Security Consultant

IBM β€’ Bucharest, RO

Company

IBM

Location

Bucharest, RO

Type

Full Time

Job Description

Introduction

The Sentinel Content Engineer is responsible for designing implementing tuning and maintaining Microsoft Sentinel content to enable effective detection response and automation within the Client Security Operations Center (CSOC). This role ensures that Sentinel provides high-fidelity detections automated response capabilities and actionable dashboards aligned with the threat landscape and client requirements. The engineer works closely with SOC analysts (L1/L2) threat intelligence teams and client stakeholders to develop and continuously improve security use cases analytics rules and playbooks.

In this role you'll work in one of our IBM Consulting Client Innovation Centers (Delivery Centers) where we deliver deep technical and industry expertise to a wide range of public and private sector clients around the world. Our delivery centers offer our clients locally based skills and technical expertise to drive innovation and adoption of new technology.

Your role and responsibilities

Security Consultant - Intelligence & Operations

Required education
Bachelor's Degree
Required technical and professional expertise

β€’ Microsoft Sentinel Expertise β€’ Strong hands-on experience with Microsoft Sentinel (SIEM + SOAR). β€’ Proficiency in KQL (Kusto Query Language) for writing and optimizing queries. β€’ Experience with Logic Apps for playbook creation and orchestration. β€’ Familiarity with Microsoft security stack (Defender EOP Azure Security Center). β€’ Detection & Response Engineering β€’ Ability to translate threat intelligence and MITRE ATT&CK techniques into detection logic. β€’ Experience tuning detections to balance coverage and noise reduction. β€’ Knowledge of incident response workflows and SOC operations. β€’ Automation & Scripting β€’ Proficiency with PowerShell Python or other scripting languages for automation. β€’ Experience with API integrations (REST Graph API). β€’ Log Management & Data Analysis β€’ Understanding of common log sources (Windows Event Logs network devices cloud services). β€’ Experience with log normalization parsing and schema mapping (ASIM). β€’ Soft Skills & Behavioral Competencies β€’ Strong problem-solving and analytical mindset. β€’ Ability to communicate complex technical concepts to analysts and stakeholders. β€’ Proactive in identifying improvements and proposing new detection/automation content. β€’ High attention to detail with commitment to documentation and knowledge sharing.

Preferred technical and professional experience

β€’ Bachelor’s degree in Cybersecurity Computer Science or equivalent experience. β€’ 3–5 years of experience in SOC SIEM engineering or security content development. β€’ Microsoft Security certifications preferred: o SC-200 (Microsoft Security Operations Analyst) o SC-100 (Microsoft Cybersecurity Architect) o AZ-500 (Azure Security Engineer Associate) β€’ Other security certifications a plus (GCIA GCTI Splunk Certified etc.).

Apply Now

Date Posted

12/05/2025

Views

0

Back to Job Listings ❀️Add To Job List Company Info View Company Reviews
Positive
Subjectivity Score: 0.9

Similar Jobs

Cybersecurity Consultant - IBM

Views in the last 30 days - 0

This job description outlines the role of a Sentinel Content Engineer focusing on designing implementing and maintaining Microsoft Sentinel content fo...

View Details

IBM Internship SAP Success Factors - IBM

Views in the last 30 days - 0

IBM Consulting offers career growth through client collaboration and innovation The SAP SuccessFactors internship provides handson experience in HR sy...

View Details

IBM Internship SAP HANA FIN FI - IBM

Views in the last 30 days - 0

The SAP FI Consultant Intern role at IBM Consulting involves supporting financial processes collaborating with global clients and contributing to inno...

View Details

IBM Internship Application Developer-Microsoft.Net - IBM

Views in the last 30 days - 0

The text promotes IBM Consultings career opportunities emphasizing collaboration innovation and growth in hybrid cloud and AI projects with global cli...

View Details

Fullstack Developer: React& NodeJs - IBM

Views in the last 30 days - 0

This job posting seeks a skilled FrontEnd Developer for a headless commerce role emphasizing expertise in modern frameworks API integration and perfor...

View Details

Governance & Enablement Officer - IBM

Views in the last 30 days - 0

IBMs Marketing Communications and Corporate Social Responsibility team drives innovation and compliance focusing on AI ethics data privacy and governa...

View Details