As an engineer Co-op at Security Risk Advisors, you will support the team in designing, implementing, and refining Microsoft Sentinel content to help strengthen our clients’ cybersecurity posture. This co-op offers hands-on experience in a collaborative environment, where you’ll learn how to develop and troubleshoot detection rules, contribute to process improvements, and assist in resolving technical issues under the guidance of experienced engineers.
Requirements
Bachelors degree in Information Technology, IT Security, Computer Science, Computer Engineering, or equivalent experience. Basic familiarity with Kusto Query Language (KQL) preferrable. Assist in creating basic detection rules, alerts, and dashboards under guidance. Help document use cases, rule logic, and expected outcomes for new detections. Research common attack techniques (e.g., MITRE ATT&CK) and draft potential detection ideas. Review existing alerts to identify false positives and assist in rule tuning. Work with senior engineers to adjust signatures or conditions to reduce noise. Help validate whether tuned rules still detect intended malicious activity. Document tuning changes and outcomes for knowledge sharing.