
SIEM- Sentinel/ Azure Sentinel
3 weeks ago
Key Responsibilities:
- Understands SIEM tools (Sentinel ) functionality and logic behind creating rules and filters, integrating with different solution based on client security policy and requirements e.g. AV software, IDS, IPS etc...
- Good TCP /IP concepts
- Good understanding on Vulnerability Management tools such Nessus, Qualys Guard
- Diagnosing and resolving issues and problems with the clients information technology systems involving several processes.
- Act as a point of escalation for L1Team Members
- Develop/Fine Tune Use Cases
- Monitor logs and security events across network infrastructure. Log, monitor, investigate, and report on access violations.
- Provide log analysis to provide views of misuse, fraudulent or malicious activities.
- Provide updates as the incident progresses through the incident response process as requested by client.
- Support security incident response processes in the event of a security breach by providing logging and audit information and by providing incident reporting.
- Coordinate with client Information Security and Capgemini activities required to respond to security incident notifications received from Capgemini.
- Implement and manage a security incident management process according to the Security Policy.
- Maintain a security corrective action tracking methodology.
- Coordinate notification of security incident occurrence with client.
- Provide periodic trending problem reports. Create and maintain a Security Incident log that is also provided to client Information Security to facilitate historical analysis.
- Assist investigators of security incidents involving the client Sites and other locations, document findings, and coordinate resolution.
- Investigating causes, analyzing and diagnosing the problem and repairing or providing detailed alternative solutions.
- Technical Experience: -
1: Experience in SIEM tools, Strong working experience in SIEM ES
2: Team management Incident handling skills, use case management, risk assessment
3: SOC operations for very large enterprises
4: Security Analytics skills is added advantage
5: Should have excellent customer handling skills
Professional Attributes:
1: Good verbal communication skills to connect with customers at varying levels of the organization methods
2: Ability to operate independently and make decisions with little or no supervision.
Educational Qualification:
Bachelor or college degree in related field or equivalent work experience
-
Azure Sentinel Siem
5 days ago
Bengaluru, India CIEL HR Services Full time**Experience - 4-10 years** **Location - Bangalore, Kochi, Thiruvananthapuram, Pune, Chennai, Hyderabad, Noida - PAN India** **must have -** **Azure Sentinel SIEM - min 2 Years** **Kusto Query Language(KQL) **Used Case Development - min 2 Years** **UNIX/Linux** **Notice - Immediate to 20 day**s
-
SIEM Sentinel Administrator
4 weeks ago
Bengaluru, Karnataka, India Gig Consultants Full timeResponsibilities :- He/she should be having 6+ years of experience in below given fields,- Monitor the host reporting status and raise internal support ticket in case of Non-Reporting of any host.- Troubleshoot host non-reporting issue and resolve it. Perform remediation for non-compliance sentinel agents- Worked in Cyber Security team and SIEM.- Fine-tuned...
-
SIEM- Sentinel/ Azure Sentinel
2 weeks ago
Bengaluru, Karnataka, India Capgemini Full time ₹ 12,00,000 - ₹ 36,00,000 per yearKey Responsibilities:Understands SIEM tools (Sentinel ) functionality and logic behind creating rules and filters, integrating with different solution based on client security policy and requirements e.g. AV software, IDS, IPS etc...Good TCP /IP conceptsGood understanding on Vulnerability Management tools such Nessus, Qualys GuardDiagnosing and resolving...
-
Azure Sentinel 9 to 12 Years Pan India
2 weeks ago
Bengaluru, India Capgemini Full timeProvide superior technical security expertise to ensure that the Security Operations Centre SOC is always delivering a professional service to its customers - Conduct detailed analytical queries and investigations identify areas that require specific attention identify indicators of compromise IOC or events of interest EOI that need further investigation and...
-
Azure logic apps- Sentinel
2 weeks ago
Bengaluru, Hyderabad, Pune, India Capgemini Full time ₹ 15,00,000 - ₹ 25,00,000 per yearRole & responsibilities :We are seeking a skilled and proactive Microsoft Sentinel Platform Engineer to lead the design, implementation, and management of Microsoft Sentinel across enterprise-scale environments. The ideal candidate will possess strong expertise in KQL, incident response, client engagement, and multi-tenant Azure environments. This role...
-
SIEM Engineeer
1 week ago
Bengaluru, India ScaleneWorks Full time"Essential Job Functions:- Individuals at this job are responsible for managing SIEM infrastructure like Microsoft Azure Sentinel and / or other SIEMs Working knowledge of Microsoft Azure cloud platform, log analytics workspaces. Excellent knowledge of KQL (Kusto Query Language). Writing SIEM rules (Cross device and complex correlation) to implement...
-
SIEM Engineeer
1 week ago
Bengaluru, India ScaleneWorks Full time"Essential Job Functions:- Individuals at this job are responsible for managing SIEM infrastructure like Microsoft Azure Sentinel and / or other SIEMs Working knowledge of Microsoft Azure cloud platform, log analytics workspaces. Excellent knowledge of KQL (Kusto Query Language). Writing SIEM rules (Cross device and complex correlation) to implement...
-
Bengaluru, India Deloitte Full timeCyber Deloitte Cyber understands the unique challenges and opportunities businesses face in cybersecurity. Join our team to deliver powerful insights to help our clients navigate the ever-changing threat design, and technology as we partner with clients to transform finance. Position Summary Level: Solution Advisor Work you'll do: As a Consultant, you will...
-
Bengaluru, Karnataka, India Deloitte Full time ₹ 1,80,000 - ₹ 2,40,000 per yearCyberDeloitte Cyber understands the unique challenges and opportunities businesses face in cybersecurity. Join our team to deliver powerful insights to help our clients navigate the ever-changing threat design, and technology as we partner with clients to transform finance.Position SummaryLevel: Solution AdvisorWork you'll do:As a Consultant, you will be...
-
Azure Sentinel 4 to 6 Years Chennai
2 weeks ago
Bengaluru, India Capgemini Full timeSIEM monitoring.- Monitor incoming alerts- - Monitor SIEM health- - Monitor incoming SIEM tickets- Alert Investigation & Reporting- Provide initial triage for all SIEM alerts- - Escalate alert to L2 when approrpiate and as indicated by SOP- - Collect and include any relevant evidence for escalated alerts. This includes investigation steps already done, what...