Verified current Job

Microsoft Security Automation & Incident Response Engineer - Contract Position

Who We Are; What We Do; Where We’re Going

Job Remote Full source details
Magnetforensics Source published Sep 20, 2026 Verified 9 hours ago
✓ 100% verification score · Source: Magnetforensics (lever) · Always confirm final requirements on the original source.
Complete source information imported The available role or programme description, requirements, benefits and source facts were imported from the public official endpoint and formatted for reading.
EmploymentContract
Work modeRemote / location-flexible

Overview

Who We Are; What We Do; Where We’re Going

Full job description

Who We Are; What We Do; Where We’re Going

Magnet Forensics is a global leader in the development of digital investigative software that acquires, analyzes, and shares evidence from computers, smartphones, tablets, and IoT-related devices. We are continually innovating so our customers can deploy advanced and effective tools to protect their companies, communities, and countries.

Serving thousands of customers globally, our solutions are playing a crucial role in modernizing digital investigations, helping investigators fight crime, protect assets, and guard national security.

With employees based around the world, Magnet Forensics has been expanding our global presence. As a part of Magnet Forensics, you can expect to make a difference in the world, no matter what role you play. You’ll be supported through learning and development, not to mention an incredible team with unbelievable talent and integrity.

If you think you would be the right person to join our team working towards this goal, we would love to hear from you!

Role Summary

Magnet Forensics is seeking a highly skilled Microsoft Security Automation & Incident Response Engineer to accelerate the maturity and efficiency of our security operations program. This resource will be responsible for optimizing and integrating Microsoft's security platform, reducing manual analyst workload, automating repetitive tasks, improving detection coverage, and enhancing incident response capabilities. The ideal candidate is a hands-on engineer with deep experience in Microsoft Sentinel, Defender XDR, automation, and modern security operations. This is a 3-4 month contract role

Security Operations Optimization

Analyze existing alert triage and incident response processes

Identify operational bottlenecks and manual activities

Implement improvements that reduce analyst effort and response times

Improve overall SOC efficiency and effectiveness

Detection Engineering

Tune Microsoft Sentinel analytics rules

Reduce false positives and alert fatigue

Create advanced correlation rules and hunting content

Improve quality and fidelity of security detections

Security Automation

Design and implement automation for:

Alert enrichment

Incident routing

Ticket creation

Escalation workflows

Investigation support

Standard response actions

Platform Integration

Optimize and integrate:

Microsoft Sentinel

Microsoft Defender XDR

Microsoft Defender for Endpoint

Microsoft Defender for Identity

Microsoft Defender for Cloud Apps

Entra ID

Zscaler telemetry

Existing ITSM and ticketing platforms

Incident Response Support

Improve incident response processes

Enhance investigation playbooks

Develop response automation

Create operational runbooks and documentation

Required Qualifications

5+ years in Security Operations, Detection Engineering, or Incident Response

Strong Microsoft Sentinel experience

Strong Microsoft Defender suite experience

Advanced KQL skills

Logic Apps experience

SOAR automation experience

SIEM engineering experience

Security operations workflow optimization experience

Preferred Qualifications

Microsoft Security certifications

Threat hunting experience

Detection engineering background

Experience integrating third-party security telemetry

Exposure to Purview and DLP technologies

Tips for this job

Practical Job and Scholarship guidance. These tips do not replace official rules or create new eligibility requirements.

  1. Tailor the CV and application to the responsibilities and required skills stated on the official employer page.
  2. Use concrete evidence of relevant work, projects and measurable results rather than generic claims.
  3. Confirm location, work authorization, remote restrictions and sponsorship terms before applying.
  4. Apply through the original employer or official recruitment destination shown on this page.

Verification notes

laptop-ats-crawler v2

Original authoritative source

Job and Scholarship is the discovery and verification layer. Confirm eligibility, dates, salary/funding and application instructions on the original source before submitting anything.

Magnetforensics (lever) ↗

Browse current Job and Scholarship listings from Magnetforensics (lever) →

More ways to save

Discover deals, coupons and free courses on our sister site.

Explore DealVorio
Save more with DealVorio: deals, coupons, free courses, apps and books