-
Montash

Microsoft Defender Specialist

Montash
Netherlands · Full-time · Mid-Senior

We are currently seeking an experienced Microsoft Defender Specialist for one of our large enterprise clients to help strengthen their cyber defense capabilities across Microsoft 365 and Azure environments.

You will be responsible for deploying, configuring, optimising, and monitoring the full Microsoft Defender suite (Defender for Endpoint, Defender for Office 365, Defender for Identity, Defender for Cloud Apps) and integrating it with our SIEM and SOC workflows.

This role requires strong technical expertise, hands-on tuning of detection and prevention rules, and the ability to collaborate with SOC analysts, incident responders, and security architects to enhance our security posture in compliance with NIS2, ISO 27001, and GDPR.


Key Responsibilities

  • Deploy and configure Microsoft Defender products across the organisation.
  • Optimise policies, detection rules, and security baselines for Defender for Endpoint, Office 365, Identity, and Cloud Apps.
  • Integrate Microsoft Defender alerts with SIEM platforms (Microsoft Sentinel, Splunk, QRadar) for advanced correlation and incident handling.
  • Monitor security alerts, investigate incidents, and perform root cause analysis.
  • Develop and maintain KQL queries, analytics rules, and hunting queries in Microsoft Sentinel.
  • Conduct health checks and performance tuning of Defender components to ensure optimal protection.
  • Provide recommendations for security improvements and automation opportunities.
  • Create documentation, SOPs, and knowledge transfer materials for security teams.
  • Support compliance efforts by ensuring Microsoft Defender configurations meet regulatory requirements (NIS2, ISO 27001, GDPR).


Required Skills & Experience

  • 3+ years of experience managing Microsoft Defender solutions in enterprise environments.
  • Strong knowledge of Microsoft 365 E5 security stack and Azure Security Center.
  • Proficiency in Kusto Query Language (KQL) for advanced threat hunting and detection logic.
  • Experience integrating Defender alerts into SIEM/SOC workflows.
  • Hands-on expertise in threat investigation, incident response, and policy tuning.
  • Familiarity with zero trust principles and endpoint hardening best practices.
  • Understanding of compliance frameworks (NIS2, ISO 27001, GDPR).
  • Fluent in English (Dutch is a strong plus).


Preferred Qualifications

  • Microsoft Certified: Security Operations Analyst Associate (SC-200).
  • Microsoft Certified: Azure Security Engineer Associate (AZ-500).
  • Experience with automation via PowerShell or Logic Apps.
  • Familiarity with MITRE ATT&CK mapping for Microsoft Defender alerts.

Key Skills

Ranked by relevance

microsoft defender cloud siem technical expertise incident response qradar splunk
Login to Apply
Posted
Aug 13, 2025
Type
Full-time
Level
Mid-Senior
Location
Amsterdam
Company
Montash

Industries

Staffing Recruiting

Categories

Information Technology

Related Jobs

3 roles aligned with this opportunity

View all jobs
View Job Details
Roundr
Related

Senior Software Engineer (PHP/Laravel)

2026-07-11

Full-time
Mid-Senior
Netherlands
Staffing
Information Technology
View Job Details
Jobgether
Related

Security Lead

2026-07-12

Full-time
Mid-Senior
Spain
Internet Marketplace Platforms
Other
View Job Details
Apex Elite
Related

Project Manager

2026-07-10

Full-time
Mid-Senior
Germany
Staffing
Project Management