Lead SIEM Engineer

2 weeks ago


Bengaluru, Karnataka, India Resillion Full time

Company Description :

Resillion is a global company with end-to-end capabilities: no matter your industry, your geographical location, or stage in your digital journey.

With offices in North America, Europe, and Asia, Resillion will be by your side.

Helping you and your organization realize your ambitions in cyber security, testing of digital media content and quality assurance.

Whether, testing, certification, (software) development, cyber security, or data-protection, the experts at Resillion do whatever it takes.

We work as long and hard as necessary to get you to market.

Job Description :

Title :
Lead SIEM Engineer

Experience Range : 10-15 Years.

Location :
Bangalore/ Remote.

About You :

  • The successful candidate will be a passionate information security professional with the ability to communicate to different business and IT leadersn The candidate will demonstrate drive, intelligence, maturity, and energy and will have a proven dedicated desire and attitude towards Information security related topics.
The ideal candidate thrives in a fast-paced environment, with a strong preference for technical, hands-on work.


They should also possess a keen aptitude for mentoring and coordinating the efforts of other engineers, enhancing team performance and cohesion.

The candidate will exhibit a customer-focused mindset, employing a consultative approach to understand and meet client needs effectively, thereby ensuring superior service and support in all interactions.


Key Responsibilities :

  • Provide leadership and supervision to the SOC Engineering team ensuring tasks and projects are organised and completed to a high standard.
  • Deploy and configure Microsoft Sentinel solutions for our customers, in support of enabling our Managed SOC services.
  • Interact with customers and technical service leads to understand their business challenges and desired outcomes.
  • Develop technical solutions to automate repeatable tasks, including Sentinel Workbooks and Logic Apps.
  • Research, design, and implement cyber security solutions including but not limited to the Microsoft Security stack.
  • Drive the review and update of client supporting documentation such as cyber security policies, architectures, standards, and playbooks.
  • Conduct ongoing research around the threat landscape, including threat actors, TTPs and develop analytical rules, IR actions, investigation strategies and tooling.
  • Support the SOC Team investigate and respond to client cyber security incidents taking an active role in incident response management.
  • Ensure each customer's operational health is maintained and respond to all platform requests within agreed SLAs.
  • Liaise with Account Managers across the business and assist with the presentation of SOC Monitor technology demonstrations to both current and prospective customers.

Required skills :

  • Outstanding written and verbal communication skills in English, essential for effective collaboration and client engagement.
  • Substantial experience in a customerfacing role, effectively communicating with diverse stakeholder groups.
  • Demonstrated leadership in managing and guiding technical teams.
  • Extensive experience within a Managed Security Service Provider (MSSP) environment.
  • Advanced proficiency in SIEM, EDR, and EPP, with technical expertise in solutions including Microsoft Sentinel, Elastic, and CrowdStrike Falcon.
  • Expertise in creating, tuning, and managing SIEM analytical rules to optimise threat detection and response capabilities, ensuring the efficacy and efficiency of security monitoring systems.
  • A robust understanding of query and scripting languages such as KQL, Python, PowerShell, and RegEx, enhancing operational efficiency.
  • Significant experience in leading responses to major security incidents.
  • Comprehensive knowledge of Windows, Linux, and cloud technologies, particularly Microsoft Azure and Office 365.
  • Proven ability in analysing complex data, making strategic recommendations, and presenting findings to client and management teams as part of continuous service improvement initiatives.
  • Detailed understanding of attack vectors, skilled in distinguishing between normal and anomalous activities, and adept at recommending countermeasures and remediation strategies.
  • Experience collaborating with penetration testers and Red Team members in conducting Purple Teaming events.

