Administrator - Siem
4 days ago
Additional details
**Level**
- P2**Requirement location**
- India - Bengaluru**Number of Position**
- 1**Employment type**
- ML**Cluster/Group**
- Microland Delivery**Business Unit**
- US**Department**
- SOC - Tech Ops**Job Description**:
(Securonix)
OVERALL SKILL SET FOR SIEM
Øf0 In-depth experience of architecting and supporting on-premise and cloud-based security technologies.
Øf0 Strong security product skills, including experience of operating and supporting the following technologies:
- Endpoint detection and response (EDR) solutions like SentinelOne, Symantec, Tanium, TrendMicro
- Security Information and Event Management (SIEM) solutions like Securonix, ArcSight, QRadar, Splunk
Øf0 Knowledge and understanding of cloud security concepts, technologies, and best practices, including but not limited to, automation and secure containerization frameworks, directory services (e.g., Active Directory, LDAP), SSO, One-Time Passwords (OTP), encryption technologies and forensics.
Øf0 Knowledge of and implementation experience with cloud or on-prem security technologies, architecture and best practices that includes hands-on experience on hardening the security environments.
Øf0 Knowledge of and implementation experience with security technologies, including but not limited to, firewalls (WAF or Perimeter) configuration, two factor authentication, PKI, malware and intrusion protection and detection tools.
Øf0 Demonstrated knowledge and understanding of information security industry trends and emerging technologies, and an ability to relate them to the company and its objectives.
Øf0 Demonstrated experience with vulnerability and risk management, including performing security scans and risk assessments to identify potential vulnerabilities, track the remediation of findings to reduce risks.
Øf0 Demonstrated experience and understanding of cybersecurity incident management and response procedures 20 must demonstrate ability to perform and respond well in crisis situations.
Øf0 Demonstrated knowledge and understanding of information security standards, guidelines and frameworks such as ISO 27001/27002, NIST, COBIT or PCI.
Øf0 Experience with maintaining compliance regulatory and legal requirements such as GDPR, PCI.
Øf0 Fluent in one or more programming or scripting languages such as Bash, Powershell, Python, TCL, Java, PHP, Perl, C++, and Visual Basic.
Øf0 Authored SOC SOPs, playbooks, work instructions and/or other process documents Familiarity with Kusto Query Language (KQL) & Splunk Search Processing Language (SPL) and/or Elastic Domain Specific Language (DSL) and/or regex.
Øf0 Good verbal and written communication skills 20 Able to communicate, security and risk implications to technical and non-technical audiences.
Øf0 Ability to work independently managing multiple deadlines and deliverables
Øf0 Self-motivated and driven, capable of handling problems until resolved within accepted time tolerances 20 anticipates problems and identifies long-term implications of decisions and actions.
Øf0 Industry certifications (Desirable): CISSP, CISM, CISA, CCNA - SEC, CEH/OSCP, ITIL V3 Foundation, GCIH, Specific Certification on SIEM, EDR etc
Job Requirements
Øf0 Good understanding of system security (client, server, system hardening standards)keep up to date with the latest security and technology developments
Øf0 Research/evaluate emerging cyber security threats and ways to manage them
Øf0 Plan for disaster recovery and create contingency plans in the event of any security breaches
Øf0 Monitor for attacks, intrusions and unusual, unauthorised or illegal activity
Øf0 Test and evaluate security products
Øf0 Design new security systems or upgrade existing ones
Øf0 Fine tunning of existing Security monitoring systems
Øf0 Use advanced analytic tools to determine emerging threat patterns and vulnerabilities
Øf0 Engag
-
Administrator - Siem (So2)
4 days ago
Bengaluru, Karnataka, India Microland Full time: **Education Qualification**: B.Sc **Skills**: Primary -> Technology | Sentinel SIEM Tool Administrator | Level 2 Support | 2 - Knowledgeable Primary -> Technology | Splunk SIEM Tool Administrator | Level 2 Support | 2 - Knowledgeable Secondary -> Technology | Qradar SIEM Tool Administrator | Level 2 Support | 2 - Knowledgeable **Certification**: Technology...
