SIEM Integration Architect
2 days ago
Job Description What Success Looks Like In This Role - Lead the integration of alarm/data feeds from multiple SIEM platforms (e.g., Splunk, LogRhythm, Securonix) into Microsoft Sentinel. - Configure and manage Cribl pipelines to collect, filter, transform, and enrich raw data before forwarding to Sentinel. - Design and implement data normalization strategies to ensure consistent formatting, tagging, and field mapping. - Build and maintain data ingestion workflows, ensuring optimized performance, scalability, and reliability. - Develop and maintain custom Sentinel connectors, KQL queries, workbooks, and analytics rules. - Implement and tune SOAR automation playbooks using Logic Apps or integrated response tools. - Collaborate with resolver teams (Platform, Application, CloudOps) for end-to-end use case implementation. - Act as SME for Microsoft Sentinel and Cribl architecture in client-facing and technical forums. - Troubleshoot integration and ingestion issues across hybrid and cloud-native infrastructures. - Establish alert pipelines to bring security alerts/alarms from legacy SIEM tools into Sentinel for centralized monitoring. - Ensure data integrity, compliance, and auditability in accordance with customer and regulatory requirements. - Generate technical documentation, integration standards, and data flow diagrams. - Provide expert guidance to SOC analysts and security engineers on new use cases and data onboarding. - Stay updated on current and emerging threats to enhance detection and response capabilities. You will be successful in this role if you have: - Required Skills & Experience: - 1015 years of experience in cybersecurity, with a strong technical background in SIEM tools and security data architecture. - Proven experience with Microsoft Sentinel, including data connectors, KQL, and automation via Logic Apps. - Hands-on expertise in Cribl: stream design, data parsing, enrichment, routing, and performance tuning. - Experience with multiple SIEM platforms (e.g., Splunk, LogRhythm, Securonix) and their alarm/log structures. - Deep understanding of SIEM data ingestion models, log collection, and telemetry pipelines. - Familiarity with cloud-native services (Azure, AWS, GCP) and their logging/integration mechanisms. - Scripting experience with Python and PowerShell for integration and automation tasks. - Strong knowledge of security frameworks (MITRE ATT&CK, NIST, OWASP, etc.) and their application in real-world use cases. - Ability to troubleshoot complex integration issues involving multiple data sources and tools. Key Qualifications - Bachelor's degree in Computer Science, Information Security, or related field. - Certifications preferred: Microsoft SC-200, Security+, GCIH, CEH, Cribl Certified Admin. - Excellent communication and stakeholder management skills. - Strong problem-solving mindset and attention to detail. - Ability to mentor junior staff and lead technical discussions. Unisys is proud to be an equal opportunity employer that considers all qualified applicants without regard to age, blood type, caste, citizenship, color, disability, family medical history, family status, ethnicity, gender, gender expression, gender identity, genetic information, marital status, national origin, parental status, pregnancy, race, religion, sex, sexual orientation, transgender status, veteran status or any other category protected by law. This commitment includes our efforts to provide for all those who seek to express interest in employment the opportunity to participate without barriers. If you are a US job seeker unable to review the job opportunities herein, or cannot otherwise complete your expression of interest, without additional assistance and would like to discuss a request for reasonable accommodation, please contact our Global Recruiting organization at [Confidential Information] or alternatively Toll Free: 888-560-1782 (Prompt 4). US job seekers can find more information about Unisys EEO commitment here.
-
SIEM Integration Architect
4 days ago
Bengaluru, India Unisys Full timeWhat success looks like in this role: Lead the integration of alarm/data feeds from multiple SIEM platforms (e.g., Splunk, LogRhythm, Securonix) into Microsoft Sentinel. Configure and manage Cribl pipelines to collect, filter, transform, and enrich raw data before forwarding to Sentinel. Design and implement data normalization strategies to ensure consistent...
