SIEM Engineering Lead

4 weeks ago


Bengaluru, Karnataka, India Resillion Full time

Job Title: SIEM Engineering Lead

About Resillion:

We are a Managed Security Service Provider (MSSP) dedicated to delivering exceptional cybersecurity solutions to our clients. Our team of experts is passionate about protecting our customers' assets and data from evolving threats.

Job Description:

We are seeking a highly skilled SIEM Engineering Lead to join our team. As a SIEM Engineering Lead, you will be responsible for providing leadership and supervision to our SOC Engineering team, ensuring tasks and projects are organized and completed to a high standard.

Key Responsibilities:

  • Deploy and configure Microsoft Sentinel solutions for our customers, in support of enabling our Managed SOC services.
  • Interact with customers and technical service leads to understand their business challenges and desired outcomes.
  • Develop technical solutions to automate repeatable tasks, including Sentinel Workbooks and Logic Apps.
  • Research, design, and implement cybersecurity solutions, including but not limited to the Microsoft Security stack.
  • Drive the review and update of client supporting documentation, such as cybersecurity policies, architectures, standards, and playbooks.
  • Conduct ongoing research around the threat landscape, including threat actors, TTPs, and develop analytical rules, IR actions, investigation strategies, and tooling.
  • Support the SOC Team in investigating and responding to client cybersecurity incidents, taking an active role in incident response management.
  • Ensure each customer's operational health is maintained and respond to all platform requests within agreed SLAs.
  • Liaise with Account Managers across the business and assist with the presentation of SOC Monitor technology demonstrations to both current and prospective customers.

Requirements:

  • Outstanding written and verbal communication skills in English, essential for effective collaboration and client engagement.
  • Substantial experience in a customer-facing role, effectively communicating with diverse stakeholder groups.
  • Demonstrated leadership in managing and guiding technical teams.
  • Extensive experience within a Managed Security Service Provider (MSSP) environment.
  • Advanced proficiency in SIEM, EDR, and EPP, with technical expertise in solutions including Microsoft Sentinel, Elastic, and CrowdStrike Falcon.
  • Expertise in creating, tuning, and managing SIEM analytical rules to optimize threat detection and response capabilities, ensuring the efficacy and efficiency of security monitoring systems.
  • A robust understanding of query and scripting languages, such as KQL, Python, PowerShell, and RegEx, enhancing operational efficiency.
  • Significant experience in leading responses to major security incidents.
  • Comprehensive knowledge of Windows, Linux, and cloud technologies, particularly Microsoft Azure and Office 365.
  • Proven ability in analyzing complex data, making strategic recommendations, and presenting findings to client and management teams as part of continuous service improvement initiatives.
  • Detailed understanding of attack vectors, skilled in distinguishing between normal and anomalous activities, and adept at recommending countermeasures and remediation strategies.
  • Experience collaborating with penetration testers and Red Team members in conducting Purple Teaming events.

Qualifications:

  • Degree in Computer Science, Information Security, or a related field – Must have.
  • SC-200 Microsoft Security Operations Analyst – Must have.
  • AZ-500 Microsoft Azure Security Technologies – Must have.
  • SC-100 Microsoft Cybersecurity Architect – Highly desirable.
  • CompTIA Security+ SY0-601 – Desirable.
  • Certified Ethical Hacker (CEH) – Desirable.
  • GIAC Security Essentials (GSEC) – Desirable.
  • GIAC Certified Incident Handler (GCIH) – Desirable.

  • SIEM Engineering Lead

    4 weeks ago


    Bengaluru, Karnataka, India Resillion Full time

    Job Title: SIEM Engineering LeadResillion is seeking a highly skilled SIEM Engineering Lead to join our team. As a key member of our Managed Security Services team, you will be responsible for leading the deployment and configuration of Microsoft Sentinel solutions for our customers.About the RoleThis is a challenging and rewarding role that requires a...

