SIEM Engineer

5 days ago


Gurugram, India Virtusa Full time

SIEM Engineer - CREQ Description Job Description: 1. Should have strong knowledge in Microsoft Sentinel SIEM engineering activities. 2. Should have performed SIEM engineering role more than 5 years. 3. Should have expertise in building custom analytical rules, tuning of analytical rules, building automation through logic apps, management of entire product feature, end to end configuration/administration. 4. Should have expertise in forming KQL queries and functions for complex detection and monitoring requirements. 5. Should have strong knowledge in MITRE attack framework and expertise in developing detections across framework. 6. Should have expertise in log management, retention configurations, maintenance of logs at low cost, performing access management, developing new custom dashboard based on different requirements. 7. Should have proven record of implementing Sentinel advanced features, efficient log collection mechanisms, deployment and maintenance of log forwarders, maintenance of local agents. 8. Should have expertise in integrating data sources which are not supported by Sentinel tool OOB. Custom parser development and ability to solve technical issues in Sentinel. 9. Should have ability to prepare and maintain policy and procedure documentations around SIEM technology, document life cycle management skill is required. 10. Should have expertise in consuming contents from content hub and management of log analytics workspace and ability to handle issues in MMA and AMA agents. (Hands-on in migrating agents from MMA to AMA will be added advantage) 11. Should have knowledge and experience in data transformation rules and data collection rules concepts in Sentinel. 12. Should have proven record of participation in customer or client reviews or global certifications regarding security controls in SIEM. Compliance and regulatory requirements understandings are good to have. 13. Should have ability to work with stakeholders to solve technical issues and must support and deliver complex business, security, and operational requirements. 14. Should have ability to work with vendor technical support group and driving issues towards effective and permanent closure. 15. Preference should be given for candidates completed expert training and certifications in Sentinel and Defender products of Microsoft. 16. Good to have strong knowledge in Microsoft Sentinel pricing, Microsoft defender products, Microsoft Cloud services and Azure Arc. Primary Location Gurgaon, Haryana, India Other Locations Hyderabad, Andhra Pradesh, India Job Type Experienced Primary Skills IT Service Management, Cloud Risk & Compliance Management Years of Experience 7 Qualification Job Description: 1. Should have strong knowledge in Microsoft Sentinel SIEM engineering activities. 2. Should have performed SIEM engineering role more than 5 years. 3. Should have expertise in building custom analytical rules, tuning of analytical rules, building automation through logic apps, management of entire product feature, end to end configuration/administration. 4. Should have expertise in forming KQL queries and functions for complex detection and monitoring requirements. 5. Should have strong knowledge in MITRE attack framework and expertise in developing detections across framework. 6. Should have expertise in log management, retention configurations, maintenance of logs at low cost, performing access management, developing new custom dashboard based on different requirements. 7. Should have proven record of implementing Sentinel advanced features, efficient log collection mechanisms, deployment and maintenance of log forwarders, maintenance of local agents. 8. Should have expertise in integrating data sources which are not supported by Sentinel tool OOB. Custom parser development and ability to solve technical issues in Sentinel. 9. Should have ability to prepare and maintain policy and procedure documentations around SIEM technology, document life cycle management skill is required. 10. Should have expertise in consuming contents from content hub and management of log analytics workspace and ability to handle issues in MMA and AMA agents. (Hands-on in migrating agents from MMA to AMA will be added advantage) 11. Should have knowledge and experience in data transformation rules and data collection rules concepts in Sentinel. 12. Should have proven record of participation in customer or client reviews or global certifications regarding security controls in SIEM. Compliance and regulatory requirements understandings are good to have. 13. Should have ability to work with stakeholders to solve technical issues and must support and deliver complex business, security, and operational requirements. 14. Should have ability to work with vendor technical support group and driving issues towards effective and permanent closure. 15. Preference should be given for candidates completed expert training and certifications in Sentinel and Defender products of Microsoft. 16. Good to have strong knowledge in Microsoft Sentinel pricing, Microsoft defender products, Microsoft Cloud services and Azure Arc. Travel No


  • Siem Enginer- L3

    23 hours ago


    Gurugram, Haryana, India Rackspace Full time

    **SecOps Engineer L3 (SIEM Enginering)** *** **About Rackspace Cyber Defence** - Rackspace Cyber Defence is our next generation cyber defence and security operations capability that builds on 20+ years of securing customer environments to deliver proactive, risk-based, threat-informed and intelligence driven security services. **Our purpose** is to enable...


