cover image
AVANADE

Cyber Defence Consultant

On site

London, United kingdom

Full Time

25-08-2025

Share this job:
Expired

Skills

Communication Leadership Incident Response Microsoft 365 Agile methodologies Networking Architecture Linux Operating Systems Windows Organization Azure Agile Analytics

Job Specifications

At Avanade, cybersecurity consultants are innovators and challengers of the status quo. If you're an experienced Cyber Defense consultant, who can help our clients solve complex Cyber Defense business challenges, this might be the perfect opportunity for you.

Come join us

Come join us

In a client-facing consultancy role, you will work on exciting projects that transform our client's Cyber Defense strategy and operations through the design and implementation of predominantly Microsoft Threat Protection technologies. As a member of our security practice, you will work for both Avanade and Accenture clients, ranging from medium to large global enterprise clients. Join a curious and diverse team that's passionate about next-gen tech and establish yourself as a Leader in the Cyber Defense space. Together, let's transform cybersecurity.

Skills And Experiences

Microsoft Sentinel Design, Build, and Commissioning: Expertise in designing, building, and commissioning Microsoft Sentinel solutions.
Microsoft Defender for Endpoint and Defender for Cloud Analysis and Remediation: Proficiency in analyzing and remediating issues using Microsoft Defender for Endpoint and Defender for Cloud.
L2 Security Incidents: Experience in handling Level 2 security incidents from Microsoft Sentinel.
Infrastructure Security: Strong background in infrastructure security.
SIEM: Experience in Microsoft Sentinel architecture and deployment. Knowledge of multi-tenant SIEM architecture, Sentinel analytics rules, workbooks and playbooks.
Azure Logic Apps: Experience in creating, running and troubleshooting.
Threat Modelling and Incident Response: Ability to perform threat modelling and respond to security incidents effectively.
Security Vulnerability Remediation: Experience in remediating security vulnerabilities within Azure-hosted environments.
Agile Methodologies: Familiarity with working within agile methodologies and contributing to backlog items, such as Microsoft Defender for Cloud outputs.
Cyber Defence: Understanding and experience with analyzing complex cyber defence issues, troubleshooting, and implementing solutions.
Communication and Collaboration: Excellent communication skills and the ability to collaborate effectively with team members and stakeholders.
Microsoft Security Operations Analyst: As a candidate, you should be a Microsoft security operations analyst who reduces organizational risk by rapidly remediating active attacks, advising on improvements to threat protection practices, and identifying violations of organizational policies.
Triage and Incident Response: Perform triage, respond to incidents, and mitigate risk by using exposure management.
Threat Hunting: Hunt for threats using threat intelligence and tools such as Microsoft Defender XDR, Security Copilot, and Microsoft Sentinel.
Kusto Query Language (KQL): Proficiency in using KQL for reporting, detections, and investigations.
Security Standards: Collaborate with business and security leadership to define and implement security standards, enhance the security posture of the organization, and raise security awareness.
Microsoft Technologies: Familiarity with Microsoft 365, Azure cloud services, Windows, Linux, and mobile operating systems.

About You

About you

Characteristics That Can Spell Success For This Role

Consultative, collaborative, relationship builder
Resilient, adaptable, flexible
Intellectually curious and passionate about Microsoft Technologies (M365 Threat Protection (Security Center, MCAS, Defender for endpoint, Office 365, Identity)
Problem-solver, patient and quality-driven
Self-motivating
Innovative mindset



What You'll Do

Design and implement Anti-Virus and Endpoint Detection and Response solutions to protect, detect and response to cyber incidents on endpoints across all major operating systems in the Microsoft ecosystem (E.g. Defender for Endpoint)
Protect email, instant messaging, and collaboration platforms from malicious attacks, such as Phishing as well as from more sophisticated attacks such as Spear Phishing, Business Email Compromise, and identity theft.
Perform use case development and rules that can be applied to consolidate events across disparate systems and used to identify an attack chain across systems.
Design, implement, and integrate security incidents and event management solutions into Security Operations with a particular focus on Azure Sentinel expertise.
Use case development and rules that can be applied to consolidate events across disparate systems and used to identify an attack chain across systems in the Microsoft ecosystem.
Perform threat hunting across endpoints, identities, networking, cloud, and collaboration platforms in the Microsoft ecosystem.

Learn more

Avanade is the leading global provider of digital, cloud, AI and advisory services, industry solutions and design-led experiences across the Microsoft ecosystem. Founded in 2000 as a joint venture between Accenture LLP and Microsoft Corpo

About the Company

Avanade is the world’s leading expert on Microsoft. Trusted by over 5,000 clients worldwide, we deliver AI-driven solutions that unlock the full potential of people and technology, optimize operations, foster innovation and drive growth. As Microsoft’s Global SI Partner we combine global scale with local expertise in AI, cloud, data analytics, cybersecurity, ERP to design solutions that prioritize people and drive meaningful impact. We champion diversity, inclusion, and sustainability, ensuring our work benefits society an... Know more