Description
Expel is hiring a Microsoft Detection Engineer to own detection coverage across Defender XDR, Entra ID, Sentinel, Microsoft Graph, Azure, and Microsoft 365. The role maps Microsoft telemetry, tracks schema and API changes, tunes detections, automates investigative workflows, partners with engineering on integrations, and advises SOC, customer success, sales, and customers. Candidates need deep Microsoft security-stack knowledge, KQL, API, identity, Windows, Python, Sigma, and 5+ years of information technology or security operations experience. The role is based in Herndon, Virginia, with remote work available, and offers a base salary of $142,900 to $207,200 USD plus bonus eligibility and equity.
