SIEM Detection Engineer

20 hours ago


Pune, Maharashtra, India Hitachi Full time US$ 90,000 - US$ 1,20,000 per year

Location:

Pune, Maharashtra, India

Job ID:

R0102771

Date Posted:

Company Name:

HITACHI INDIA PVT. LTD

Profession (Job Category):

Other

Job Schedule: 

Full time

Remote:

No

Job Description:

Job Title: SIEM Detection Engineer

Designation: Engineer

Company: Cumulus Systems Pvt. Ltd.

Location: Pune, India

Salary: As per Industry

Company Overview:

Cumulus Systems engages in providing End-to-End Software Development Lifecycle involving Business & Requirements Analysis, Solution Architecture & Design, Development, Testing, Deployment and Postproduction Support. Its cross-domain storage performance management platform called MARS (Measure Analyze Recommend Solve) monitors and helps manage large-scale, heterogeneous IT infrastructure across the entire enterprise.

Position Overview:

As an L2 Detection Specialist, you will design, test, and maintain high-fidelity detection content in one of the following SIEM platforms—Microsoft Sentinel (KQL) or Google Security Operations (YARA-L). Partnering closely with SOAR engineers, SOC analysts, and solutions engineers, you will perform proactive threat hunting, fine-tune alert logic, and ensure our global SOC can rapidly identify and respond to emerging threats.

Job Roles & Responsibilities:

  • Design, build, and maintain detection rules, correlation searches, dashboards, and reports in one or more of the specialized SIEM platform.

  • Continuously validate and tune detection logic through simulations, red-team findings, SOC false positives and live incident feedback.

  • Analyze log and telemetry data to uncover suspicious behaviors, patterns, and indicators of compromise; develop new signatures accordingly.

  • Integrate external threat-intelligence feeds (IoCs and TTPs) to enrich alerts and broaden detection coverage.

  • Leverage MITRE ATT&CK and other frameworks to guide prioritization and detection development methodology.

  • Perform periodic rule health checks, adjusting thresholds to maximize fidelity and minimize false positives.

  • Collaborate with SOAR engineers to automate enrichment, triage, and response actions that stem from SIEM alerts.

  • Conduct hypothesis & threat intelligence driven threat hunts to identify advanced attacker techniques not yet covered by automated detections.

  • Generate clear, actionable metrics and trend reports for SOC leadership, highlighting alert volumes, rule efficacy, and tuning outcomes. Maintain detection KPIs to measure alert accuracy.

  • Document all detection logic, tuning rationales, and operational procedures to support audit, compliance, and knowledge transfer.

  • Provide technical consultation during incident investigations and post-incident retrospectives, identifying detection gaps and recommending improvements.

Skills:

  • Strong understanding of MITRE ATT&CK and its practical application to detection engineering.

  • Familiarity with cloud infrastructures (Azure, GCP, AWS) and the security logs they generate.

  • Proficiency in scripting for automation (Python or PowerShell preferred).

  • Working knowledge of common security controls and telemetry sources—firewalls, IDS/IPS, EDR, endpoint protection, cloud logs, etc.

  • Relevant certifications (any of): Admin · SC-200 (Microsoft Sentinel) · Google SecOps Certified · CompTIA Security+ · GCP / Azure / AWS Foundational.

  • Excellent written documentation skills and the ability to convey complex detection concepts to both technical and non-technical stakeholders.

Experience: Minimum 3 years overall experience in cybersecurity operations or engineering.

At least 1–2 years hands-on experience building detections in one of the following SIEMs: Microsoft Sentinel (KQL) or Google SecOps (YARA-L).

Nice-to-Have

  • Experience integrating SOAR playbooks with SIEM alerts.

  • Prior involvement in purple-team exercises or red-team simulations.

  • Knowledge of additional query or signature languages (e.g., Sigma, Elastic Query DSL).

  • Scripting Knowledge (Python, Powershell)

  • Data Analytics & Reporting Expertise in Microsoft PowerBI, Tableau or equivalents.


