SIEM/SOAR Security Engineer
2 weeks ago
Job Description What Success Looks Like In This Role - SIEM/SOAR Support: Assist in configuring and maintaining SIEM/SOAR platforms to support log collection, threat detection, and automated response workflows. Monitor and troubleshoot SIEM/SOAR systems to ensure reliable operation and data integrity. Support the creation of detection rules, dashboards, and alerts under senior engineer guidance. - Log Management: Help manage log ingestion pipelines, including syslog, Windows Event Logs, and other sources, using SIEM tools or log aggregator and refinement platforms like Cribl. Work with Incident Response teams and senior engineer to apply basic filtering and parsing rules to reduce noise and optimize log data for analysis. - Incident Response: Support incident response activities, including investigating alerts, collecting evidence, and documenting findings. Assist in executing SOAR playbooks for automated incident handling, under senior supervision. Participate in post-incident reviews to improve detection and response processes. - Technical Assistance: Work closely with senior engineers to implement and test SIEM/SOAR configurations. Perform routine maintenance tasks, such as updating rules, validating data ingestion, and monitoring system performance. - Compliance and Documentation: Assist in maintaining audit trails and logs to support compliance requirements (e.g., data protection regulations). Document configurations, incidents, and processes to ensure operational continuity. - Serves as an escalation point for technical issues around security tooling and the Unisys SOC team.| You will be successful in this role if you have: Key Qualifications - 7-10 years in security operations, IT, or a related technical role, with exposure to SIEM/SOAR systems. - Basic experience in incident response, such as handling alerts or supporting investigations. - Foundational knowledge of SIEM/SOAR platforms (e.g., Splunk, Google SecOps, QRadar, Elastic, or similar). - Familiarity with log management concepts, including syslog, Windows Event Logs, or API-based data collection. - Basic scripting skills (e.g., Python, Grok, Go, JSON) for automation or data processing. - Bachelor's Degree in Cybersecurity, Computer Science, Computer Engineering, Information Technology or similar, or the equivalent hands-on experience combined with training and certifications. - Exposure to incident response processes, such as triaging alerts or analyzing logs. - Willingness to learn threat detection frameworks (e.g., MITRE ATT&CK). - Familiarity with security issues associated with cloud environments, preferably with AWS or Azure. - Strong problem-solving skills and attention to detail. - Ability to work collaboratively with multiple teams and follow senior engineer guidance. - Good communication skills to document findings and report to stakeholders Preferred Qualifications - Exposure to Cribl, Splunk, or Google SecOps (Chronicle), with a willingness to learn these tools. - Basic understanding of log routing, filtering, or transformation concepts. - Experience with basic forensic analysis or playbook execution in a SOAR platform. - Entry-level certifications (e.g., CompTIA Security+, Splunk Fundamentals, GIAC Security Essentials) are a plus. Unisys is proud to be an equal opportunity employer that considers all qualified applicants without regard to age, blood type, caste, citizenship, color, disability, family medical history, family status, ethnicity, gender, gender expression, gender identity, genetic information, marital status, national origin, parental status, pregnancy, race, religion, sex, sexual orientation, transgender status, veteran status or any other category protected by law. This commitment includes our efforts to provide for all those who seek to express interest in employment the opportunity to participate without barriers. If you are a US job seeker unable to review the job opportunities herein, or cannot otherwise complete your expression of interest, without additional assistance and would like to discuss a request for reasonable accommodation, please contact our Global Recruiting organization at [Confidential Information] or alternatively Toll Free: 888-560-1782 (Prompt 4). US job seekers can find more information about Unisys EEO commitment here.
-
SIEM/SOAR Security Engineer
3 weeks ago
Bengaluru, India Unisys Full timeWhat success looks like in this role: SIEM/SOAR Support : Assist in configuring and maintaining SIEM/SOAR platforms to support log collection, threat detection, and automated response workflows. Monitor and troubleshoot SIEM/SOAR systems to ensure reliable operation and data integrity. Support the creation of detection rules, dashboards, and alerts under...
