Design, implement, and configure MDR/SIEM/EDR solutions using Microsoft Sentinel and Microsoft Defender for Endpoint. * Lead large-scale rollout of endpoint agents across Azure, Windows, Linux, and ...
Design, implement, and configure MDR/SIEM/EDR solutions using Microsoft Sentinel and Microsoft Defender for Endpoint. * Lead large-scale rollout of endpoint agents across Azure, Windows, Linux, and ...
Design, implement, and configure MDR/SIEM/EDR solutions using Microsoft Sentinel and Microsoft Defender for Endpoint. * Lead large-scale rollout of endpoint agents across Azure, Windows, Linux, and ...
Quick apply
Design, implement, and configure MDR/SIEM/EDR solutions using Microsoft Sentinel and Microsoft Defender for Endpoint. * Lead large-scale rollout of endpoint agents across Azure, Windows, Linux, and ...
Monitor security events using Azure Sentinel, ArcSight, and other SIEM tools * Perform initial triage and classification of security incidents * Analyze phishing and spam emails, reviewing headers ...
Monitor security events using Azure Sentinel, ArcSight, and other SIEM tools * Perform initial triage and classification of security incidents * Analyze phishing and spam emails, reviewing headers ...
Monitor security events using Azure Sentinel, ArcSight, and other SIEM tools * Perform initial triage and classification of security incidents * Analyze phishing and spam emails, reviewing headers ...
Monitor security events using Azure Sentinel, ArcSight, and other SIEM tools * Perform initial triage and classification of security incidents * Analyze phishing and spam emails, reviewing headers ...
CSSP Analyst, Journeyman
Indianapolis, IN · On-site
Monitor security events using Azure Sentinel, ArcSight, and other SIEM tools * Perform initial triage and classification of security incidents * Analyze phishing and spam emails, reviewing headers ...
CSSP Analyst, Journeyman
Indianapolis, IN · On-site
Monitor security events using Azure Sentinel, ArcSight, and other SIEM tools * Perform initial triage and classification of security incidents * Analyze phishing and spam emails, reviewing headers ...
Information Technology Project Manager, Senior (CSSP Engineering Team Lead) P06
Indianapolis, IN · On-site
$99K - $134K/yr
Direct Security Information and Event Management (SIEM) engineering including Splunk, ArcSight, Microsoft Sentinel, and Azure Data Explorer (ADX) * Oversee CSSP tool suite engineering including ...
Information Technology Project Manager, Senior (CSSP Engineering Team Lead) P06
Indianapolis, IN · On-site
$99K - $134K/yr
Direct Security Information and Event Management (SIEM) engineering including Splunk, ArcSight, Microsoft Sentinel, and Azure Data Explorer (ADX) * Oversee CSSP tool suite engineering including ...
Information Technology Project Manager, Senior (CSSP Engineering Team Lead) P06
Indianapolis, IN · On-site
$99K - $134K/yr
Direct Security Information and Event Management (SIEM) engineering including Splunk, ArcSight, Microsoft Sentinel, and Azure Data Explorer (ADX) * Oversee CSSP tool suite engineering including ...
Information Technology Project Manager, Senior (CSSP Engineering Team Lead) P06
Indianapolis, IN · On-site
$99K - $134K/yr
Direct Security Information and Event Management (SIEM) engineering including Splunk, ArcSight, Microsoft Sentinel, and Azure Data Explorer (ADX) * Oversee CSSP tool suite engineering including ...
Information Technology Project Manager, Senior (CSSP Engineering Team Lead) P06
Indianapolis, IN · On-site
$100K - $137K/yr
... SIEM) engineering including Splunk, ArcSight, Microsoft Sentinel, and Azure Data Explorer (ADX) • Oversee CSSP tool suite engineering including Microsoft Defender for Endpoint (MDE), Defender for ...
Information Technology Project Manager, Senior (CSSP Engineering Team Lead) P06
Indianapolis, IN · On-site
$100K - $137K/yr
... SIEM) engineering including Splunk, ArcSight, Microsoft Sentinel, and Azure Data Explorer (ADX) • Oversee CSSP tool suite engineering including Microsoft Defender for Endpoint (MDE), Defender for ...
