SIEM Engineering Manager
2 weeks ago
Company Profile Our client is a global IT services company that helps businesses with digital transformation with offices in India and the United States. It helps businesses with digital transformation, provide IT collaborations and uses technology, innovation, and enterprise to have a positive impact on the world of business. With expertise is in the fields of Data, IoT, AI, Cloud Infrastructure and SAP, it helps accelerate digital transformation through key practice areas - IT staffing on demand, innovation and growth by focusing on cost and problem solving. Location & work – Noida, India Employment Type - Full Time Profile – SIEM Engineering Manager Preferred experience - 10+ Years The Role: As a SIEM Engineering Manager, you will be responsible for the technical direction, operational governance, and delivery assurance of SIEM and SOAR platforms.This position leads engineering, automation, and AI-driven transformation initiatives to build a self-driving, SLA-based, AI-augmented SOC. The role involves team leadership, platform scalability, automation development, AI integration, documentation oversight, and governance engagement with client stakeholder. Responsibilities: · Lead cross-functional teams: SIEM Engineers, SOAR Developers, Automation Leads, Content Writers, and GenAI Developers. · Define and track engineering delivery KPIs, SLAs, and transformation milestones. · Ensure 24x7 engineering support readiness with L3-level coverage, including weekends. · Drive continuous improvement, innovation, and engineering excellence. · Govern ingestion pipelines, data normalization, correlation rules, and detection logic. · Ensure alignment with threat models, compliance requirements, and security standards. · Oversee platform health, performance tuning, and scalability planning. · Integrate SIEM with XDR, DLP, EDR, and identity security tools. · Direct development of playbooks in Azure Logic Apps and other SOAR platforms. · Collaborate with Automation Leads to drive hyper-automation and reduce MTTR. · Ensure playbooks are modular, scalable, and aligned with IR procedures. · Promote KQL-based automation and Copilot (AI) usage for Smart L2 operations. · Guide GenAI Developers in embedding AI agents into SOC workflows. · Support predictive analytics, RCA automation, incident summarization, and LLM-based enhancements. · Oversee Content Writers in documenting use cases, playbooks, and detection logic. · Ensure engineering documentation, traceability, and audit readiness. Must-Have Qualifications: ● Bachelor's degree in Computer Science, Information Technology, Engineering, or a related field. ● Minimum 10+ years of Cyber security experience with SIEM engineering leadership. ● Strong expertise in Microsoft Sentinel, Azure Logic Apps, Defender XDR, and enterprise SIEM tools. ● Hands-on experience with log ingestion pipelines, correlation logic, and detection engineering. ● Strong hands-on experience with SOAR platforms and playbook development (Azure Logic Apps or equivalent). ● Strong scripting skills in KQL, PowerShell, Python for automation and workflow optimization. ● L3-level troubleshooting capability and 24x7 operations exposure. ● Proven experience in building automation workflows (SOAR) and reducing MTTR. ● Experience with AI/ML use cases related to SOC modernization (GenAI, automation, LLMs). ● Strong understanding of security architecture, threat models, and data protection standards. ● Experience in leading large SOC/SIEM engineering teams. ● Expertise with DLP, EDR, and XDR integrations (Defender, CrowdStrike, etc.). Preferred Qualifications: · Excellent leadership, communication, and stakeholder management skills. · Certifications such as AZ-500, SC-100, GCIA, GDSA, CISSP, CCSP, or Azure Security Certifications · Background in delivering MBRs/QBRs and driving cyber security transformation initiatives Application Method Apply online on this portal or on email at careers@speedmart.co.in
-
Senior SIEM Engineer
7 days ago
India Black Box Full time ₹ 6,00,000 - ₹ 18,00,000 per yearWe are seeking a skilled and detail-oriented SIEM Engineer with a minimum of 8+ years of experience in security operations and security information and event management (SIEM). The ideal candidate will have hands-on experience working with multiple SIEM platforms, including Securonix, Microsoft Sentinel, LogRhythm, and Rapid7, and a solid understanding of...
