Azure Sentinel 04 to 06 Years Mumbai
1 week ago
Good knowledge of SIEM, SIEM Architecture and Hybrid Integrations.
- Expertise with Azure Sentinel creating deploying Analytics Rules Playbooks Workbooks Logic Apps Log Analytics Key Vault IAM Azure AD etc
- Good Knowledge of Azure DevOps GitHub On boarding various of log sources on Multitenant Platform On boarding customer Sentinel Workspace using Lighthouse or Delegated Access.
- Creating and managing Azure ARM Templates to deploy Azure Sentinel and dependent Azure Services Troubleshoot issues regarding SIEM and other SOC tools.
- Data archiving and backup and data purging configuration as per need and compliance Helping L2 and L1 with required knowledge base details and basic documentations
- Conduct detailed analytical queries and investigations identify areas that require specific attention identify indicators of compromise IOC or events.
- Investigation and develop use cases and rules to be developed into the Azure Sentinel platform Develop and improve Security.
- knowledge of IPS platforms Create and enhance internal processes and procedures Professional communications and reporting to SOC stakeholders and customers Deliver qualified information about actual threats and indications
- Experience in Query language such as SQL or KQL Kusto Query Language Creation of data normalization and parsing capabilities within Log Analytics workspace Tools and Service level knowledge
- working experience in Azure Network security groups Azure AD Azure Key vaults Azure AD security Azure DDoS protection Azure Application security groups Azure Sentinel Azure CASB solution.
**Primary Skills**
- Azure Sentinel.
- SIEM Architecture.
- Hybrid Integrations/Playbooks/KQL
**Secondary Skills**
Good To have Azure security Certifications.
-
Sentinel Admin 04 to 12 Years Pan India
6 days ago
Bengaluru, India Capgemini Full time**Job Description**: - **Good knowledge of SIEM, SIEM Architecture and Hybrid Integrations.** - **Expertise with Azure Sentinel, creating/deploying Analytics Rules, Playbooks, Workbooks, Logic Apps, Log Analytics, Key Vault, IAM, Azure AD, etc** - **Good Knowledge of Azure DevOps & GitHub, Familiarity with GitHub, Jenkins and CI/CD pipelines.** -...
-
Sentinel Admin 04 to 12 Years Pan India
6 days ago
Bengaluru, India Capgemini Full timeGood knowledge of SIEM, SIEM Architecture and Hybrid Integrations. - Expertise with Azure Sentinel, creating/deploying Analytics Rules, Playbooks, Workbooks, Logic Apps, Log Analytics, Key Vault, IAM, Azure AD, etc - Good Knowledge of Azure DevOps & GitHub, Familiarity with GitHub, Jenkins and CI/CD pipelines. - Experience in Query language such as SQL or...
-
Azure Sentinel 6 to 9 Years Bengaluru
1 week ago
Bengaluru, India Capgemini Full timeStrong background developing Azure Sentinel analytics rules, incidents, playbooks, notebooks, workbooks, threat hunting within the Azure Cloud. Strong and demonstrated background working with Log Analytics Workspaces, Kusto Query Language (KQL), Dashboard\workbook development. Strong understanding of Azure PaaS services. - Solid experience with Logic Apps in...
-
L2 Azure Sentinel
9 hours ago
Bengaluru, Karnataka, India Terralogic Full time ₹ 5,00,000 - ₹ 15,00,000 per yearOverview:Seeking a Security Analyst with expertise in Microsoft Sentinel and the Microsoft Defender Suite (EDR, XDR, SIEM, SOAR). Role involves threat detection, incident response, threat hunting, and automation using KQL, PowerShell, Defender for Cloud, Defender for Office 365, MDVM, Copilot for Security, and ServiceNow SecOps SIR for incident tracking and...
-
Azure Sentinel SOC L2 L3 Mumbai
1 day ago
Bengaluru, India Capgemini Full time4-9 years previous Security Operations Centre L2/L3 support Experience in conducting security investigations.- - Must have Experience on Azure Sentinel.- - Experience with KQL Use case creation and fine tuning and Workbook development.- - Experience on tools such as SIEM EDR Firewall IDS IPS Vulnerability Management Web Filtering etc- - Experience on...
-
Azure logic apps- Sentinel
6 days ago
Bengaluru, Hyderabad, Pune, India Capgemini Full time ₹ 15,00,000 - ₹ 25,00,000 per yearRole & responsibilities :We are seeking a skilled and proactive Microsoft Sentinel Platform Engineer to lead the design, implementation, and management of Microsoft Sentinel across enterprise-scale environments. The ideal candidate will possess strong expertise in KQL, incident response, client engagement, and multi-tenant Azure environments. This role...
-
Bengaluru, India Capgemini Full timeProvide superior technical security expertise to ensure that the Security Operations Centre SOC is always delivering a professional service to its customers - Conduct detailed analytical queries and investigations identify areas that require specific attention identify indicators of compromise IOC or events of interest EOI that need further investigation and...
-
Azure Sentinel Sme 6 to 9 Years Pan India
5 days ago
Bengaluru, India Capgemini Full time**SIEM maintenance**: Content finetuning (use-cases, hunting queries, playbooks, workbooks etc.) Log flow monitoring and anomaly detection **Onboarding of customers**: Participate in creation of a customer onboarding plan Connecting data sources to Sentinel and validating them with customers Creating content for those data sources SIEM content...
-
Siem/sentinel (Rm 2119)
2 weeks ago
Bengaluru, Karnataka, India Source-right Full timeMust have: SIEM/Sentinel - strong experience in implementation of MS Sentinel, log source integration, logic apps, use case management - Expert knowledge in SOC Implementation Services, Incident response, and Microsoft Defender for Cloud. - Strong knowledge in SOAR EUBA. - Working knowledge of ITSM tools, ServiceNow preferred. - Ability to onboard new log...
-
Azure Sentinel 2 to 4 Years Pan India
5 days ago
Bengaluru, India Capgemini Full time**SIEM monitoring.** - Monitor incoming alerts - Monitor SIEM health - Monitor incoming SIEM tickets **Alert Investigation & Reporting** - Provide initial triage for all SIEM alerts - Escalate alert to L2 when approrpiate and as indicated by SOP - Collect and include any relevant evidence for escalated alerts. This includes investigation steps already done,...