Direct real-time security event correlation, threat detection, and analysis using SIEM platforms (Splunk, ArcSight, Microsoft Sentinel) * Manage cyber security incident response including detection ...
Direct real-time security event correlation, threat detection, and analysis using SIEM platforms (Splunk, ArcSight, Microsoft Sentinel) * Manage cyber security incident response including detection ...
Direct real-time security event correlation, threat detection, and analysis using SIEM platforms (Splunk, ArcSight, Microsoft Sentinel) * Manage cyber security incident response including detection ...
Direct real-time security event correlation, threat detection, and analysis using SIEM platforms (Splunk, ArcSight, Microsoft Sentinel) * Manage cyber security incident response including detection ...
CSSP Analyst, Senior P42- P45
Indianapolis, IN · On-site
$87K - $113K/yr
... level SIEM analysis (Azure Sentinel, ArcSight, Splunk) • Experience with threat hunting and event correlation • Incident response and digital forensics experience • Knowledge of malware ...
CSSP Analyst, Senior P42- P45
Indianapolis, IN · On-site
$87K - $113K/yr
... level SIEM analysis (Azure Sentinel, ArcSight, Splunk) • Experience with threat hunting and event correlation • Incident response and digital forensics experience • Knowledge of malware ...
Expert-level SIEM analysis (Azure Sentinel, ArcSight, Splunk) * Experience with threat hunting and event correlation * Incident response and digital forensics experience * Knowledge of malware ...
Expert-level SIEM analysis (Azure Sentinel, ArcSight, Splunk) * Experience with threat hunting and event correlation * Incident response and digital forensics experience * Knowledge of malware ...
Expert-level SIEM analysis (Azure Sentinel, ArcSight, Splunk) * Experience with threat hunting and event correlation * Incident response and digital forensics experience * Knowledge of malware ...
Expert-level SIEM analysis (Azure Sentinel, ArcSight, Splunk) * Experience with threat hunting and event correlation * Incident response and digital forensics experience * Knowledge of malware ...
Architect, Security Products
Carmel, IN · Remote
$61.50 - $79.50/hr
Experience with SIEM integrations (Syslog, Splunk, Sentinel, QRadar), NAC/identity, IDS use cases (Dragos, Claroty, Nozomi Networks, etc.) and zero trust concepts. * Certifications (nice to have)
Architect, Security Products
Carmel, IN · Remote
$61.50 - $79.50/hr
Experience with SIEM integrations (Syslog, Splunk, Sentinel, QRadar), NAC/identity, IDS use cases (Dragos, Claroty, Nozomi Networks, etc.) and zero trust concepts. * Certifications (nice to have)
CSSP Analyst, Senior
Indianapolis, IN · On-site
$91K - $120K/yr
Expert-level SIEM analysis (Azure Sentinel, ArcSight, Splunk) * Experience with threat hunting and event correlation * Incident response and digital forensics experience * Knowledge of malware ...
CSSP Analyst, Senior
Indianapolis, IN · On-site
$91K - $120K/yr
Expert-level SIEM analysis (Azure Sentinel, ArcSight, Splunk) * Experience with threat hunting and event correlation * Incident response and digital forensics experience * Knowledge of malware ...
Architect, Security Products
Carmel, IN · On-site
$61.50 - $79.50/hr
Experience with SIEM integrations (Syslog, Splunk, Sentinel, QRadar), NAC/identity, IDS use cases (Dragos, Claroty, Nozomi Networks, etc.) and zero trust concepts. * Certifications (nice to have)
Architect, Security Products
Carmel, IN · On-site
$61.50 - $79.50/hr
Experience with SIEM integrations (Syslog, Splunk, Sentinel, QRadar), NAC/identity, IDS use cases (Dragos, Claroty, Nozomi Networks, etc.) and zero trust concepts. * Certifications (nice to have)
Manager, Cyber Security
Indianapolis, IN · Hybrid
$150K - $165K/yr
Proficiency with SIEM platforms (e.g., Splunk, Microsoft Sentinel, QRadar) * Experience with vulnerability management tools (e.g., Tenable, Qualys, Rapid7) * Working knowledge of cloud security in ...