  • SIEM Engineer

    2 days ago


    Pune, Maharashtra, India APN Consulting, Inc. Full time

    Role: SIEM EngineerLocation: India Pune Remote (future hybrid)Work hours: 2-11 pm India hoursJob Overview: The SIEM Engineer is a critical member of the Security Operations Center (SOC) team, responsible for designing, implementing, and managing Security Information and Event Management (SIEM) systems to protect organizational assets from cyber threats. This...


  • Pune, Maharashtra, India beBeeSecurity Full time

    As a seasoned Security Engineer-AVP, you will play a key technical role in our SIEM Operations team within the Global Cyber Security Engineering & Architecture organization.We are seeking a highly skilled and experienced professional to design, build & support of multi SIEM platforms Microsoft Sentinel, Chronicle, Splunk.Your key responsibilitiesConfigure,...

  • SIEM Engineer II

    4 weeks ago


    Pune, Maharashtra, India Securonix Full time

    At Securonix, we're on a mission to secure the world by staying ahead of cyber threats, reinforcing all layers of our platform with AI capabilities. Our Securonix Unified Defense SIEM provides organizations with the first and only AI-Reinforced solution built with a cybersecurity mesh architecture on a highly scalable data cloud. Enhanced by Securonix EON's...


  • Pune, Maharashtra, India beBeeCyber Full time ₹ 15,00,000 - ₹ 21,00,000

    Unlock Threat Detection ExpertiseSafeguard organisations against cyber threats with SIEM Integration specialisation.Key ResponsibilitiesImplement SIEM platform management, including data ingestion, normalisation and correlation rules.Conduct security log analysis from various sources, servers, networks, applications, etc. to identify potential security...


  • Pune, Maharashtra, India Talentmatics Full time

    We are looking for a SIEM SOAR Security Specialist with hands-on experience in security automation, playbook development, and incident detection and response. You will play a vital role in maintaining and enhancing our security operations across large-scale enterprise environments.Qualifications:-Bachelor's or Master's degree in Computer Science, Information...


  • Pune, Maharashtra, India beBeeCybersecurity Full time ₹ 1,50,00,000 - ₹ 2,00,00,000

    Job Summary:We are seeking a forward-thinking Cyber Security Analyst with expertise in security operations and a passion for applying large language models (LLMs) to real-world threat detection. This role blends traditional SOC responsibilities with research and development in AI-driven cybersecurity workflows.Key Responsibilities:Monitor, triage, and...


  • Pune, Maharashtra, India Persistent Systems Full time

    About Position:As a SOC L3 Analyst, you will be responsible for leading the investigation and response to complex security incidents, engineering advanced detection content, and optimizing security tools and processes. With a strong focus on Splunk, content engineering, Endpoint Detection and Response (EDR), and Security Orchestration, Automation, and...


  • Pune, Maharashtra, India Persistent Systems Full time

    About Position: As a SOC L3 Analyst, you will be responsible for leading the investigation and response to complex security incidents, engineering advanced detection content, and optimizing security tools and processes. With a strong focus on Splunk, content engineering, Endpoint Detection and Response (EDR), and Security Orchestration, Automation, and...


  • Pune, Maharashtra, India beBeeSecurity Full time US$ 90,000 - US$ 1,20,000

    Job OverviewThe Security Information and Event Management (SIEM) Engineer plays a pivotal role in the organization's Security Operations Center (SOC) team.Key responsibilities include designing, implementing, and managing SIEM systems to protect organizational assets from cyber threats.This role involves monitoring, analyzing, and responding to security...


  • Pune, Maharashtra, India beBeeCybersecurity Full time ₹ 8,00,000 - ₹ 15,00,000

    Job DescriptionThe SIEM Engineer plays a pivotal role in our organization's cybersecurity strategy, overseeing the design, implementation, and management of Security Information and Event Management (SIEM) systems to safeguard against cyber threats.This critical position necessitates a deep understanding of SIEM architecture, data collection, and event...