SIEM Detection Engineer

2 days ago


Pune, Maharashtra, India Hitachi Full time

Description

Job Title: SIEM Detection Engineer

Designation: Engineer

Company: Cumulus Systems Pvt. Ltd.

Location: Pune, India

Salary: As per Industry

Company Overview:

Cumulus Systems engages in providing End-to-End Software Development Lifecycle involving Business & Requirements Analysis, Solution Architecture & Design, Development, Testing, Deployment and Postproduction Support. Its cross-domain storage performance management platform called MARS (Measure Analyze Recommend Solve) monitors and helps manage large-scale, heterogeneous IT infrastructure across the entire enterprise.

Position Overview:

As an L2 Detection Specialist, you will design, test, and maintain high-fidelity detection content in one of the following SIEM platforms—Microsoft Sentinel (KQL) or Google Security Operations (YARA-L). Partnering closely with SOAR engineers, SOC analysts, and solutions engineers, you will perform proactive threat hunting, fine-tune alert logic, and ensure our global SOC can rapidly identify and respond to emerging threats.

Job Roles & Responsibilities:

  • Design, build, and maintain detection rules, correlation searches, dashboards, and reports in one or more of the specialized SIEM platform.
  • Continuously validate and tune detection logic through simulations, red-team findings, SOC false positives and live incident feedback.
  • Analyze log and telemetry data to uncover suspicious behaviors, patterns, and indicators of compromise; develop new signatures accordingly.
  • Integrate external threat-intelligence feeds (IoCs and TTPs) to enrich alerts and broaden detection coverage.
  • Leverage MITRE ATT&CK and other frameworks to guide prioritization and detection development methodology.
  • Perform periodic rule health checks, adjusting thresholds to maximize fidelity and minimize false positives.
  • Collaborate with SOAR engineers to automate enrichment, triage, and response actions that stem from SIEM alerts.
  • Conduct hypothesis & threat intelligence driven threat hunts to identify advanced attacker techniques not yet covered by automated detections.
  • Generate clear, actionable metrics and trend reports for SOC leadership, highlighting alert volumes, rule efficacy, and tuning outcomes. Maintain detection KPIs to measure alert accuracy.
  • Document all detection logic, tuning rationales, and operational procedures to support audit, compliance, and knowledge transfer.
  • Provide technical consultation during incident investigations and post-incident retrospectives, identifying detection gaps and recommending improvements.

Skills:

  • Strong understanding of MITRE ATT&CK and its practical application to detection engineering.
  • Familiarity with cloud infrastructures (Azure, GCP, AWS) and the security logs they generate.
  • Proficiency in scripting for automation (Python or PowerShell preferred).
  • Working knowledge of common security controls and telemetry sources—firewalls, IDS/IPS, EDR, endpoint protection, cloud logs, etc.
  • Relevant certifications (any of): Admin · SC-200 (Microsoft Sentinel) · Google SecOps Certified · CompTIA Security+ · GCP / Azure / AWS Foundational.
  • Excellent written documentation skills and the ability to convey complex detection concepts to both technical and non-technical stakeholders.

Experience: Minimum 3 years overall experience in cybersecurity operations or engineering.

At least 1–2 years hands-on experience building detections in one of the following SIEMs: Microsoft Sentinel (KQL) or Google SecOps (YARA-L).

Nice-to-Have

  • Experience integrating SOAR playbooks with SIEM alerts.
  • Prior involvement in purple-team exercises or red-team simulations.
  • Knowledge of additional query or signature languages (e.g., Sigma, Elastic Query DSL).
  • Scripting Knowledge (Python, Powershell)
  • Data Analytics & Reporting Expertise in Microsoft PowerBI, Tableau or equivalents.


  • Pune, Maharashtra, India Hitachi Full time

    Location:Pune, Maharashtra, IndiaJob ID: R0111931Date Posted: Company Name:HITACHI INDIA PVT. LTDProfession (Job Category):OtherJob Schedule: Full timeRemote:NoJob Description:Job Title: SIEM Detection EngineerDesignation: EngineerCompany: Cumulus Systems Pvt. Ltd.Location: Pune, IndiaSalary: As per IndustryCompany Overview:Cumulus Systems engages in...


