SIEM Detection Engineer

2 days ago


Pune, Maharashtra, India Hitachi Cyber Full time ₹ 15,00,000 - ₹ 25,00,000 per year

Job Description

Job Title: SIEM Detection Engineer

Designation: Engineer

Company: Cumulus Systems Pvt. Ltd.

Location: Pune, India

Experience: 3-6 years as Detection Engineer

Company Overview:

Cumulus Systems engages in providing End-to-End Software Development Lifecycle involving Business & Requirements Analysis, Solution Architecture & Design, Development, Testing, Deployment and Postproduction Support. Its cross-domain storage performance management platform called MARS (Measure Analyze Recommend Solve) monitors and helps manage large-scale, heterogeneous IT infrastructure across the entire enterprise.

Position Overview:

As an L2 Detection Specialist, you will design, test, and maintain high-fidelity detection content in one of the following SIEM platforms—Microsoft Sentinel (KQL) or Google Security Operations (YARA-L). Partnering closely with SOAR engineers, SOC analysts, and solutions engineers, you will perform proactive threat hunting, fine-tune alert logic, and ensure our global SOC can rapidly identify and respond to emerging threats.

Job Roles & Responsibilities:

Design, build, and maintain detection rules, correlation searches, dashboards, and reports in one or more of the specialized SIEM platform.

Continuously validate and tune detection logic through simulations, red-team findings, SOC false positives and live incident feedback.

Analyze log and telemetry data to uncover suspicious behaviors, patterns, and indicators of compromise; develop new signatures accordingly.

Integrate external threat-intelligence feeds (IoCs and TTPs) to enrich alerts and broaden detection coverage.

Leverage MITRE ATT&CK and other frameworks to guide prioritization and detection development methodology.

Perform periodic rule health checks, adjusting thresholds to maximize fidelity and minimize false positives.

Collaborate with SOAR engineers to automate enrichment, triage, and response actions that stem from SIEM alerts.

Conduct hypothesis & threat intelligence driven threat hunts to identify advanced attacker techniques not yet covered by automated detections.

Generate clear, actionable metrics and trend reports for SOC leadership, highlighting alert volumes, rule efficacy, and tuning outcomes. Maintain detection KPIs to measure alert accuracy.

Document all detection logic, tuning rationales, and operational procedures to support audit, compliance, and knowledge transfer.

Provide technical consultation during incident investigations and post-incident retrospectives, identifying detection gaps and recommending improvements.

Skills:

Strong understanding of MITRE ATT&CK and its practical application to detection engineering.

Familiarity with cloud infrastructures (Azure, GCP, AWS) and the security logs they generate.

Proficiency in scripting for automation (Python or PowerShell preferred).

Working knowledge of common security controls and telemetry sources—firewalls, IDS/IPS, EDR, endpoint protection, cloud logs, etc.

Relevant certifications (any of): Admin · SC-200 (Microsoft Sentinel) · Google SecOps Certified · CompTIA Security+ · GCP / Azure / AWS Foundational.

Excellent written documentation skills and the ability to convey complex detection concepts to both technical and non-technical stakeholders.

Experience: Minimum 3 years overall experience in cybersecurity operations or engineering.

At least 1–2 years hands-on experience building detections in one of the following SIEMs: Microsoft Sentinel (KQL) or Google SecOps (YARA-L).

Nice-to-Have

Experience integrating SOAR playbooks with SIEM alerts.

Prior involvement in purple-team exercises or red-team simulations.

Knowledge of additional query or signature languages (e.g., Sigma, Elastic Query DSL).

Scripting Knowledge (Python, Powershell)

Data Analytics & Reporting Expertise in Microsoft PowerBI, Tableau or equivalents.



  • Pune, Maharashtra, India Hitachi Cyber Full time ₹ 8,00,000 - ₹ 12,00,000 per year

    Job Description:Job Title: SIEM Detection EngineerDesignation: SIEM Detection EngineerCompany: Cumulus Systems Pvt. Ltd.Location: Pune, IndiaCompany Overview:Cumulus Systems engages in providing End-to-End Software Development Lifecycle involving Business & Requirements Analysis, Solution Architecture & Design, Development, Testing, Deployment and...


