Administer, configure, and optimize Microsoft Sentinel SIEM/SOAR platform. Develop and maintain KQL queries, workbooks, analytics rules, hunting queries, and playbooks. Act as a frontline Security Incident Responder : triage, investigate, and coordinate incident response efforts. Conduct proactive threat hunting within Sentinel and other security platforms. Collaborate with internal teams to strengthen incident detection and response capabilities. Support the integration and operational management of the Microsoft XDR suite, including: Defender for Endpoint Defender for Office 365 Defender for Cloud Apps Participate in the design and implementation of cloud-native security controls in Azure environments. Assist in the development of threat detection use cases and continuous improvement initiatives. Provide support and guidance during audits and compliance assessments. Stay current with emerging threats, vulnerabilities, and industry trends.