Qualifications :

  • Degree in Computer Science, Information Security, or a related field
  • Must have.
  • SC200 Microsoft Security Operations Analyst
  • Must have.
  • AZ500 Microsoft Azure Security Technologies
  • Must have.
  • SC100 Microsoft Cybersecurity Architect
  • Highly desirable.
  • CompTIA Security+ SY Desirable.
  • Certified Ethical Hacker (CEH)
  • Desirable.
  • GIAC Security Essentials (GSEC)
  • Desirable.
  • GIAC Certified Incident Handler (GCIH)
  • Desirable.
)
  • SIEM Admin

    1 week ago


    Bengaluru, Karnataka, India Atos Full time

    Eviden, part of the Atos Group, with an annual revenue of circa € 5 billion is a global leader in data-driven, trusted and sustainable digital transformation. As a next generation digital business with worldwide leading positions in digital, cloud, data, advanced computing and security, it brings deep expertise for all industries in more than 47 countries....

  • Lead SIEM Analyst

    2 weeks ago


    Bengaluru, Karnataka, India Blue Yonder Full time

    Overview:We are a leadingAI-driven Global Supply Chain Solutions Software Product Companyand one of Glassdoor's "Best Places To Work India 2023"Scope:Lead SIEM analyst administer Plan, design, implement, monitor, Manage QRadar SIEM Tool that protect an organization's computer systems and data.The Enterprise Security team currently comprises of 30+ members...

  • SIEM Engineer

    2 weeks ago


    Bengaluru, Karnataka, India Global Pharma Tek Full time

    SIEM EngineeringExtensive expertise in Splunk (Splunk Admin certified / Splunk Architect certified) Comprehensive understanding of Security Data Analytics and Observability Profound knowledge in the Splunk Processing Language Experience with global, distributed setupsHands-on Experience with DevOps/GitOps approachResponsibilities:Development of (complex)...

  • Siem Admin

    2 weeks ago


    Bengaluru, Karnataka, India Innova Solutions Full time

    Delivery ManagementBangalorePosted On 05 Feb 202 Required Experience Years ShareApply Basic SectionGradeL4ADesignationSenior Software EngineerShift DetailsDay C (12:00 PM-9:00 PM) OrganisationalCountryIndiaCityBangalore SkillsSkillEducation QualificationNo data availableCERTIFICATIONNo data available Job DescriptionResponsibilities: Having good knowledge on...


  • Bengaluru, Karnataka, India Splunk Administrator Full time

    Splunk Administrator:Role: Splunk AdministratorLocation: Hyderabad***: Install, configure, and update Splunk Enterprise and Splunk Enterprise Security environments in a multisite environment, following best practices from Splunk Professional Services. Configure multisite Search Head clustering and advanced Splunk options like Indexer. Ability to handle...

  • Security Engineer

    4 weeks ago


    Bengaluru, Karnataka, India MUFG Global Service Full time

    Position Title: Security EngineerReporting to:Sandip BhamareLocation: BengaluruJob Profile:Position Details:The Role of the Information Security Engineer Analyst will be part of a team that is responsible to manage, enhance and monitor the enterprise log management and security orchestration platforms. The engineer will be part of a team that will work...


  • Bengaluru, Karnataka, India Optiv Full time

    The Senior Security Engineer will be responsible for creation of procedures, implementation of processes and development of staff for managing and maintaining security systems across internal and client environments. Experience and knowledge of SIEM or Situational Awareness are essential. The Security Engineer will work closely with Management, Senior...


  • Bengaluru, Karnataka, India Trellix Full time

    Customer Success ManagerSr. Information DeveloperRenewals Account ManagerDeal Desk AnalystSenior Customer Success ManagerSenior Customer Success ManagerSenior Customer Success ManagerSenior Customer Success Manager- Public SectorSenior Customer Success ManagerCustomer Success ManagerSales EngineerEnterprise Account ManagerSoftware Development EngineerMajor...

  • Soc/siem

    2 weeks ago


    Bengaluru, Karnataka, India Wipro Limited Full time

    Overview:_ Role Purpose_ The purpose of this role is to analyse, identify, rectify &recommend specific improvement measures that help in the securityposture of the organization by protecting the sensitive information__ Given below is JD_Practical working experience on Threat Detection and Response technologies such as SIEM, UEBA, EDR, SOAR, NDR, Deception,...


  • Bengaluru, Karnataka, India Resillion Full time

    Job DescriptionTitle: Lead SIEM Engineer Experience Range: 9-14 Years Location: Bangalore About You: The successful candidate will be a passionate information security professional with the ability to communicate to different business and IT leaders. The candidate will demonstrate drive, intelligence, maturity, and energy and will have a proven dedicated...