-
SIEM Architect
5 days ago
Bengaluru, Karnataka, India Securonix Full time ₹ 12,00,000 - ₹ 36,00,000 per yearAt Securonix, we're on a mission to secure the world by staying ahead of cyber threats, reinforcing all layers of our platform with AI capabilities. Our Securonix Unified Defense SIEM provides organizations with the first and only AI-Reinforced solution built with a cybersecurity mesh architecture on a highly scalable data cloud. Enhanced by Securonix EON's...
-
SIEM Architect
5 days ago
Bengaluru, Karnataka, India Securonix Full time ₹ 12,00,000 - ₹ 36,00,000 per yearAt Securonix, we're on a mission to secure the world by staying ahead of cyber threats, reinforcing all layers of our platform with AI capabilities. Our Securonix Unified Defense SIEM provides organizations with the first and only AI-Reinforced solution built with a cybersecurity mesh architecture on a highly scalable data cloud. Enhanced by Securonix EON's...
-
Lead SIEM Engineer
2 days ago
Hyderabad, India Antal International Full timeJob Description Our client a leading healthcare provider is looking for a SIEM / EDR Specialist (813 years) to design, deploy, and implement enterprise-level security solutions that safeguard critical data and operations. Location: Hyderabad (Onsite) Experience: 813 years Industry: Healthcare Key Responsibilities: - Architect, deploy, and manage SIEM and EDR...
-
Siem Platform Admin
1 day ago
Bengaluru, Karnataka, India Phygital Insights Full timeFull time - | - Work From Office - This Posotion is Currently Open **Department / Category**: **ADMIN** - Listed on **Work Location**: **BANGALORE** **Job Descritpion of SIEM Platform Admin**: 7+ Years Relevant Experience - Create innovative solutions to automate and reduce timeframes for operational changes and initial installation of the platform. -...
-
SIEM Engineeer
4 days ago
Bengaluru, India ScaleneWorks Full time"Essential Job Functions:- Individuals at this job are responsible for managing SIEM infrastructure like Microsoft Azure Sentinel and / or other SIEMs Working knowledge of Microsoft Azure cloud platform, log analytics workspaces. Excellent knowledge of KQL (Kusto Query Language). Writing SIEM rules (Cross device and complex correlation) to implement...
-
Principal DITO Architect
2 weeks ago
India Hexaware Technologies Full time ₹ 20,00,000 - ₹ 25,00,000 per yearSIEM Architect The SIEM Architect, would play a critical role in designing, implementing, and optimizing Security Information and Event Management (SIEM) solutions for managed services customers. With deep expertise in Microsoft Sentinel and security operations to ensure customers achieve a scalable, effective, and proactive security posture. By developing...
-
Principal DITO Architect
1 week ago
India Hexaware Full time ₹ 20,00,000 - ₹ 25,00,000 per yearDescriptionSIEM Architect The SIEM Architect, would play a critical role in designing, implementing, and optimizing Security Information and Event Management (SIEM) solutions for managed services customers. With deep expertise in Microsoft Sentinel and security operations to ensure customers achieve a scalable, effective, and proactive security posture. By...
-
Administrator - Siem
7 days ago
Bengaluru, India Microland Full timeAdditional details **Level** - P2**Requirement location** - India - Bengaluru**Number of Position** - 1**Employment type** - ML**Cluster/Group** - Microland Delivery**Business Unit** - EMEA**Department** - SOC - Tech Ops**Job Description**: Required Skill Technology - Cybersecurity|SIEM-SOAR Technology - Cybersecurity|SOC Alert Management Technology -...
-
SIEM Engineer II
1 week ago
Pune, Maharashtra, , India Securonix Full time ₹ 12,00,000 - ₹ 24,00,000 per yearAt Securonix, we're on a mission to secure the world by staying ahead of cyber threats, reinforcing all layers of our platform with AI capabilities. Our Securonix Unified Defense SIEM provides organizations with the first and only AI-Reinforced solution built with a cybersecurity mesh architecture on a highly scalable data cloud. Enhanced by Securonix EON's...