  • Pune, Maharashtra, India Coditing® Full time

    Job Title: SIEM/SOAR Transition & Microsoft Defender XDR SpecialistJob SummaryWe are seeking a skilled Security Engineer / Analyst with hands-on experience in transitioning SIEM/SOAR capabilities from Azure Portal to Microsoft Defender Portal. The ideal candidate will be responsible for configuring Microsoft Defender XDR, optimizing detection and response...


  • Pune, Maharashtra, India Mastercard Full time

    Job Title:Senior Software Engineer - Cybersecurity Overview:Who is Mastercard?We work to connect and power an inclusive, digital economy that benefits everyone, everywhere, by making transactions safe, simple, smart, and accessible. Using secure data and networks, partnerships, and passion, our innovations and solutions help individuals, financial...

  • SecOps Consultant

    1 week ago


    Pune, Maharashtra, India InfraCloud Technologies Full time

    SecOps ConsultantOverview: The Security Operations (SecOps) Consultant will coordinate with the SIEM/SOC team to triage alerts, support threat detection, and integrate threat intelligence into response strategies. This role serves as a bridge between the operational security team and IT/engineering, ensuring swift incident response and continuous...


  • Pune, Maharashtra, India CLSA Full time US$ 6,00,000 - US$ 18,00,000 per year

    Key Areas of ResponsibilitiesIngest logs from all in-scope IT systems to SIEM (MS Sentinel)Configure SIEM test cases / Machine Learning alerts in SIEM systemsFacilitate reviews of SIEM alerts with SOC team to detect security incidents and fine-tune log ingestion as requiredManage Endpoint Security, DLP solutions, Firewall configurations, and Web Proxy...


  • Pune, Maharashtra, India Iquest Management Consultants Full time

    Lead IT Security ArchitectDesignation Lead IT Security ArchitectExperience: 10-15 YearsLocation: Pune, IndiaWork Mode: HybridA.Your Skills: years of cybersecurity experience, with leadership in SIEM Architecture, SOC operations, threat detection, and incident response.Deep expertise in SIEM platforms, including Microsoft Sentinel, with a focus on log...


  • Pune, Maharashtra, India BNY Full time

    Knowledge of SIEM tooling, designing and implementing use cases & documenting KBAs. Strong knowledge of KQL. Proven experience in incident response and handling. Automate alert triage and response using SOAR playbooks integrated with SIEM. Detect anomalous user behavior by correlating identity and activity patterns in SIEM. Experience contributing to...

  • SecOps Consultant

    7 days ago


    Pune, Maharashtra, India InfraCloud Technologies Full time

    SecOps ConsultantOverview:The Security Operations (SecOps) Consultant will coordinate with the SIEM/SOC team to triage alerts, support threat detection, and integrate threat intelligence into response strategies. This role serves as a bridge between the operational security team and IT/engineering, ensuring swift incident response and continuous improvement...

  • Senior SOC Engineer

    3 days ago


    Pune, Maharashtra, India METRO Global Solution Center IN Full time

    Company DescriptionMetro Global Solution Center (MGSC) is internal solution partner for METRO, a €31 Billion international wholesaler with operations in more than 30 countries. The store network comprises a total of 623 stores in 21 countries, of which 522 offer out-of-store delivery (OOS), and 94 dedicated depots. In 12 countries, METRO runs only the...

  • Senior SOC Engineer

    3 days ago


    Pune, Maharashtra, India METROMAKRO Full time

    Company Description Metro Global Solution Center (MGSC) is internal solution partner for METRO, a €31 Billion international wholesaler with operations in more than 30 countries. The store network comprises a total of 623 stores in 21 countries, of which 522 offer out-of-store delivery (OOS), and 94 dedicated depots. In 12 countries, METRO runs only the...