- Company Name
- Aroha Technologies, Inc
- Job Title
- Urgent hiring for Software Developer in Austin, local ||
- Job Description
-
**Job Title**
Software Developer II – Microsoft Sentinel & SOAR Engineer
**Role Summary**
Senior‑level developer responsible for designing, building, testing, and optimizing Microsoft Sentinel SOAR automation playbooks, UEBA detection models, and SIEM content. Provides independent technical leadership to deliver secure, scalable security operations solutions.
**Expectations**
- Execute complex development tasks with minimal supervision.
- Translate security requirements into robust, automated workflows and analytics.
- Maintain high‑quality documentation and support tier‑III engineering issues.
**Key Responsibilities**
- Design, develop, test, and deploy Sentinel SOAR playbooks using Azure Logic Apps, Azure Functions, ARM templates, and REST APIs.
- Create automated workflows for alert enrichment, triage, response actions, notifications, and case management.
- Integrate Sentinel with third‑party systems (EDR, IAM, ticketing, firewalls, etc.) to automate incident response.
- Build custom UEBA detection rules, anomaly models, KQL hunting queries, and behavior analytics.
- Develop and maintain custom data connectors, ingestion pipelines, dashboards, workbooks, and detection‑as‑code assets.
- Tune platform performance, reduce noise, and align assets with MITRE ATT&CK, NIST CSF, and Zero Trust principles.
- Write supporting code modules, scripts, microservices, and APIs (Python, PowerShell, .NET, JavaScript).
- Produce technical design documents, SOPs, architecture diagrams, and automation runbooks.
- Provide tier‑III support for Sentinel engineering issues and participate in post‑incident reviews.
**Required Skills**
- Microsoft Sentinel architecture, SOAR, and UEBA.
- Azure services: Logic Apps, Functions, Event Hubs, Key Vault, Azure AD.
- Scripting/Programming: Python, PowerShell, C#, JavaScript, KQL.
- API integration and JSON/YAML handling.
- DevOps practices: CI/CD, Git, infrastructure‑as‑code.
- Security operations: triage, threat detection, incident response.
- Frameworks: MITRE ATT&CK, NIST CSF, Zero Trust Architecture.
- Strong analytical, communication, and independent problem‑solving skills.
**Required Education & Certifications**
- Bachelor’s degree in Computer Science, Software Engineering, Cybersecurity, or a related field.
- Minimum 2 years of professional experience in software development, cloud engineering, SIEM engineering, or cybersecurity engineering.
- Relevant Microsoft certifications (e.g., AZ‑104, MS‑500, MS‑200) preferred but not mandatory.