  • Pune, Maharashtra, India Hitachi Cyber Full time ₹ 8,00,000 - ₹ 12,00,000 per year

    Job Description:Job Title: SIEM Detection EngineerDesignation: EngineerCompany: Cumulus Systems Pvt. Ltd.Location: Pune, IndiaCompany Overview:Cumulus Systems engages in providing End-to-End Software Development Lifecycle involving Business & Requirements Analysis, Solution Architecture & Design, Development, Testing, Deployment and Postproduction...


  • Pune, Maharashtra, India Hitachi Cyber Full time ₹ 7,00,000 - ₹ 12,00,000 per year

    Job Description:Job Title: SIEM Detection Engineer - Azure SentinelDesignation: SIEM Detection EngineerCompany: Cumulus Systems Pvt. Ltd.Location: Pune, IndiaCompany Overview:Cumulus Systems engages in providing End-to-End Software Development Lifecycle involving Business & Requirements Analysis, Solution Architecture & Design, Development, Testing,...

  • SIEM Engineer

    2 weeks ago


    Pune, Maharashtra, India APN Consulting, Inc. Full time

    Role: SIEM EngineerLocation: India Pune Remote (future hybrid)Work hours: 2-11 pm India hoursJob Overview: The SIEM Engineer is a critical member of the Security Operations Center (SOC) team, responsible for designing, implementing, and managing Security Information and Event Management (SIEM) systems to protect organizational assets from cyber threats. This...

  • SIEM Engineer

    2 weeks ago


    Pune, Maharashtra, India APN Consulting, Inc. Full time

    Role: SIEM Engineer Location: India Pune Remote (future hybrid) Work hours: 2-11 pm India hours Job Overview: The SIEM Engineer is a critical member of the Security Operations Center (SOC) team, responsible for designing, implementing, and managing Security Information and Event Management (SIEM) systems to protect organizational assets from cyber threats....

  • Soc Siem

    2 weeks ago


    Pune, Maharashtra, India Syngenta Full time

    Company DescriptionSyngenta Group is one of the world s leading sustainable agriculture innovation companies with roots going back more than 250 years Our 53 000 people across more than 100 countries strive every day to transform agriculture through tailor-made solutions for the benefit of farmers society and our planet - making us the world s most local...


  • Pune, Maharashtra, India beBeeSecurity Full time ₹ 12,00,000 - ₹ 36,00,000

    Information Security EngineerAs an Information Security Engineer, you will play a key role in our organization's SIEM Operations team. The COO Chief Information Security Office (CISO) is responsible for addressing information security risks to our global IT.Your key responsibilities:Configure and manage Microsoft Sentinel for efficient threat detection and...


  • Pune, Maharashtra, India beBeeSiem Full time ₹ 5,00,000 - ₹ 8,00,000

    Ensure robust log collection, system health, and optimize security use cases to enhance threat detection and incident response capabilities.Job DescriptionA key role in our cybersecurity team is available for a highly skilled SIEM Security Specialist. This individual will be responsible for the deployment, configuration, and administration of IBM QRadar SIEM...


  • Pune, Maharashtra, India beBeeSecurity Full time ₹ 1,20,00,000 - ₹ 2,00,00,000

    Cybersecurity Threat Detection SpecialistAs a Cybersecurity Threat Detection Specialist, you will play a crucial role in shaping the future of cybersecurity. You will be part of an agile, collaborative environment that fosters creativity and action.You will thrive in a culture that prioritizes innovation, learning, and inclusivity. Every idea matters, and...


  • Pune, Maharashtra, India beBeeCybersecurity Full time ₹ 9,00,000 - ₹ 12,00,000

    Job OpportunityCybersecurity Professional Needed for Threat Detection and Response Role.This position requires an individual with strong knowledge of cybersecurity fundamentals, including firewalls, proxies, IDS/IPS, endpoint security. The successful candidate will implement, monitor, and manage SIEM and SOAR solutions to detect and respond to threats. They...