-
Siem Administrator
2 weeks ago
Bengaluru, Delhi, Mumbai, NCR, India KPMG Assurance and Consulting Services LLP Full time ₹ 5,00,000 - ₹ 15,00,000 per yearRole & responsibilitiesLog collector onboarding/off boarding & health monitoring of SIEM tool.Event Source Management & Log collectionTroubleshoot Log collector / event source issues and alertsLog Fidelity maintenanceTechnical upgrades/migrations.Onboarding/Offboarding of assets to EDR solutionRBAC maintenance and management.Work with vendor on escalated...
-
Administrator - Siem (So1)
4 days ago
Bengaluru, Karnataka, India Microland Full time**Required Skills**: Technology | Sentinel SIEM Tool Administrator | Level 2 Support Technology | Securonix SIEM Tools Administrator | Level 2 Support **Education Qualification**: B.Sc **Certification Mandatory / Desirable**: Technology | Microsoft Certified: Security, Compliance, and Identity Fundamentals / CISSP/CISM/CEH/GIAC Certified Incident...
-
Administrator - Siem (So1)
2 weeks ago
Bengaluru, Karnataka, India Microland Full time:- ** Education Qualification**: B.Sc **Skills**: Primary -> Technology | Sentinel SIEM Tool Administrator | Level 2 Support | 2 - Knowledgeable Primary -> Technology | Securonix SIEM Tools Administrator | Level 2 Support | 2 - Knowledgeable **Certification**: Technology | Microsoft Certified: Security, Compliance, and Identity Fundamentals /...
-
Administrator - Siem
1 week ago
Bengaluru, Karnataka, India Microland Full time: - **Education Qualification**: Any Graduate **Skills**: Primary -> Technology | Cybersecurity | SOC Alert Management | 3 - Experienced Primary -> Technology | Cybersecurity | SIEM-SOAR | 3 - Experienced Secondary -> Technology | Cybersecurity | End Point Security | 2 - Knowledgeable Secondary -> Technology | Cybersecurity | Vulnerability Management | 2 -...
-
Administrator - Siem
2 weeks ago
Bengaluru, Karnataka, India Microland Full time: **Responsibilities** - **Monitoring of SIEM alerts and creation of SIEM investigations.**: - **Gathering information of Alerts & Incidents and performing Initial Incident Analysis.** **o Artifacts Gathering** **o Performing OSINT checks.** **o User profiling, Device Profiling, IP and Application Profiling etc.** **o Documenting all the above in Incident...
-
Platform Administrator
4 days ago
Bengaluru, Karnataka, India ColorTokens Full time**Job Title**:Platform Administrator - NextGen SIEM **About ColorTokens** At **ColorTokens**, we empower businesses to stay operational and resilient in an increasingly complex cybersecurity landscape. Breaches happen—but with our cutting-edge **ColorTokens Xshield platform**, companies can minimize the impact of breaches by preventing the lateral spread...
-
Platform Administrator
4 days ago
Bengaluru, Karnataka, India Colortokens Full time**Job Title**:Platform Administrator - NextGen SIEM **About ColorTokens** At **ColorTokens**, we empower businesses to stay operational and resilient in an increasingly complex cybersecurity landscape. Breaches happen—but with our cutting-edge **ColorTokens Xshield platform**, companies can minimize the impact of breaches by preventing the lateral spread...
-
Sr. SIEM Administrator
3 days ago
Bengaluru, Karnataka, India Atos Full time ₹ 9,00,000 - ₹ 12,00,000 per yearTBCYoe 5 to 11 YrsGCM leave 4Location MumbaiJD -Configure, and maintain the SIEM platform (Any SIEM Tool).Develop and fine-tune correlation rules, alerts, and dashboards to support SOC use cases. Onboard log sources from various platforms (Windows, Linux, cloud, network devices, applications).Perform health checks, upgrades, and patch management of SIEM...
-
Siem Azure Sentinel Expert
1 week ago
Bengaluru, India Syntaxive Technologies Full time**Exp Required: 4 - 7 years** **LOCATIONS - BANGALORE / KOCHI / THIRUVANANTHAPURAM / PUNE / CHENNAI / HYDERABAD / NOIDA** **Hybrid Working Mode** **Requirements: - ** Experience with Azure Sentinel SIEM platform. University degree in information security or equivalent work experience Experience and proficient Kusto Query Language(KQL) Minimum 4 years...