Manager, Cyber Security
Indianapolis, IN · Hybrid
$150K - $165K/yr
Proficiency with SIEM platforms (e.g., Splunk, Microsoft Sentinel, QRadar) * Experience with vulnerability management tools (e.g., Tenable, Qualys, Rapid7) * Working knowledge of cloud security in ...
... with SIEM tools (Splunk, ELK, Azure Sentinel) • Experience in regulated industries: Banking, Healthcare, Insurance Qualifications • Bachelor's or Master's in Computer Science, Information ...
... with SIEM tools (Splunk, ELK, Azure Sentinel) • Experience in regulated industries: Banking, Healthcare, Insurance Qualifications • Bachelor's or Master's in Computer Science, Information ...
Manager, Cyber Security
Indianapolis, IN · On-site
$150K - $165K/yr
Proficiency with SIEM platforms (e.g., Splunk, Microsoft Sentinel, QRadar) * Experience with vulnerability management tools (e.g., Tenable, Qualys, Rapid7) * Working knowledge of cloud security in ...
Quick apply
Manager, Cyber Security
Indianapolis, IN · On-site
$150K - $165K/yr
Proficiency with SIEM platforms (e.g., Splunk, Microsoft Sentinel, QRadar) * Experience with vulnerability management tools (e.g., Tenable, Qualys, Rapid7) * Working knowledge of cloud security in ...
Principal, Security Strategy
Carmel, IN · On-site
Experience with SIEM integrations (Syslog, Splunk, Sentinel, QRadar), NAC/identity, IDS use cases (Dragos, Claroty, Nozomi Networks, etc.) and zero trust concepts. * Experience supporting M&A / ...
Principal, Security Strategy
Carmel, IN · On-site
Experience with SIEM integrations (Syslog, Splunk, Sentinel, QRadar), NAC/identity, IDS use cases (Dragos, Claroty, Nozomi Networks, etc.) and zero trust concepts. * Experience supporting M&A / ...
Sentinel Siem information
What is a Sentinel SIEM?
What are some common challenges faced by professionals working with Microsoft Sentinel SIEM, and how can they be addressed?
What are the key skills and qualifications needed to thrive as a Sentinel SIEM specialist?
What is the difference between Sentinel Siem vs Splunk Security Analyst?
| Aspect | Sentinel Siem | Splunk Security Analyst |
|---|---|---|
| Certifications | Microsoft Certified: Security, Compliance, and Identity Fundamentals, Azure Security Engineer | Splunk Certified User, Splunk Core Certified Power User |
| Work Environment | Cloud-based SIEM platform, integrated with Azure services | On-premises or cloud, data analysis and security monitoring |
| Industry Usage | Primarily used in organizations leveraging Microsoft Azure and cloud security | Used across various industries for security data analysis and monitoring |
Sentinel Siem focuses on cloud-native security monitoring within Microsoft Azure environments, while Splunk Security Analyst specializes in analyzing security data across diverse platforms. Both roles require knowledge of security principles and data analysis, but Sentinel Siem emphasizes Azure integration, whereas Splunk offers broader data handling capabilities.
Contractor
Medical, Dental, Vision, Life, Retirement
Re-posted 12 hours ago
Job description
Job Title: Azure, Windows & Linux System Engineer
Location: Elkhart, IN
Zip Code: 46514
Start Date: Right Away
Keywords: #ElkhartJobs; #SystemEngineerjobs;
Job Description:
The Azure, Windows & Linux System Engineer will leverage automation (Ansible, PowerShell, Bash) to execute large-scale deployments across Windows, Linux, and operational technology (OT) environments. They will configure Azure components, including Log Analytics Workspaces, resource groups, RBAC, and
service principals, and manage Sentinel data ingestion through Azure Monitor Agent (AMA), Data
Collection Rules (DCRs), and syslog/CEF forwarders.
Position Objectives:
* Design, implement, and configure MDR/SIEM/EDR solutions using Microsoft Sentinel and
Microsoft Defender for Endpoint.
* Lead large-scale rollout of endpoint agents across Azure, Windows, Linux, and OT
environments.