  • SIEM Engineering Lead

    3 weeks ago


    Bengaluru, Karnataka, India Resillion Full time

    Job Title: SIEM Engineering LeadAbout Resillion:Resillion is a leading provider of Managed Security Services, helping organizations protect their assets and data from cyber threats. We are seeking a highly skilled SIEM Engineering Lead to join our team and contribute to our mission of delivering exceptional security solutions.Job Summary:We are looking for a...


  • Bengaluru, Karnataka, India Buxton Consulting (INDIA) Private Limited Full time

    Job Title: SIEM Security EngineerJob Overview:We are seeking a highly skilled SIEM Security Engineer to join our team at Buxton Consulting (INDIA) Private Limited. As a SIEM Security Engineer, you will be responsible for managing and providing SIEM health and operational support, including supporting architecture changes, tool deployments, and advanced...

  • SIEM Engineer

    4 weeks ago


    Bengaluru, Karnataka, India ScaleneWorks Full time

    Job Title: SIEM EngineerAt ScaleneWorks, we are seeking a highly skilled SIEM Engineer to join our team. The successful candidate will be responsible for managing our SIEM infrastructure, including Microsoft Azure Sentinel and other SIEMs.Key Responsibilities:Manage SIEM infrastructure, including Microsoft Azure Sentinel and other SIEMs.Develop and implement...


  • Bengaluru, Karnataka, India Buxton Consulting (INDIA) Private Limited Full time

    About the RoleAs a SIEM Chronicle Engineer at Buxton Consulting (INDIA) Private Limited, you will play a critical role in managing and providing SIEM Chronicle health and operational support. This includes supporting architecture changes, tool deployments, and advanced detection engineering.Key ResponsibilitiesSIEM Management: Manage and provide SIEM...

  • SIEM Engineering Lead

    4 weeks ago


    Bengaluru, Karnataka, India Resillion Full time

    About the RoleWe are seeking a highly skilled and experienced SIEM Engineering Lead to join our team at Resillion. As a key member of our security operations team, you will be responsible for providing leadership and supervision to the SOC Engineering team, ensuring tasks and projects are organised and completed to a high standard.Key ResponsibilitiesDeploy...


  • Bengaluru, Karnataka, India Orbus International Full time

    Job Title: SIEM Content Management LeadJob Summary:We are seeking a highly skilled SIEM Content Management Lead to oversee the design, development, and implementation of security information and event management (SIEM) solutions. The ideal candidate will have strong expertise in SIEM platforms, content creation, and threat detection techniques to enhance the...

  • Senior SIEM Engineer

    4 weeks ago


    Bengaluru, Karnataka, India Thomson Reuters Full time

    About the RoleIn this exciting opportunity, you will play a critical role in ensuring the stability and security of our Splunk and Enterprise Security SIEM platform. As a seasoned SIEM Engineer, you will be responsible for monitoring and maintaining the platform, embedding automation into our infrastructure and application deployment, and identifying and...


  • Bengaluru, Karnataka, India Orbus International Full time

    We're seeking a highly skilled SIEM Content Management Lead to oversee the design, development, and implementation of security information and event management (SIEM) solutions.Key Responsibilities:SIEM Content Development:Design, develop, and maintain SIEM content, including detection rules, use cases, correlation rules, dashboards, and reports.Optimize...

  • Senior SIEM Engineer

    4 weeks ago


    Bengaluru, Karnataka, India Thomson Reuters Full time

    About the RoleAs a Senior SIEM Engineer at Thomson Reuters, you will be responsible for monitoring and stability of Splunk, and Enterprise Security SIEM platform. You will embed automation into the deployment and management of the infrastructure and application, identify and remediate SIEM application defects / process failures, onboard new application and...

  • Senior SIEM Engineer

    4 weeks ago


    Bengaluru, Karnataka, India Thomson Reuters Full time

    About the RoleThe Information Security and Risk Management (ISRM) organization at Thomson Reuters is seeking a Senior SIEM Engineer to join our growing SIEM & Cyber Fusion Engineering team. This candidate will collaborate with our SOC, CIRT, Threat Detection, and Cyber Intel functions to deliver capabilities to improve our ability to defend against cyber...


