Senior Microsoft Sentinel & Logic Apps Engineer – Cyber Security
Senior Microsoft Sentinel & Logic Apps Engineer – Cyber Security
12 Month Engagement - Cyber Security / Security Engineering / Automation
Introduction
We are seeking an experienced Microsoft Sentinel & Logic Apps Engineer to join a major enterprise Cyber Security Automation and Engineering function.
This is an exciting opportunity for a highly capable security engineer who enjoys building solutions rather than simply maintaining them. You will play a key role in the design and development of security automation capabilities within a greenfield Microsoft Sentinel environment, helping establish how Sentinel and Logic Apps are implemented, integrated and operated across a complex enterprise environment.
The successful candidate will combine strong cyber security operations knowledge with hands-on automation engineering capability, working across Microsoft Sentinel, Logic Apps, security integrations and SOC workflows.
About 9X5 Consulting
We are transforming the way business and technology is managed by putting real-time data into the hands of every decision maker across organisations. The insight garnered from diverse backgrounds, perspectives and lived experiences results in pioneering innovations across the organisation and better experiences for our customers. The more diverse our talent, the more impact we have on each other and on our valued clients.
Our clients range from small SME's right through to some of the largest ASX listed organisations in Australia, so experience at selling to stakeholders at this level is required.
A bit about you
You are a highly capable, hands-on security engineer who enjoys building and solving problems, rather than simply maintaining existing platforms. You are comfortable working in complex enterprise environments where requirements may evolve, and you can take an operational security challenge and turn it into a practical, reliable and scalable technical solution.
You bring deep experience across Microsoft Sentinel and Logic Apps, combined with a strong understanding of SOC operations, security automation and enterprise integrations. You are equally comfortable getting hands-on with automation, scripting and troubleshooting as you are discussing solution design with technical and business stakeholders.
You are pragmatic, curious and outcomes-focused, with the confidence to challenge existing approaches and contribute ideas on how security automation can be improved. You'll be able to work autonomously when required while collaborating effectively across security, engineering and business teams.
Importantly, you're someone who takes ownership of what you build. You care about producing solutions that are secure, resilient, observable, maintainable and genuinely production-ready, and you're comfortable sharing your knowledge and helping develop the capability of others around you.
Experience with other SOAR or automation platforms such as Ansible or Splunk SOAR, exposure to Machine Learning, LLMs or emerging automation technologies, and experience within telecommunications or utilities will be highly regarded.
Key Responsibilities
As the Microsoft Sentinel & Logic Apps Engineer, your key responsibilities will include:
Lead the design, development and delivery of security automation workflows using Microsoft Logic Apps, supporting security operations and broader automation initiatives.
Build, test and maintain production-ready security playbooks, incorporating robust failure handling, retry logic, secure integrations, logging and observability.
Implement, configure and optimise Microsoft Sentinel to support enterprise-scale security detection, investigation and response.
Develop and manage Sentinel analytics rules, automation rules, incident orchestration and platform integrations.
Work closely with SOC and cyber security teams to understand operational requirements and translate them into effective automation and orchestration solutions.
Design automation that improves security operations, reduces manual effort and increases the efficiency and consistency of detection and response processes.
Design and deliver integrations between security platforms and enterprise systems across SaaS, on-premises and hybrid environments.
Provide technical guidance and thought leadership on how Sentinel, Logic Apps and security automation capabilities should be designed, integrated and scaled.
Engage with technical and business stakeholders to elicit, clarify and translate complex or evolving requirements into practical, fit-for-purpose technical solutions.
Troubleshoot and resolve complex issues across integrated and distributed security systems.
Ensure solutions are secure, resilient, scalable, observable and maintainable, while aligning with enterprise security standards and controls.
Contribute to technical decision-making and continuously identify opportunities to improve security engineering and automation practices.
Provide technical guidance, knowledge sharing and mentoring to graduate and junior engineers, helping build broader automation and engineering capability across the team.
Job Requirements
Essential
5+ years' experience building and operating Microsoft Logic Apps workflows in production environments.
3+ years' experience implementing and operating Microsoft Sentinel for security operations use cases.
Strong coding and scripting capability in one or more languages such as Python, PowerShell or TypeScript.
Strong understanding of SOC operations, including incident response, security investigations and threat detection processes.
Demonstrated experience designing, building and optimising resilient and maintainable security automation workflows.
Experience delivering security automation solutions within large and complex enterprise environments.
Experience integrating security platforms with enterprise systems across SaaS, on-premises and hybrid environments.
Strong practical knowledge of cyber security and engineering concepts, including network protocols, system architecture, authentication and encryption.
Demonstrated ability to troubleshoot and resolve complex issues across integrated and distributed systems.
Strong problem-solving skills with the ability to develop practical and implementable solutions.
Proven ability to work with stakeholders to define, clarify and refine technical requirements.
Strong communication skills, with the ability to explain technical concepts to both technical and non-technical stakeholders.
Ability to work autonomously within ambiguous or evolving environments and effectively manage multiple competing priorities.
Experience operating within established enterprise security policies, standards, controls and governance frameworks.
Bachelor's degree in Computer Science, a related technical discipline, or equivalent practical experience.
Ability to obtain an appropriate Australian Government security clearance, with a minimum NV1 clearance required.
Desirable
Exposure to additional SOAR and automation platforms, such as Ansible or Splunk SOAR.
Exposure to Machine Learning, Large Language Models (LLMs) or emerging security automation technologies.
Experience working within the telecommunications or utilities sector.
Experience within large-scale enterprise delivery environments.
Previous experience providing technical guidance, coaching or mentoring to graduate or junior engineers.
Broader experience contributing to security engineering initiatives across multiple teams and technology domains.
Personal Attributes
The successful candidate will demonstrate:
A pragmatic, hands-on and solutions-focused mindset, with a genuine passion for building effective security automation solutions.
Strong ownership and accountability, taking responsibility for solutions from initial design through to production delivery.
A highly collaborative approach, working effectively across cyber security, engineering, operations and business teams.
The confidence to work autonomously with minimal direction, while knowing when to engage others or escalate key decisions.
Strong problem-solving and analytical thinking, with the ability to navigate complex technical challenges and ambiguity.
An outcomes-focused approach, prioritising practical and implementable solutions over unnecessary complexity.
Excellent communication and stakeholder engagement skills, with the ability to clearly articulate technical concepts to a variety of audiences.
The ability to influence and guide technical decisions without relying on direct authority.
Strong adaptability and curiosity, with the ability to quickly learn new security technologies, tools and approaches.
Effective time management and prioritisation skills, particularly when managing multiple concurrent initiatives.
A willingness to challenge existing approaches constructively, contribute new ideas and continuously improve security automation practices.
A commitment to knowledge sharing, coaching and mentoring, contributing to the development of junior and graduate engineers.
A strong team-first attitude, with the ability to respectfully contribute different perspectives while supporting agreed decisions and collective outcomes.
Deal-breakers (stuff we don’t want in a new team member)
A “that’ll do” approach to our clients’ projects;
A closed mind to change;
Big egos. We’re really, really not keen on big egos here.
If this opportunity aligns with your experience, please apply via Seek with your updated CV.
*Only applicants with citizenship, permanent visa will be considered.
No agencies please!