  • Gurugram, India BinaryStar SearchX Full time

    Description : The ideal candidate should have prior experience working in security monitoring and incident response environments, particularly with DLP and EDR solutions. Hands-on experience with Netskope and SentinelOne will be an added advantage. The analyst will work alongside internal security teams in day-to-day threat detection, analysis, and...


  • Gurugram, Gurugram, India PeopleStrong Full time

    Job Description We are looking for an experienced Network and Security Engineer (3+ years) to manage and enhance our IT infrastructure. The ideal candidate will have strong expertise in network management, security, and troubleshooting, ensuring seamless connectivity and robust protection across systems. Key Responsibilities: - Configure and manage Fortinet...


  • Gurugram, Gurugram, India Policybazaar.com Full time

    Job Description Job Description: - Manage endpoint,XDR,Proxy DLP, email security,SIEM patch management related security solutions - Regularly back up security device configurations - Investigate alerts from SIEM, EDR, and other monitoring tools for potential compromises - Implement recommendations from audit findings within agreed timelines - Prepare daily...

  • SOC Engineer

    5 days ago


    Gurugram, India NTT DATA Full time

    Job Description Make an impact with NTT DATA Join a company that is pushing the boundaries of what is possible. We are renowned for our technical excellence and leading innovations, and for making a difference to our clients and society. Our workplace embraces diversity and inclusion – it’s a place where you can grow, belong and thrive. Your day at NTT...


  • Gurugram, India Genpact Full time

    Genpact (NYSE: G) is a global professional services and solutions firm delivering outcomes that shape the future. Our 125,000+ people across 30+ countries are driven by our innate curiosity, entrepreneurial agility, and desire to create lasting value for clients. Powered by our purpose - the relentless pursuit of a world that works better for people - we...


  • gurugram, India Talent Worx Full time

    Talworx is hiring for one of our client for L3 Network Security Operations Engineer is a critical role within the Cybersecurity team, with the dual responsibilities of operational excellence and driving forward-looking engineering improvements. This role is designed for individuals who have strong network security operational experience, and a proven track...

  • LogRythm Engineer

    3 days ago


    Delhi, Gurugram, NCR, India Clarity Consulting Full time ₹ 8,00,000 - ₹ 12,00,000 per year

    Your work profile.We are looking for a skilled and proactive LogRhythm L1 Engineer to join our Security Operations team. As aLevel 1 Engineer, you will be responsible for advanced analysis, troubleshooting, and remediation of securityincidents and events using the LogRhythm SIEM platform. You will work closely with other securityprofessionals to identify and...

  • SOC L1 Analyst

    5 days ago


    Gurugram, India ASSYSTEM Full time

    Job DescriptionAs a member of the Assystem SOC team, you will join an international and senior team in a very demanding unit. You will be expected to learn quickly and multi-task. After the first training session, you will work with a senior SOC incident manager and your main tasks will be: Analysis and interpretation of alerts Analysis and qualification of...

  • High Tech Infosystems

    3 weeks ago


    Gurugram, India High Tech Infosystems Full time

    Job Title : Senior Engineer of exp : 10- 15 : Description : Are you a cybersecurity expert with hands-on experience across infrastructure, cloud, threat detection, and governance? We're looking for a Senior Cybersecurity Engineer who can design, deploy, and optimize end-to end security Youll Do :- Design & implement cybersecurity solutions across cloud,...