Location: Who we are NTT DATA is one of the world's largest global security service providers, partnering with some of the most recognized security technology brands. We're looking for passionate, curious, and motivated individuals to join our team. Our mission is to protect and empower organizations through cutting-edge Managed Detection and Response (MDR) solutions, deep technical expertise, and a client-first mindset. We are seeking an experienced Cybersecurity professional with strong expertise in Microsoft Sentinel, security operations, threat detection, and cloud security, who can combine hands-on engineering capabilities with a trusted advisor approach towards our customers. What you'll be doing Build strong, meaningful “trusted advisor” relationships with clients on behalf of NTT DATA and act as the main Cybersecurity Advisor for one or more customers. Design, implement, maintain, and optimize Microsoft Sentinel environments, ensuring proper configuration, data ingestion quality, and alignment with customer security objectives. Develop, refine, and optimize detection rules, analytics, workbooks, dashboards, and advanced KQL queries for threat detection, hunting, investigation, and reporting. Build and maintain SOAR playbooks using Logic Apps to automate triage, response actions, and security workflows. Support customers in optimizing the detection, response, mitigation, and reporting of cybersecurity threats within their environments. Lead and support threat hunting activities using Microsoft Sentinel, Microsoft Defender XDR, and relevant Threat Intelligence sources. Oversee the onboarding and integration of new log sources, ensuring appropriate mapping, normalization, governance, and data quality. Continuously tune alerts, analytics rules, data connectors, and detection logic to improve accuracy and reduce the signal-to-noise ratio. Provide expertise across Network/Perimeter/Cloud Security, SecOps, Threat Intelligence, EDR, and detection capabilities. Analyze network traffic and security telemetry and design relevant detection use cases based on identified risks and attack patterns. Propose recommendations for improving customers' cybersecurity posture and reducing identified risks. Design and improve cybersecurity processes, procedures, runbooks, response workflows, and training programs aligned with organizational risk and industry standards. Produce comprehensive technical documentation, including use cases, detection logic, response procedures, runbooks, and architectural diagrams. Collaborate with SOC analysts, security engineers, cloud teams, application owners, and customer stakeholders to ensure coordinated incident response and remediation activities. Act as a Subject Matter Expert (SME) in Cybersecurity and MDR solutions, providing technical guidance and mentorship to junior team members and cross-functional teams. Stay up to date with emerging cybersecurity threats, technologies, attack techniques, and industry trends and translate them into improvements to detection and response capabilities. Participate in an on-call rotation where required. What you'll bring along Bachelor's degree in Information Security, Cybersecurity, Computer Science, Information Technology, or a related field. Minimum 5-7 years of professional experience in IT Cybersecurity, Security Operations, Detection Engineering, MDR, or a similar role. Extensive hands-on experience administering and engineering Microsoft Sentinel solutions, including analytics rules, automation, log management, and data connectors. Strong proficiency in KQL, with the ability to develop complex queries for threat detection, investigation, hunting, and reporting. Strong knowledge of SIEM, SOAR, EDR, firewalls, IDS/IPS, and other security technologies. Practical experience with Microsoft Defender XDR solutions, including Defender for Endpoint, Defender for Identity, Defender for Office 365, and Defender for Cloud Apps. Very good knowledge of Azure and cloud security concepts, including identity management, network security controls, and cloud-native security architecture. Technical understanding of common Microsoft environments and technologies such as Entra ID, Microsoft 365, Active Directory, and Exchange. Deep understanding of security monitoring, threat detection methodologies, incident response, threat hunting, and SOC operations. Strong understanding of log source onboarding, normalization, and integration within Microsoft Sentinel. Understanding of cybersecurity domains such as network security, endpoint security, anomaly detection, Threat Intelligence, and cloud security. Good knowledge of the MITRE ATT&CK Framework and its application to detection engineering and threat hunting. Ability to perform network traffic analysis and translate findings into relevant detection and monitoring use cases. Experience integrating Microsoft Sentinel with third-party log sources, security tools, and other SIEM platforms such as Palo Alto XSIAM or Splunk is an advantage. Knowledge of scripting and automation technologies