  • Software Engineer

    2 weeks ago


    Bengaluru, Karnataka, India NetApp Full time

    About NetApp We're forward-thinking technology people with heart. We make our own rules, drive our own opportunities, and try to approach every challenge with fresh eyes. Of course, we can't do it alone. We know when to ask for help, collaborate with others, and partner with smart people. We embrace diversity and openness because it's in our DNA. We push...


  • Bengaluru, Karnataka, India NetApp Full time

    About NetAppWe're forward-thinking technology people with heart. We make our own rules, drive our own opportunities, and try to approach every challenge with fresh eyes. Of course, we can't do it alone. We know when to ask for help, collaborate with others, and partner with smart people. We embrace diversity and openness because it's in our DNA. We push...

  • SOAR Engineer

    2 weeks ago


    Bengaluru, Karnataka, India TECPLIX TECHNOLOGIES PRIVATE LIMITED Full time

    Job Role/Title : SOAR EngineerExperience : 4 to 7 yearsLocation : BangaloreRecruiter Id/Email Id (Registered) :We are looking for a candidate with expertise in the following technical areas :SOAR Platforms: Proficiency in utilizing SOAR platforms such as Simplify, Splunk Phantom, Palo Alto Networks Cortex XSOAR, and others.Programming and Scripting:...


  • Bengaluru, Karnataka, India Securonix Full time

    About the job :Job Title : Senior Security EngineerJob Level : Individual ContributorExperience : 5 + YearsSkills Required : Handson deployment of SIEM and/or UEBA solutions, with a functional understanding of UEBA and SIEM components. 5 years or more experience in SIEM Administration / Installation / Implementation with a good understanding of SIEM...


  • Bengaluru, Karnataka, India WELLS FARGO BANK Full time

    About Wells Faro:Wells Fargo India enables global talent capabilities for Wells Fargo Bank NA., by supporting business lines and staff functions across Technology, Operations, Risk, Audit, Process Excellence, Automation and Product, Analytics and Modeling. We are operating in Hyderabad, Bengaluru and Chennai locations.Department Overview:Wells Fargo views...


  • Bengaluru, Karnataka, India IT Full time

    Job description: Expertise in leading and managing security operations, specifically utilizing CrowdStrike technologies. Proficient in implementing and managing CrowdStrike Falcon platform for endpoint protection. Indepth knowledge of threat intelligence, incident response, and vulnerability management. Strong understanding of security best practices,...


  • Bengaluru, Karnataka, India Flipkart Full time

    About the team: The Security Standards team is a part of the central Information security function which is primarily responsible for security standards, secure configuration reviews, architecture reviews, validating efficacy and efficiency of the existing security controls, threat modeling, assessment of the various security controls / technologies based...

  • Senior Technical lead

    2 weeks ago


    Bengaluru, Karnataka, India Happiest Minds Technologies Full time

    Exp : Above 8 yearsLocation : Bangalore/Pune/Noida/Mandatory skills : Cyber security, Incident response, Threat intelligence.JD for Incident response:IR Cybersecurity controls and their enforcement . Make recommendations and response teams to deploy necessary controls and address identified gaps tactical teams to collect, validate, analyze, diagnose,...


  • Bengaluru, Karnataka, India ABB Full time

    Senior Software Engineer- Cyber SecurityTake your next career step at ABB with a global team that is energizing the transformation of society and industry to achieve a more productive, sustainable future.At ABB, we have the clear goal of driving diversity and inclusion across all dimensions: gender, LGBTQ+, abilities, ethnicity and generations. Together, we...

  • Bengaluru

    2 weeks ago


    Bengaluru, Karnataka, India Qualitest Full time

    Acknowledge, analyse, and validate incidents triggered from correlated events through SIEM solutionoCollection of necessary logs that could help in the incident containment and security investigationoEscalate validated and confirmed incidents to SOC LeadoUndertake first stages of false positive and false negative analysisoOpen incidents in ITSM Platform to...