Siem Azure Sentinel Expert 2023cbin0602

1 week ago


Bengaluru, India Mindverse Consulting Services Full time

The Customer is a global digital transformation solutions provider looking for 3 SIEM Azure Sentinel Expert having 4-7 years experience.

Location
- Bangalore, Chennai, Hyderabad, Kochi, Noida, Pune, Thiruvananthapuram

The role requires a details-oriented professional who will provide SIEM support to our pre-sales teams and support the delivery of SIEM solutions to our customers.

The SIEM Expert will be called upon to understand the customer requirements and recommend the appropriate SIEM solution to meet those requirements.

The SIEM Expert will support the SIEM solution with Architecture and Design documentation. This role is an excellent opportunity for an individual with strong technical, communication, and customer facing skills.

**WHAT YOU WILL BE DOING**:

- Understand customer requirements and recommend best practices SIEM solutions
- Offer consultative advice in security principles and best practices related to SIEM operations
- Developing new SIEM rules, correlations, dashboards to meet the customer needs
- Design and document a SIEM solution to meet the customer needs
- Assist in the creation and verification of Statement of Work (SOW) documentation
- Assist pre-sales with SIEM sizing, Architecture, RFP’s and client technical meetings
- Deploy and configure the SIEM platform as per Vendor guidelines and industry Best Practices
- Assist client with technical guidance to configure end log sources in-scope to be logged to the SIEM
- Verification of data of log sources in the SIEM follow the Common Information Model (CIM)
- Document the build of the SIEM solution

**Benefits**:
Interview Process: 3 Rounds (Technical, Managerial and Client Round)

Hybrid Working Mode

Source Location: Can source from across India

Looking for core Experience in Azure Sentinel Primarily Use Case Developer using KQL. One should Write and Develop Use case with KQL. One Should have experience in Brute Force use case and have worked on more Use cases. Should have developed use case under Mitre Framework. Regex is preferred to have, also please share updated questioner along with CVs.

Notice period: Either serving notice period with confirmed LWD or official notice period of 30 days and less.

Requirements: - Experience with Azure Sentinel SIEM platform. - University degree in information security or equivalent work experience. Experience and proficient Kusto Query Language(KQL) - Minimum 4 years’ experience in a similar role - Preferred SIEM vendor certification of administrator - Experience and proficient in UNIX/Linux



  • Bengaluru, Karnataka, India Deloitte Consulting Full time ₹ 20,00,000 - ₹ 25,00,000 per year

    Role & responsibilitiesWe are looking for a skilled Microsoft Sentinel SIEM Engineer to join our Cybersecurity Operations team. The ideal candidate will be responsible for the deployment, configuration, integration, and operational support of Microsoft Sentinel as a core SIEM platform, ensuring efficient threat detection, incident response, and security...


  • Bengaluru, India Capgemini Full time

    Key Responsibilities: Understands SIEM tools (Sentinel ) functionality and logic behind creating rules and filters, integrating with different solution based on client security policy and requirements e.g. AV software, IDS, IPS etc... Good TCP /IP concepts Good understanding on Vulnerability Management tools such Nessus, Qualys Guard Diagnosing and resolving...


  • Bengaluru, Karnataka, India Capgemini Full time ₹ 12,00,000 - ₹ 36,00,000 per year

    Key Responsibilities:Understands SIEM tools (Sentinel ) functionality and logic behind creating rules and filters, integrating with different solution based on client security policy and requirements e.g. AV software, IDS, IPS etc...Good TCP /IP conceptsGood understanding on Vulnerability Management tools such Nessus, Qualys GuardDiagnosing and resolving...


  • Bengaluru, India Capgemini Full time

    Strong background developing Azure Sentinel analytics rules, incidents, playbooks, notebooks, workbooks, threat hunting within the Azure Cloud. Strong and demonstrated background working with Log Analytics Workspaces, Kusto Query Language (KQL), Dashboard\workbook development. Strong understanding of Azure PaaS services. - Solid experience with Logic Apps in...


  • Bengaluru, Karnataka, India Gig Consultants Full time

    Responsibilities :- He/she should be having 6+ years of experience in below given fields,- Monitor the host reporting status and raise internal support ticket in case of Non-Reporting of any host.- Troubleshoot host non-reporting issue and resolve it. Perform remediation for non-compliance sentinel agents- Worked in Cyber Security team and SIEM.- Fine-tuned...


  • Bengaluru, India Capgemini Full time

    **SIEM maintenance**: Content finetuning (use-cases, hunting queries, playbooks, workbooks etc.) Log flow monitoring and anomaly detection **Onboarding of customers**: Participate in creation of a customer onboarding plan Connecting data sources to Sentinel and validating them with customers Creating content for those data sources SIEM content...


  • Bengaluru, India Capgemini Full time

    Provide superior technical security expertise to ensure that the Security Operations Centre SOC is always delivering a professional service to its customers - Conduct detailed analytical queries and investigations identify areas that require specific attention identify indicators of compromise IOC or events of interest EOI that need further investigation and...


  • Bengaluru, India Capgemini Full time

    Provide superior technical security expertise to ensure that the Security Operations Centre SOC is always delivering a professional service to its customers - Conduct detailed analytical queries and investigations identify areas that require specific attention identify indicators of compromise IOC or events of interest EOI that need further investigation and...


  • Bengaluru, India Capgemini Full time

    SIEM monitoring.- Monitor incoming alerts- - Monitor SIEM health- - Monitor incoming SIEM tickets- Alert Investigation & Reporting- Provide initial triage for all SIEM alerts- - Escalate alert to L2 when approrpiate and as indicated by SOP- - Collect and include any relevant evidence for escalated alerts. This includes investigation steps already done, what...


  • Bengaluru, India Deloitte Full time

    Cyber Deloitte Cyber understands the unique challenges and opportunities businesses face in cybersecurity. Join our team to deliver powerful insights to help our clients navigate the ever-changing threat design, and technology as we partner with clients to transform finance. Position Summary Level: Solution Advisor Work you'll do: As a Consultant, you will...