- High proficiency in Microsoft Sentinel and Azure Log Analytics
- Capability to connect any type of logs from any source to the Sentinel Log Analytics workspace
- Handson experience in creating playbooks analytic rules workbooks notebooks and incident response for threat hunting Experience in developing KQL queries for data normalization and parsing capabilities for the Log Analytics data ingestion pipeline
- Ability to automate and integrate developed use cases into the DevOps CICD pipeline
- Development and automation of incident response capabilities using Azure Logic Apps
- Development of Jupyter notebooks using any scripting language such as Python to integrate with Microsoft Sentinel