* Develop and maintain Ansible playbooks to automate deployments and configuration at
scale.
* Create and optimize PowerShell and Bash scripts to streamline onboarding, validation, and
troubleshooting processes.
* Provision and manage Azure resources, including Log Analytics Workspaces, resource
groups, RBAC roles, and service principals.
* Configure and maintain Sentinel data ingestion pipelines using Azure Monitor Agent (AMA)
and Data Collection Rules (DCRs).
* Implement and maintain syslog/CEF forwarding from network and security devices.
* Integrate logs from platforms such as Check Point and Extreme Networks into the SIEM.
* Deploy and onboard Microsoft Defender for Endpoint across Windows and Linux systems.
* Validate telemetry flow and ensure endpoints are correctly reporting to the SIEM.
* Troubleshoot Windows Server (2019/2022/2025) and Active Directory issues, including
GPOs, service accounts, and RBAC permissions.
* Perform Linux system administration tasks on Rocky Linux and Ubuntu (package
management, system services, firewall configuration).
* Ensure all implementations align with organizational security standards and PCI
compliance requirements.
* Maintain awareness of PCI-scoped environments during deployment and data ingestion
activities.
* Work cross-functionally with security, infrastructure, and operations teams to ensure
successful deployments.
* Create and maintain technical documentation, runbooks, and operational procedures.
* Conduct testing and validation of data pipelines, detections, and endpoint coverage.
* Continuously improve deployment processes and system performance through automation
and best practices
Qualifications:
* Ansible playbook development for at-scale Windows/Linux/OT rollout
* Azure administration - Log Analytics Workspaces, resource groups, RBAC, service
principals
* Sentinel data ingestion - AMA, DCRs, syslog/CEF forwarders
* Microsoft Defender for Endpoint deployment on Windows and Linux servers
* Rocky Linux and Ubuntu administration competence for troubleshooting package
management, systems, firewalls on the Linux side; GPO, services, and AD account/RBAC
* Windows Server 2019/2022/2025 and Active Directory competence for troubleshooting
GPO, service accounts, and AD RBAC for the DC/server agent rollout
* Check Point and Extreme Networks basic knowledge (for the syslog server)
* PowerShell and Bash scripting
* PCI scope awareness
Internal Responsibilities:
* Adheres to all company policies and procedures including, but not limited to those identified within the Standards of Business Conduct and the Employee Handbook, as may be amended from time to time. Adheres to all applicable laws and regulations and the company's governance/compliance program.
* Becomes knowledgeable of internal control responsibilities through training and instruction. Responsible and accountable for internal control performance within their area of responsibility. Participates in the internal controls self-assessment process.
* Ensures concerns with internal control design or performance and process changes that impact internal control execution are communicated to management.
* Possesses a full and complete understanding of the internal control requirements within their area of ownership/responsibility. Responsible and accountable for internal control implementation and performance within their area of ownership/responsibility. Ensures proper internal control change management protocol is followed.
Benefits:
* Medical / Health Benefits with multiple plan options, Flexible Spending Accounts, Dental and Vision
* 401k
* On the job training / cross-training
* Life Insurance, disability insurance
* Voluntary life insurance for family members available.
* Accident and critical illness insurance optional.
* Scheduled performance reviews
If you are interested in this role, please apply via the apply now link provided. Our overriding goal is to provide quality staffing solutions that help people, organizations, and communities succeed. Belcan is a leading provider of qualified personnel to many of the world's most respected enterprises. We offer excellent opportunities for contract, temporary, temp-to-hire, and direct assignments. We are the employer of choice for thousands worldwide. For more information, please visit our website at Belcan.com
EOE/F/M/D/V
About Belcan
Sourced by ZipRecruiter
Belcan is a leading provider of qualified personnel to many of the world's most respected enterprises. We offer excellent opportunities for contract/temporary, temp-to-hire, and direct assignments in the engineering, IT, and professional fields. We are the employer of choice for thousands worldwide. Our overriding goal is to provide quality staffing solutions that help people, organizations, and communities succeed.
Industry
It services
Company size
5,001 - 10,000 Employees
Headquarters location
Cincinnati, OH, US
Year founded
1958