143K–207K USD / year

Senior Detection & Response Engineer

OtherRemote — unknown
Published on 2026-09-26
These details were extracted automatically from the original listing. They may not be complete or fully up to date — it's worth checking the original job post.

About this role

As a Senior Detection & Response Engineer, you will be responsible for managing Microsoft detection coverage and understanding Microsoft security signals. The role involves creating and maintaining a living map of Microsoft security signals and working collaboratively with SOC analysts and engineers.

About the company

Expel provides managed detection and response security services backed by software and human analysts. It helps organizations monitor threats and respond to incidents faster.

What you'll do

  • Own detection coverage across Microsoft security tools
  • Build and maintain a map of Microsoft security signals
  • Track changes in security signals and take proactive actions
  • Evaluate native detections for effectiveness
  • Automate Microsoft-specific investigative workflows
  • Collaborate with Engineering on Microsoft integrations
  • Mentor SOC and Sales personnel
  • Assist customers in understanding security coverage

What we're looking for

  • Deep knowledge of Microsoft security stack
  • Proficiency in KQL for hunting queries
  • Knowledge of Graph Security APIs and permissions
  • Understanding of Entra ID attack surface
  • Experience with Windows internals and command line
  • Experience writing and tuning custom detections
  • Proficiency in Python and Sigma
  • 5+ years in IT or security operations

Nice to have

  • Certifications like SC-200, AZ-500
  • Experience with AWS, GCP, other EDR and SIEM

Benefits

  • Unlimited PTO
  • 24 weeks of parental leave
  • Excellent health benefits
View original job post