Responsibilities: * Manage multi-tenant environments with expertise in Powershell and SOC processes. * Lead Microsoft Defender XDR implementation for clients, ensuring compliance with GDPR and Lighthouse standards. Health insurance
We're Hiring: Microsoft Defender XDR Lead SME Location: Aligarh, India (Hybrid) Shift: Night-Mon-Fri from 6:00 IST to 3:00 IST Salary: 2,00,000 INR to 250,000 INR a Month Department: Security Operations / Managed Services Reports to: Director of Security Services Are you a Microsoft Defender expert ready to lead threat detection and response across multi-tenant environments? Join our team and help deliver world-class security services using Microsoft-native tools. Role Summary As the Microsoft Defender Lead SME, you will be responsible for designing, implementing, and optimizing threat detection and response strategies across Microsoft Defender XDR for a multi-tenant MSP environment. You will work directly with customers, engineering, and internal SOC resources to deliver best-in-class security services using Microsoft native tools. Key Responsibilities Lead deployment and tuning of Microsoft Defender XDR across customer tenants Monitor and respond to incidents using Defender for Endpoint, Office 365, Identity, and Cloud Apps Conduct proactive threat hunting and investigations using Defender advanced hunting queries, incident graphs, and investigative tools to detect and respond to emerging threats Integrate Defender XDR with Microsoft Sentinel and Power Platform for automation and dashboards Coordinate threat response playbooks and alert triage SOPs Collaborate with compliance and identity teams to enforce Zero Trust principles Mentor and train Tier 1 and 2 analysts on Defender interfaces and threat analysis workflows Review logs, signals, and telemetry via Graph API and M365 Security Center Stay current on Microsoft Defender roadmap and emerging threats Required Skills & Experience 3+ years' experience with Microsoft Defender XDR and Sentinel Familiarity with SOC processes, MITRE ATT&CK framework, and threat modelling Experience supporting Microsoft 365 Business Premium, E5, and Azure tenants Ability to manage multi-tenant environments with GDAP and Lighthouse PowerShell, KQL, and Graph API skills are a plus Relevant Certifications (preferred): Microsoft Certified: Security Operations Analyst Associate ( SC-200 ) Microsoft Certified: Cybersecurity Architect Expert ( SC-100 ) Microsoft Certified: Azure Security Engineer Associate ( AZ-500 ) Microsoft Certified: Identity and Access Administrator Associate ( SC-300 ) Microsoft Defender XDR Ninja or Black Belt Badge