CyberSecurity Engineer

14 hours ago


bangalore, India NETSACH GLOBAL Full time

Greetings from Netsach - A Cyber Security Company.Role Summary:We are seeking a Cybersecurity Engineer with 3-5yrs of expertise in Detection Rule Engineering, to play a pivotal role in developing a detection rule dataset for Large Language Models. The ideal candidate will have hands-on experience in creating and fine-tuning detection rules for SIEM (Security Information and Event Management) and EDR (Endpoint Detection and Response) systems along with proficiency in SIGMA Rule creation and conversion. Also, the candidate is expected to have testing experience to validate the generated rules.Job Title: Cybersecurity Engineer (Detection Rule Engineering)Location: Noida, Chennai, BangaloreNotice- Immediate joiners onlyExperience: 3-5 yrs.Contract duration- 6 Months to 1yrs + extensionJob Description / Responsibilities:Design, develop, and maintain detection rules, queries, and alerts in SIEM (Splunk preferred) and EDR (Microsoft Defender preferred) environments.Write custom SIEM and EDR queries corresponding to MITRE TTPs for comprehensive coverage.Test and validate the accuracy of developed SIEM and EDR queries and corresponding SIGMA rules.Establish a mechanism to translate EDR/SIEM queries to SIGMA rules and develop a comprehensive dataset of detection rules.Stay updated on the latest threats, vulnerabilities, and detection methodologies and apply them in rule creation.Collaborate with other stakeholders in application of Rules dataset for fine tuning of LLMs and RAG implementation. Communication and Documentation:Excellent written and oral communication, presentation, listening and interpersonal skills.Collaborating effectively with internal and external team.Excellent reporting, time management, analytical & communication skills.Preferred Skills: Exposure to RAG (Retrieval-Augmented Generation) and fine-tuning of LLMs for cybersecurity tasks.Hands-on experience with Microsoft Defender EDR and Splunk SIEM.Certifications such as Splunk Certified User, Microsoft Certified: Security Operations Analyst Associate, GIAC Certified Detection Analyst (GCDA), or equivalent.Qualifications and Technical Skills:2+ years of previous experience in Cybersecurity domain specializing in Detection Rule Engineering.Proven experience in creating and managing detection queries and rules in SIEM (Splunk) and EDR (Microsoft Defender) environments.Strong understanding of SIGMA rules, their use, and how to convert detection logic between different platforms.Experience with log analysis, threat intelligence integration, and use case development for SIEM and EDR systems.Deep knowledge of security event analysis, log aggregation, and threat detection methodologies.Familiarity with threat detection techniques like anomaly detection, behavior analytics, and indicator-based detection.Knowledge of network protocols, operating system internals, and security monitoring techniques.Scripting skills in languages such as Python, PowerShell, or bash for rule creation and automation.Strong troubleshooting and problem-solving skills.Familiarity with cybersecurity frameworks such as MITRE ATT&CK, Cyber Kill Chain, and NIST.Thank YouEmily JhaNetsach - A Cyber Security Company



  • bangalore, India ICD Technologies LLC Full time

    About ICD Technologies ICD Technologies is a UAE-based technology solutions provider helping enterprises accelerate their digital and data transformation journeys. Our Cybersecurity practice deliver end-to-end services in security engineering, identity management, and compliance for leading organizations in the region.  About the Role We are seeking an...


  • bangalore, India ICD Technologies LLC Full time

    About ICD TechnologiesICD Technologies is a UAE-based technology solutions provider helping enterprises accelerate their digital and data transformation journeys. Our Cybersecurity practice deliver end-to-end services in security engineering, identity management, and compliance for leading organizations in the region. About the RoleWe are seeking an...


  • bangalore, India Chevron Full time

    Total Number of Openings5About the position:The OT (Operational Technology) Cybersecurity Engineering and Innovation team is responsible for the strategic and technical direction of OT/IACS (Industrial Automated Control Systems) cybersecurity in Chevron. OT Cybersecurity Engineers support activities such as secure-by-design, standardized solution and network...


  • bangalore, India Value Point Systems Pvt Ltd Full time

    Job Title: Engineering for Tenable AD and Deception Tool Job Summary:The platform engineering Specialist is responsible for technical support and administration work, reviewing Logs and signatures identified in tools, define and configure rules, developing automation scripts, and provide the directions in use cases within the Security Operations Center...


  • bangalore, India Value Point Systems Pvt Ltd Full time

    Job Title : Engineering for Tenable AD and Deception Tool Job Summary : The platform engineering Specialist is responsible for technical support and administration work, reviewing Logs and signatures identified in tools, define and configure rules, developing automation scripts, and provide the directions in use cases within the Security Operations Center...


  • bangalore, India Seceon Inc. Full time

    Job Title : Junior AI/ML Cybersecurity Engineer Location : Mumbai, India (Onsite) Open Positions : 10 Experience level : 0–1 years (Freshers encouraged to apply) Employment Type : Full-time  About Seceon Seceon is a leading cybersecurity company delivering advanced AI/ML-driven threat detection and automated response solutions. We are building...


  • bangalore, India Capgemini Full time

    Your RoleThis role involves conducting and facilitating penetration testing at the vehicle, component, and functional levels. The candidate will simulate real-world attack scenarios targeting embedded systems, automotive interfaces, wireless protocols, and connected servicesContribute to the development and continuous improvement of Cybersecurity...


  • Bangalore, India Capgemini Full time

    Your Role This role involves conducting and facilitating penetration testing at the vehicle, component, and functional levels. The candidate will simulate real-world attack scenarios targeting embedded systems, automotive interfaces, wireless protocols, and connected services Contribute to the development and continuous improvement of Cybersecurity...


  • bangalore, India Solventum Full time

    Thank you for your interest in joining Solventum. Solventum is a new healthcare company with a long legacy of solving big challenges that improve lives and help healthcare professionals perform at their best. At Solventum, people are at the heart of every innovation we pursue. Guided by empathy, insight, and clinical intelligence, we collaborate with the...


  • Hybrid - Bangalore, India Parspec Full time ₹ 15,00,000 - ₹ 25,00,000 per year

    About ParspecFounded in 2021, Parspec is revolutionizing material procurement for the $13 trillion USD construction industry by digitizing and organizing the industry's product data. Our proprietary AI technology maintains a current and comprehensive catalogue of millions of products, enabling our customers to identify products that best meet their needs -...