Identity and Access Management – Entra ID RBAC, Conditional Access Policies, Active Directory ID, PIM/PAM, Active Directory Connect, AD FS, ID Protection, MFA
Security monitoring includes log aggregation/centralization, correlation, and alerting of security events and incidents.
Hands-on experience with Azure policy design, policy exemption, compliance and non-compliance dashboard understanding, remediation task for non-compliance.
Experience in Cloud adoption framework, well architected framework, security solution design.
Expertise in cybersecurity solutions like Microsoft Defender for Cloud, Defender for endpoint, SOC, MDR, SIEM, SOAR, DAM, etc.
Knowledge of MS purview, DLP, Insider risk policies etc.
Configure rules for real-time alerting in SIEM tool for events, analytic rules, automation rules, hunting queries & Playbook.
Knowledge of 3rd party tools CrowdStrike, LogRhythm, Netspoke, semperis, Illumio
Participates in the incident response and investigation process.
Knows about network architecture and protocols like TCP/IP, HTTP, etc.