Magnet Forensics Logo

Magnet Forensics

Microsoft Security Automation & Incident Response Engineer - Contract Position

Posted 22 Days Ago
Remote
Hiring Remotely in United States
Senior level
Remote
Hiring Remotely in United States
Senior level
Optimize Microsoft security operations by tuning Sentinel detections, reducing false positives, designing alert and incident-response automation, integrating Defender products and third-party telemetry, improving SOC workflows, and developing investigation playbooks, runbooks, and documentation. This hands-on 3–4 month contract requires strong Sentinel and Defender expertise, advanced KQL, Logic Apps, SOAR automation, SIEM engineering, and security operations optimization experience.
The summary above was generated by AI
Who We Are; What We Do; Where We’re Going
 
Magnet Forensics is a global leader in the development of digital investigative software that acquires, analyzes, and shares evidence from computers, smartphones, tablets, and IoT-related devices. We are continually innovating so our customers can deploy advanced and effective tools to protect their companies, communities, and countries.
 
Serving thousands of customers globally, our solutions are playing a crucial role in modernizing digital investigations, helping investigators fight crime, protect assets, and guard national security.
 
With employees based around the world, Magnet Forensics has been expanding our global presence. As a part of Magnet Forensics, you can expect to make a difference in the world, no matter what role you play. You’ll be supported through learning and development, not to mention an incredible team with unbelievable talent and integrity.
 
If you think you would be the right person to join our team working towards this goal, we would love to hear from you! 

Role Summary
 

Magnet Forensics is seeking a highly skilled Microsoft Security Automation & Incident Response Engineer to accelerate the maturity and efficiency of our security operations program.

This resource will be responsible for optimizing and integrating Microsoft's security platform, reducing manual analyst workload, automating repetitive tasks, improving detection coverage, and enhancing incident response capabilities.

The ideal candidate is a hands-on engineer with deep experience in Microsoft Sentinel, Defender XDR, automation, and modern security operations.

This is a 3-4 month contract role

What You'll Do

    Security Operations Optimization

    • Analyze existing alert triage and incident response processes
    • Identify operational bottlenecks and manual activities
    • Implement improvements that reduce analyst effort and response times
    • Improve overall SOC efficiency and effectiveness
    • Detection Engineering

      • Tune Microsoft Sentinel analytics rules
      • Reduce false positives and alert fatigue
      • Create advanced correlation rules and hunting content
      • Improve quality and fidelity of security detections
      • Security Automation

        Design and implement automation for:

        • Alert enrichment
        • Incident routing
        • Ticket creation
        • Escalation workflows
        • Investigation support
        • Standard response actions
        • Platform Integration

          Optimize and integrate:

          • Microsoft Sentinel
          • Microsoft Defender XDR
          • Microsoft Defender for Endpoint
          • Microsoft Defender for Identity
          • Microsoft Defender for Cloud Apps
          • Entra ID
          • Zscaler telemetry
          • Existing ITSM and ticketing platforms
          • Incident Response Support

            • Improve incident response processes
            • Enhance investigation playbooks
            • Develop response automation
            • Create operational runbooks and documentation

What We're Looking For

    Required Qualifications

    • 5+ years in Security Operations, Detection Engineering, or Incident Response
    • Strong Microsoft Sentinel experience
    • Strong Microsoft Defender suite experience
    • Advanced KQL skills
    • Logic Apps experience
    • SOAR automation experience
    • SIEM engineering experience
    • Security operations workflow optimization experience
    • Preferred Qualifications

      • Microsoft Security certifications
      • Threat hunting experience
      • Detection engineering background
      • Experience integrating third-party security telemetry
      • Exposure to Purview and DLP technologies

Indicators of Success
 
We’re looking for someone who checks off most, but not all, of the boxes listed in “skills and experiences”.  It’s more important to us to find candidates who can display indicators of success through skills they have developed and experiences they have been a part of, than to find folks who have “been there, done that”.  We want to be part of your development journey, and we’ll learn as much from you as you learn from us. 
 
How We Work
 
At Magnet Forensics, we take a hybrid-flexible approach to support your productivity and work-life balance. If you’re within a comfortable travel distance to one of our offices, you’ll occasionally join us in person. How often you’ll come in depends on your department and team needs, typically ranging from weekly to monthly. These in-person moments help us build stronger connections, spark new ideas, and celebrate our successes together. Most days, you can choose what works best for you, while staying in tune with your team’s goals.
 
We’re excited to welcome you to our team and look forward to achieving great things together - both in the office and wherever you work best!
 
The Most Important Thing
 
We’re looking for candidates that can provide examples of how they have demonstrated Magnet CODE in their previous experiences:
 
CARE – We care about each other and our mission to make a difference in the world.
OWN – We are accountable for our results – while never forgetting to act with integrity, empathy, and respect.
DEDICATE – We put our heart and soul into meeting the needs of our customers and helping them serve the people they protect.
EVOLVE – We are constantly innovating and exploring new ways to work together to make an impact with our work.
 