-
SIEM/SOAR Security Engineer
3 weeks ago
Bengaluru, India Unisys Full timeWhat success looks like in this role: SIEM/SOAR Support : Assist in configuring and maintaining SIEM/SOAR platforms to support log collection, threat detection, and automated response workflows. Monitor and troubleshoot SIEM/SOAR systems to ensure reliable operation and data integrity. Support the creation of detection rules, dashboards, and alerts...
-
Senior Consultant
5 days ago
Chennai, Tamil Nadu, India, Tamil Nadu SmarTek21 Full timeDescription:Senior Consultant responsible for designing, implementing, and optimizing Google SecOps SIEM and SOAR solutions, leading complex integrations, and advising clients on advanced detection, automation, and response strategies.Responsibilities:Lead the design and deployment of Google SecOps SIEM and SOAR solutions for complex client...
-
Security SOAR Engineer
12 hours ago
Bengaluru, Karnataka, India Netenrich, Inc. Full time ₹ 9,00,000 - ₹ 12,00,000 per yearCompany profile :Netenrich boosts the effectiveness of organizations' security and digital operations so they can avoid disruption and manage risk. Resolution Intelligence Cloud is our native-cloud data analytics platform for enterprises and services providers that need highly scalable, multitenant security operations and/or digital operations management....
-
Subject Matter Expert
3 days ago
Bengaluru, India Volto Consulting & Services Full timeDescription : Job Summary :We are seeking a dynamic and proactive SOAR Automation SME with hands-on expertise in the Securonix platform.The ideal candidate thrives in an autonomous environment, consistently initiates ideas for automating security processes, and brings logical, structured thinking to complex challenges.You will play a pivotal role in...
-
Group SIEM Engineer
3 weeks ago
Bengaluru, India DP World Australia Full timeKEY ACCOUNTABILITIES Administer and maintain SIEM and SOAR platforms, including configuration, tuning, and updates. Onboarding of Log sources into SIEM platform, enhancing our security monitoring capabilities. Develop and implement correlation rules to detect potential security threats as per threat landscape. Design, implement, and maintain SOAR...
-
Group SIEM Engineer
3 weeks ago
Bengaluru, India DP World Australia Full timeKEY ACCOUNTABILITIES Administer and maintain SIEM and SOAR platforms, including configuration, tuning, and updates. Onboarding of Log sources into SIEM platform, enhancing our security monitoring capabilities. Develop and implement correlation rules to detect potential security threats as per threat landscape. Design, implement, and maintain SOAR...
-
Group SIEM Engineer
10 hours ago
Bengaluru, Karnataka, India DP WORLD Full time ₹ 12,00,000 - ₹ 36,00,000 per yearJob Description KEY ACCOUNTABILITIES Administer and maintain SIEM and SOAR platforms, including configuration, tuning, and updates. Onboarding of Log sources into SIEM platform, enhancing our security monitoring capabilities. Develop and implement correlation rules to detect potential security threats as per threat landscape. Design, implement,...
-
SIEM Lead
4 weeks ago
Bengaluru, India Hiret Consulting Full timeWe are seeking an experienced SIEM & Security Analytics Engineer (SIEM Lead) to design, develop, and enhance our detection capabilities across multiple SIEM platforms. This role involves building advanced correlation rules, use cases, and SOAR playbooks while integrating new log sources from both on-premises and cloud environments. The SIEM Lead will also...
-
SIEM Lead
4 weeks ago
Bengaluru, India Hiret Consulting Full timeWe are seeking an experienced SIEM & Security Analytics Engineer (SIEM Lead) to design, develop, and enhance our detection capabilities across multiple SIEM platforms. This role involves building advanced correlation rules, use cases, and SOAR playbooks while integrating new log sources from both on-premises and cloud environments. The SIEM Lead will also...