Ardent

Ardent

Senior Security Engineer

Washington, D.C · Senior

Work authorization requiredDetected 1 day ago
AWSAzureCybersecuritySIEMMicrosoft SentinelKQLSOC OperationsDetection EngineeringIncident ResponseProblem SolvingCISSP

About the role

  • Ardent is seeking a Senior Security Engineer to join our team.
  • This is a hybrid position, requiring up to 3 days per week on-site in Washington DC.
  • This role focuses on Microsoft Sentinel administration, detection rule development, and log management to ensure effective threat detection and response.

Responsibilities

  • Administer and maintain Microsoft Sentinel, including configuration, performance tuning, and platform optimization.
  • Develop, tune, and maintain detection rules and analytics to improve threat detection capabilities.
  • Write and optimize KQL queries for threat detection, investigation, and reporting.
  • Validate log ingestion and ensure completeness and accuracy of data sources.
  • Support onboarding and normalization of log sources across enterprise systems.
  • Coordinate vulnerability prioritization and support patch governance efforts.
  • Support incident response efforts through engineering support and tool optimization.
  • Document engineering processes, detection logic, and system configurations.
  • If you want to build something meaningful, while enjoying the kind of flexibility and support that you need to do your best work - Ardent is where your next mission begins.

Requirements

  • Must be a U.S. Citizen.
  • Bachelor's degree in Cybersecurity, Information Technology, or a related field (or equivalent experience).
  • 4+ years of experience in cybersecurity engineering or security operations.
  • 2+ years of experience supporting SIEM platforms, preferably Microsoft Sentinel.
  • Proficiency in KQL or similar query languages.
  • Experience with log ingestion, data normalization, and security telemetry.
  • Experience supporting vulnerability management and patching processes.
  • Ability to communicate technical concepts to diverse audiences.

Nice to have

  • CISSP, GCIA, GCIH, CEH, or equivalent cybersecurity certification.
  • Microsoft Sentinel or Microsoft security platform certification.
  • Cloud security certification (e.g., AWS or Azure security).
  • Experience supporting federal or government security operations environments.
  • Experience working in secure or compliance-driven environments.
  • Due to the nature of the work we support, all candidates in consideration for this role must be willing to undergo and maintain a government-issued background investigation process.
  • We highly encourage all Veterans and those with disabilities to apply.
  • Ardent is an equal opportunity employer.

Compensation

  • We will not discriminate in employment, recruitment, advertisements for employment, compensation, termination, upgrading, promotions, and other conditions of employment against any employee or job applicant on the bases of race, color, gend

Benefits

  • Collaborate with SOC analysts and detection engineers to improve detection coverage and response efficiency.

Company info

  • At Ardent, we hire people who want more than a job - they want to serve a mission that matters.

Visa & Work Authorization

  • Citizen

This listing is sourced directly from Ardent's careers page and normalized into a canonical job model.