-
Lead SIEM Engineer
4 weeks ago
Hyderabad, India Antal International Full timeJob Description Our client a leading healthcare provider is looking for a SIEM / EDR Specialist (813 years) to design, deploy, and implement enterprise-level security solutions that safeguard critical data and operations. Location: Hyderabad (Onsite) Experience: 813 years Industry: Healthcare Key Responsibilities: - Architect, deploy, and manage SIEM and EDR...
-
Elastic Engineer – Elasticsearch
4 days ago
Bengaluru, Karnataka, India, Karnataka GIOS Technology Full timeI am hiring for Elastic Engineer – Elasticsearch / SIEM / ObservabilityLocation: Bengaluru, Karnataka, IndiaJob DescriptionArchitect, deploy, and maintain the Elastic SIEM stack (ES/Kibana/Logstash/Beats) for robust security monitoring in cloud and on-prem environments. Develop, tune, and operationalize high-fidelity detection rules and alerts based on...
-
SIEM Audit Support, AVP
2 weeks ago
Pune, India Deutsche Bank Full timeJob Description SIEM Audit Support, AVP Position Overview Job Title: SIEM Audit Support Corporate Title: Assistant Vice President Location:Pune, India Role Description - The COO Chief Information Security Office (CISO) is responsible for addressing information security risks to the Deutsche Bank global IT, as Security Information and Event Management (SIEM)...
-
SIEM Audit Support, AVP
1 week ago
Pune, India Deutsche Bank Full timeJob Description Position Overview Job Title: SIEM Audit Support Corporate Title: Assistant Vice President Location:Pune, India Role Description - The COO Chief Information Security Office (CISO) is responsible for addressing information security risks to the Deutsche Bank global IT, as Security Information and Event Management (SIEM) audit support, you are...
-
CSA SIEM Admin
3 weeks ago
Bengaluru, India Deutsche Bank Full timeJob Description CSA SIEM Admin (Splunk, Sentinel), AVP Position Overview Job Title: CSA SIEM Admin (Splunk, Sentinel) Corporate Title:Assistant Vice President Location: Bangalore, India Role Description - The COO Chief Security Office (CSO) is responsible for addressing information security risks to the Deutsche Bank global IT, as a Security Engineer-AVP,...
-
CSA SIEM Admin
2 weeks ago
Bengaluru, India Deutsche Bank Full timeJob Description Position Overview Job Title: CSA SIEM Admin (Splunk, Sentinel) Corporate Title:Assistant Vice President Location: Bangalore, India Role Description - The COO Chief Security Office (CSO) is responsible for addressing information security risks to the Deutsche Bank global IT, as a Security Engineer-AVP, you will play a key technical role in our...
-
Senior Manager
1 week ago
Gurugram, Gurugram, India SBI Card Full timeJob Description About Us JOB DESCRIPTION SBI Card is a leading pure-play credit card issuer in India, offering a wide range of credit cards to cater to diverse customer needs. We are constantly innovating to meet the evolving financial needs of our customers, empowering them with digital currency for seamless payment experience and indulge in rewarding...
-
SIEM Integration Architect
4 weeks ago
Bengaluru, India Unisys Full timeJob Description What Success Looks Like In This Role - Lead the integration of alarm/data feeds from multiple SIEM platforms (e.g., Splunk, LogRhythm, Securonix) into Microsoft Sentinel. - Configure and manage Cribl pipelines to collect, filter, transform, and enrich raw data before forwarding to Sentinel. - Design and implement data normalization strategies...
-
Platform Administrator – NextGen SIEM
1 week ago
Bengaluru, Karnataka, India ColorTokens Full time US$ 80,000 - US$ 1,20,000 per yearJob Title: Platform Administrator - NextGen SIEM Location: Bangalore (on site) Experience Level: 4 - 8 years About ColorTokens ColorTokens specializes in advanced security solutions designed to safeguard organizations' assets and critical systems from cyber threats. Our flagship product, Xshield Enterprise Microsegmentation platform, empowers...