

  • Retirement

  • PTO

... GCP), Microsoft Azure, and Amazon Web Services (AWS), with a strong emphasis on GCP. You will ... Cloud Security Operations: Design, implement, and optimize robust cloud security architectures to ...

next page

Showing results 1-20

Remote Microsoft Security Operations Analyst information

See Forney, TX salary details

$15

$39

$54

How much do remote microsoft security operations analyst jobs pay per hour?

As of Aug 13, 2026, the average hourly pay for remote microsoft security operations analyst in Forney, TX is $39.77, according to ZipRecruiter salary data. Most workers in this role earn between $31.20 and $49.13 per hour, depending on experience, location, and employer.

What is a Remote Microsoft Security Operations Analyst?

A Remote Microsoft Security Operations Analyst is a cybersecurity professional who monitors, investigates, and responds to security threats and incidents within Microsoft environments, such as Microsoft 365, Azure, and Windows systems, while working remotely. They use various security tools and platforms, like Microsoft Sentinel and Defender, to detect suspicious activity, analyze alerts, and implement security measures. Their primary goal is to protect organizational data and systems from cyber threats by identifying vulnerabilities and addressing them promptly, all while collaborating with other IT and security teams from a remote location.

How does a Remote Microsoft Security Operations Analyst typically collaborate with other IT and security team members?

As a Remote Microsoft Security Operations Analyst, you will frequently work alongside IT administrators, incident response teams, and other security professionals to monitor, investigate, and respond to security threats. Collaboration often takes place through virtual meetings, shared dashboards, and ticketing systems to ensure timely communication and efficient incident handling. You may also participate in cross-functional projects, sharing insights from security monitoring tools like Microsoft Sentinel or Defender, and help develop or refine company-wide security policies and procedures. Effective communication and documentation skills are key to ensuring alignment and maintaining a strong security posture while working remotely.

What is the difference between Remote Microsoft Security Operations Analyst vs Remote Cybersecurity Analyst?

AspectRemote Microsoft Security Operations AnalystRemote Cybersecurity Analyst
CertificationsMicrosoft Security certifications, CompTIA Security+CompTIA Security+, CISSP, CEH
Work EnvironmentPrimarily within Microsoft security tools and cloud platformsVaried environments, including multiple security tools and platforms
Industry UsageCommon in organizations using Microsoft products and cloud servicesWidespread across industries with diverse security needs
Job FocusMonitoring Microsoft security solutions, incident response, threat detectionBroader security analysis, vulnerability assessment, incident handling

The Remote Microsoft Security Operations Analyst specializes in managing Microsoft security tools and cloud environments, focusing on threat detection and incident response within Microsoft ecosystems. In contrast, the Remote Cybersecurity Analyst has a broader scope, working across various security platforms and industries. Both roles require security certifications but differ in their technical focus and work environment.

What are the key skills and qualifications needed to thrive as a Remote Microsoft Security Operations Analyst, and why are they important?

To thrive as a Remote Microsoft Security Operations Analyst, you need strong knowledge of cybersecurity principles, threat detection, incident response, and familiarity with Microsoft security solutions, often supported by a relevant degree or certifications like Microsoft Certified: Security Operations Analyst Associate. Proficiency with tools such as Microsoft Sentinel, Defender for Endpoint, and Security Information and Event Management (SIEM) systems is essential. Excellent problem-solving, analytical thinking, and clear communication are crucial soft skills for investigating threats and collaborating with distributed teams. These skills ensure effective protection of organizational assets, quick response to security incidents, and seamless remote teamwork in a dynamic security environment.
What are the most commonly searched types of Microsoft Security Operations Analyst jobs in Forney, TX? The most popular types of Microsoft Security Operations Analyst jobs in Forney, TX are:
What are popular job titles related to Remote Microsoft Security Operations Analyst jobs in Forney, TX? For Remote Microsoft Security Operations Analyst jobs in Forney, TX, the most frequently searched job titles are:
What job categories do people searching Remote Microsoft Security Operations Analyst jobs in Forney, TX look for? The top searched job categories for Remote Microsoft Security Operations Analyst jobs in Forney, TX are:
What cities near Forney, TX are hiring for Remote Microsoft Security Operations Analyst jobs? Cities near Forney, TX with the most Remote Microsoft Security Operations Analyst job openings:

Senior Microsoft Security Engineer

3B Staffing LLC

Murphy, TX โ€ข Remote

$109K - $150K/yr

Full-time

This job post hasย expired 1 day ago.ย Applications are no longer accepted.