such as Python, Bash, PowerShell, Logic Apps, Ansible, or Terraform. Linux proficiency. Knowledge of security models, industry best practices, and generally accepted information security principles. Strong communication, stakeholder management, and documentation skills, with the ability to translate complex technical concepts into clear and actionable recommendations. Ability to work effectively in a customer-facing environment and communicate with both technical and non-technical stakeholders. Relevant certifications such as SC-200, SC-100, AZ-500, CISSP, CISM, SANS GCDA, SANS GCED, or other GIAC certifications are highly desirable. Ability and willingness to travel domestically and internationally when required. Availability for 24x7 on-call rotation. Proficiency in English is mandatory; German language skills are an advantage. Document What’s in it for you ✔ New beginnings can be a challenge. We promise a smooth integration and a supportive mentor ✔ Pick your working style: choose from Remote, Hybrid or Office work opportunities ✔ Early bird or night owl? Our projects have different working hours to suit your needs ✔ Nobody is born an expert. Sharpen your tech skills with our sponsored certifications, trainings and top e-learning platforms ✔ We want you to stay healthy! Enjoy our Private Health Insurance – it’s custom-made for you ✔ A clear mind is a healthy mind. Attend individual coaching sessions or go one step further by joining our accredited Coaching School ✔ Make the most of our epic parties or themed events – they’re lovingly designed for our people and their families ✔ NTT DATA recruiters will never ask job seekers and candidates for payment or banking information during the recruitment process, for any reason. Please remain vigilant of third parties that may try to impersonate NTT DATA recruiters, either in writing or by phone, in an attempt to deceptively obtain personal data or money from you. All email communications from an NTT DATA recruiter will be associated with an @nttdata.com email address. NTT DATA will not use any non-NTT DATA or personal email domains (Gmail, Yahoo, etc.) or personal communication channels (WhatsApp, Facebook etc) at any time during the recruitment process. If you suspect any fraudulent activity, please contact us. NTT DATA Romania is an equal opportunity employer and considers all applicants regardless to race, color, religion, citizenship, national origin, ancestry, age, sex, sexual orientation, gender identity, genetic information, physical or mental disability, veteran or marital status, or any other characteristic protected by law. We are committed to creating a diverse and inclusive environment for all employees. Not the job for you? Perhaps you have a friend who would be a perfect fit. Send them this link! What’s in it for you New beginnings can be a challenge. We promise a smooth integration and a supportive mentor Pick your working style: choose from Remote, Hybrid or Office work opportunities Early bird or night owl? Our projects have different working hours to suit your needs Nobody is born an expert. Sharpen your tech skills with our sponsored certifications, trainings and top e-learning platforms We want you to stay healthy! Enjoy our Private Health Insurance – it’s custom-made for you A clear mind is a healthy mind. Attend individual coaching sessions or go one step further by joining our accredited Coaching School Make the most of our epic parties or themed events – they’re lovingly designed for our people and their families Make this the place you grow Your unique talent is what matters. NTT DATA Romania is an equal opportunity employer and considers all applicants regardless to race, color, religion, citizenship, national origin, ethnicity, age, gender, sexual orientation, gender identity, genetic information, physical or mental disability, veteran or marital status, or any other characteristic. Document Third parties fraudulently posing as NTT DATA recruiters NTT DATA recruiters will never ask job seekers and candidates for payment or banking information during the recruitment process, for any reason. Please remain vigilant of third parties that may try to impersonate NTT DATA recruiters, either in writing or by phone, in an attempt to deceptively obtain personal data or money from you. All email communications from an NTT DATA recruiter will be associated with an @nttdata.com email address. NTT DATA will not use any non-NTT DATA or personal email domains (Gmail, Yahoo, etc.) or personal communication channels (WhatsApp, Facebook etc) at any time during the recruitment process. If you suspect any fraudulent activity, please contact us. #LI-AR2 Job Segment: Network Security, Information Security, Computer Science, Cyber Security, Linux, Security, Technology
Mechanical Design Engineer – with Creo
Expleo Jobs Ro En
Substation Automation Engineering & Commissioning
Hitachi
Test Automation Lead (remote)
Quality Ai
HPC engineer m/f/d
Honeywell
Senior IT Analyst m/f/d
Honeywell
Senior Software Engineer (Python, AI)
Exadel