Here at Magnet Forensics, we are committed to continuous learning and are focused on building a diverse and inclusive workforce. This commitment will be reflected in our hiring processes and embedded in our values and how we treat one another. If you’re interested in this role, but do not meet all of the qualifications listed above, we encourage you to apply anyways.
 
Magnet Forensics is an Equal Opportunity Employer and considers applicants for employment without regard to race, colour, religion, sex, orientation, national origin, age, disability, genetics or any other basis forbidden under federal, provincial, or local law. We are committed to providing an inclusive, accessible recruitment process and work environment. Accommodation is available to all applicants upon request throughout the hiring process. Please contact [email protected] should you require any accommodations.
 
All offers of employment at Magnet are contingent upon satisfactory completion of a background check. All background checks will be conducted in accordance with all applicable laws. Magnet will consider each position’s job duties, among other factors, in determining what constitutes satisfactory completion of the background check. Refusal to consent to a background check may be grounds for revoking an offer of employment.
 
US Applicants: Magnet Forensics participates in E-Verify and will provide the federal government with your Form I-9 information to confirm that you are authorized to work in the U.S.
 
Magnet Forensics handles and uses personal data of job applicants in line with its Recruitment Privacy Policy found here

Similar Jobs

21 Minutes Ago
Remote or Hybrid
OH, USA
Expert/Leader
Expert/Leader
Financial Services
Leads lifecycle marketing enablement strategy, operating models, transformation, governance, and strategic business operations across Consumer Marketing. Oversees customer experience innovation, digital ecosystem modernization, creative enablement, servicing communications, portfolio governance, agency partnerships, regulated notifications, and organizational transformation. Partners with senior leaders across Marketing, Product, Data, Technology, Finance, Compliance, and Risk to modernize capabilities, improve efficiency, and scale measurable customer engagement outcomes.
Top Skills: Artificial IntelligenceAudience PersonalizationAutomationCustomer Journey OrchestrationMarketing TechnologyOmnichannel Marketing
29 Minutes Ago
Remote
Michigan, USA
Mid level
Mid level
Fintech • Real Estate • Sales • Financial Services
Develop, test, release, and support software independently in an AI-native engineering environment. Build reusable code modules and patterns, participate in code and design reviews, resolve incidents, document solutions, and assist junior engineers. Use AI coding tools daily, contribute to Agile practices, support production systems through possible on-call rotations, and help improve software development practices.
Top Skills: AngularAnthropic Claude CodeAWSC#Ci/CdCursorGithub CopilotJavaScriptPythonTypescript
30 Minutes Ago
In-Office or Remote
77K-162K Annually
Senior level
77K-162K Annually
Senior level
Fintech • Real Estate • Sales • Financial Services
Own financial modeling, forecasting, reporting, variance analysis, and scenario planning for Real Estate Services FP&A. Partner with cross-functional stakeholders and Accounting to support strategic decisions, month-end close, and financial alignment. Integrate Workday and Adaptive Planning with business data, using SQL, Snowflake, and BI tools to improve models and automate dashboards. Translate complex financial findings into actionable narratives while identifying risks, opportunities, and process improvements.
Top Skills: Adaptive PlanningAi ToolsAutomation PlatformsBi ToolsExcelSnowflakeSQLTableauWorkday

What you need to know about the Austin Tech Scene

Austin has a diverse and thriving tech ecosystem thanks to home-grown companies like Dell and major campuses for IBM, AMD and Apple. The state’s flagship university, the University of Texas at Austin, is known for its engineering school, and the city is known for its annual South by Southwest tech and media conference. Austin’s tech scene spans many verticals, but it’s particularly known for hardware, including semiconductors, as well as AI, biotechnology and cloud computing. And its food and music scene, low taxes and favorable climate has made the city a destination for tech workers from across the country.

Key Facts About Austin Tech

  • Number of Tech Workers: 180,500; 13.7% of overall workforce (2024 CompTIA survey)
  • Major Tech Employers: Dell, IBM, AMD, Apple, Alphabet
  • Key Industries: Artificial intelligence, hardware, cloud computing, software, healthtech
  • Funding Landscape: $4.5 billion in VC funding in 2024 (Pitchbook)
  • Notable Investors: Live Oak Ventures, Austin Ventures, Hinge Capital, Gigafund, KdT Ventures, Next Coast Ventures, Silverton Partners
  • Research Centers and Universities: University of Texas, Southwestern University, Texas State University, Center for Complex Quantum Systems, Oden Institute for Computational Engineering and Sciences, Texas Advanced Computing Center

Sign up now Access later

Create Free Account

Please log in or sign up to report this job.

Create Free Account