Job description

Senior Microsoft Security Engineer Sentinel & Defender XDR Duration : 6 + months Location : Remote About the Role Senior Microsoft Security Engineer who knows Sentinel inside and out - and can carry that expertise across into Defender XDR. This is not a generalist role. The ideal candidate has deep, hands-on Sentinel experience, understands how Defender XDR maps to it functionally, and has ideally led or been a key contributor to a Sentinel-to-XDR migration in a production environment. You will be embedded with a client SOC team, owning detection engineering, platform configuration, and the technical work required to bridge two platforms without dropping coverage or continuity. If you have lived through a migration and know where the gaps are, this role was written for you. Key Responsibilities Microsoft Sentinel (Primary Platform)
  • Design, configure, and optimize Microsoft Sentinel environments including data connectors, analytics rules, and workbooks
  • Build and maintain detection logic using UEBA, ML-based anomaly detection, and threat intelligence integrations
  • Develop KQL queries and hunting workbooks for proactive threat identification
  • Create and manage SOAR playbooks via Azure Logic Apps to automate SOC response workflows
  • Continuously tune detection rules and reduce false positive rates in partnership with the SOC team
  • Document architecture decisions, runbooks, and operational procedures
Microsoft Defender XDR (Secondary Platform)
  • Map existing Sentinel analytics rules, KQL logic, and detection coverage to Defender XDR equivalents
  • Configure and manage Defender for Endpoint, Defender for Identity, Defender for Office 365, and Defender for Cloud Apps within a unified XDR framework
  • Define and implement custom detection rules, incidents, and automated response actions within Defender XDR
  • Assess capability gaps between the two platforms and develop mitigation or transition plans
  • Leverage AI-native Defender XDR capabilities including automatic attack disruption and AI-assisted investigation
Migration & Cross-Platform Work
  • Lead or support Sentinel-to-XDR migration workstreams including data migration, rule translation, and platform configuration
  • Identify functional equivalencies and gaps between platforms and communicate tradeoffs clearly to SOC leadership
  • Integrate both platforms with SIEM, SOAR, and CTI tooling as needed
  • Support Copilot for Security and AI-powered SOC automation use cases across both platforms
Required Qualifications
  • 5+ years of hands-on experience with Microsoft Sentinel in an enterprise SOC environment - this is non-negotiable
  • Strong proficiency in KQL and the ability to translate detection logic across platforms
  • Hands-on experience or equivalent training with Microsoft Defender for XDR, including deep familiarity with its sub-components: Defender for Endpoint, Defender for Identity, Defender for Office 365, and Defender for Cloud Apps (Note: Microsoft Defender XDR was released March 2026 - equivalent platform knowledge and migration readiness will be considered in place of tenure)
  • Demonstrated experience with or direct involvement in a Sentinel-to-Defender XDR migration, or the ability to map Sentinel functionality to Defender XDR equivalents based on deep platform knowledge of both
  • Solid understanding of XDR concepts, cross-domain correlation, and automated incident response
  • Deep familiarity with the MITRE ATT&CK framework and its application to detection engineering
  • Experience with Azure Logic Apps, Power Automate, or similar automation platforms
  • Background in threat hunting, incident response, and SOC operations
Preferred Qualifications
  • Microsoft Certified: Security Operations Analyst Associate (SC-200) - strongly preferred
  • Microsoft Certified: Cybersecurity Architect Expert (SC-100) - a plus
  • Both certifications held simultaneously - this will stand out
  • Hands-on experience with Copilot for Security and AI-assisted investigation features in Defender XDR
  • Prior involvement in large-scale SIEM or XDR platform migrations
  • Background in CTI integration and tooling
  • Experience supporting global SOC teams across multiple regions
  • Familiarity with SOAR platforms, CRIBL, or similar tools in the SOC ecosystem
  • Exposure to digital forensics or agentic AI workflows in a security operations context