  • Bengaluru, Karnataka, India SIEM XPERT Full time

    SIEM XPERT, a leading cybersecurity training provider, is seeking a part-time Security Operations Trainer to join our team. Located in Bangalore, we cater to both freshers and experienced professionals looking to enhance their expertise in SIEM platforms such as Splunk, EDR, and XSOAR.This is a remote role for a Microsoft Sentinel/IBM QRadar Instructor who...

  • Data Engineer

    4 weeks ago


    Bengaluru, Karnataka, India Microland Full time

    Job SummaryMicroland is seeking a highly skilled Data Engineer - SIEM to join our team. As a Data Engineer - SIEM, you will be responsible for designing, developing, and maintaining large-scale data processing systems.Key ResponsibilitiesDesign and develop scalable data processing systems using Azure Data Factory, ADLS, and Azure SQL.Develop and maintain...


  • Bengaluru, Karnataka, India Wow Jobs (Wow Softech Pvt. Ltd) Full time

    SIEM Engineer Role OverviewAt Wow Jobs (Wow Softech Pvt. Ltd), we are seeking a skilled SIEM Engineer to manage and provide SIEM health and operational support. This includes supporting architecture changes, tool deployments, and advanced content development.Key Responsibilities:- Perform SIEM configuration management and troubleshooting, addressing complex...

  • Senior SIEM Engineer

    3 weeks ago


    Bengaluru, Karnataka, India Thomson Reuters Full time

    About the RoleIn this opportunity, you will be responsible for monitoring and stability of Splunk, and Enterprise Security SIEM platform. You will embed automation into the deployment and management of the infrastructure and application, identify and remediate SIEM application defects / process failures, onboard new application and platform logs via syslog,...


  • Bengaluru, Karnataka, India ScaleneWorks Full time

    Job SummaryAs a Security Information and Event Management (SIEM) Engineer at ScaleneWorks, you will be responsible for managing SIEM infrastructure like Microsoft Azure Sentinel and other SIEMs. You will work with Microsoft Azure cloud platform, log analytics workspaces, and have excellent knowledge of KQL (Kusto Query Language).Key Responsibilities Design...

  • Senior SIEM Engineer

    4 weeks ago


    Bengaluru, Karnataka, India Thomson Reuters Full time

    About the RoleIn this opportunity, you will be responsible for monitoring and stability of Splunk, and Enterprise Security SIEM platform. You will embed automation into the deployment and management of the infrastructure and application, identify and remediate SIEM application defects / process failures, onboard new application and platform logs via syslog,...


  • Bangalore/Bengaluru, Karnataka, India, Karnataka Orbus International Full time

    We are looking for a highly skilled SIEM Content Management Lead to oversee the design, development, and implementation of security information and event management (SIEM) solutions. The ideal candidate will have strong expertise in SIEM platforms, content creation, and threat detection techniques to enhance the organization's security monitoring and...

  • Senior SIEM Engineer

    4 weeks ago


    Bengaluru, Karnataka, India Thomson Reuters Full time

    About the RoleIn this exciting opportunity, you will be responsible for the monitoring and stability of Splunk and Enterprise Security SIEM platforms. Your key responsibilities will include:Embedding automation into the deployment and management of infrastructure and applicationsIdentifying and remediating SIEM application defects and process...


  • Bengaluru, Karnataka, India RED Global Full time

    RED Global - Forti SIEM Contract Opportunity - Hybrid/Bangalore - 6 Months + ExtensionRED is seeking a seasoned Forti SIEM Certified Consultant to spearhead the technical deployment of a prominent global client.Roles and Responsibilities:Lead the technical deployment or troubleshootingTranslate customer requirements into High-Level Designs and Low-Level...