SIEM Detection Engineer

1 week ago


Pune, Maharashtra, India Hitachi Cyber Full time ₹ 6,00,000 - ₹ 18,00,000 per year

Job Description

Job Title: SIEM Detection Engineer

Designation: Engineer

Company: Cumulus Systems Pvt. Ltd.

Location: Pune, India

Experience: 3-6 years as Detection Engineer

Company Overview:

Cumulus Systems engages in providing End-to-End Software Development Lifecycle involving Business & Requirements Analysis, Solution Architecture & Design, Development, Testing, Deployment and Postproduction Support. Its cross-domain storage performance management platform called MARS (Measure Analyze Recommend Solve) monitors and helps manage large-scale, heterogeneous IT infrastructure across the entire enterprise.

Position Overview:

As an L2 Detection Specialist, you will design, test, and maintain high-fidelity detection content in one of the following SIEM platforms—Microsoft Sentinel (KQL) or Google Security Operations (YARA-L). Partnering closely with SOAR engineers, SOC analysts, and solutions engineers, you will perform proactive threat hunting, fine-tune alert logic, and ensure our global SOC can rapidly identify and respond to emerging threats.

Job Roles & Responsibilities:

Design, build, and maintain detection rules, correlation searches, dashboards, and reports in one or more of the specialized SIEM platform.

Continuously validate and tune detection logic through simulations, red-team findings, SOC false positives and live incident feedback.

Analyze log and telemetry data to uncover suspicious behaviors, patterns, and indicators of compromise; develop new signatures accordingly.

Integrate external threat-intelligence feeds (IoCs and TTPs) to enrich alerts and broaden detection coverage.

Leverage MITRE ATT&CK and other frameworks to guide prioritization and detection development methodology.

Perform periodic rule health checks, adjusting thresholds to maximize fidelity and minimize false positives.

Collaborate with SOAR engineers to automate enrichment, triage, and response actions that stem from SIEM alerts.

Conduct hypothesis & threat intelligence driven threat hunts to identify advanced attacker techniques not yet covered by automated detections.

Generate clear, actionable metrics and trend reports for SOC leadership, highlighting alert volumes, rule efficacy, and tuning outcomes. Maintain detection KPIs to measure alert accuracy.

Document all detection logic, tuning rationales, and operational procedures to support audit, compliance, and knowledge transfer.

Provide technical consultation during incident investigations and post-incident retrospectives, identifying detection gaps and recommending improvements.

Skills:

Strong understanding of MITRE ATT&CK and its practical application to detection engineering.

Familiarity with cloud infrastructures (Azure, GCP, AWS) and the security logs they generate.

Proficiency in scripting for automation (Python or PowerShell preferred).

Working knowledge of common security controls and telemetry sources—firewalls, IDS/IPS, EDR, endpoint protection, cloud logs, etc.

Relevant certifications (any of): Admin · SC-200 (Microsoft Sentinel) · Google SecOps Certified · CompTIA Security+ · GCP / Azure / AWS Foundational.

Excellent written documentation skills and the ability to convey complex detection concepts to both technical and non-technical stakeholders.

Experience: Minimum 3 years overall experience in cybersecurity operations or engineering.

At least 1–2 years hands-on experience building detections in one of the following SIEMs: Microsoft Sentinel (KQL) or Google SecOps (YARA-L).

Nice-to-Have

Experience integrating SOAR playbooks with SIEM alerts.

Prior involvement in purple-team exercises or red-team simulations.

Knowledge of additional query or signature languages (e.g., Sigma, Elastic Query DSL).

Scripting Knowledge (Python, Powershell)

Data Analytics & Reporting Expertise in Microsoft PowerBI, Tableau or equivalents.



  • Pune, Maharashtra, India Hitachi Cyber Full time ₹ 8,00,000 - ₹ 12,00,000 per year

    Job Description:Job Title: SIEM Detection EngineerDesignation: EngineerCompany: Cumulus Systems Pvt. Ltd.Location: Pune, IndiaCompany Overview:Cumulus Systems engages in providing End-to-End Software Development Lifecycle involving Business & Requirements Analysis, Solution Architecture & Design, Development, Testing, Deployment and Postproduction...


  • Pune, Maharashtra, India Hansen Full time ₹ 5,00,000 - ₹ 12,00,000 per year

    Job Description : Key Responsibilities : - Act as Incident Commander, coordinating security incident response within your time zone. - Monitor security platforms and alerts, triaging and prioritizing investigations. - Collaborate with MDR partners and internal teams for timely detection and alerting. - Develop, maintain, and test incident...


  • Pune, Maharashtra, India Futurism Technologies, INC. Full time ₹ 1,04,000 - ₹ 1,30,878 per year

    Urgent Hiring forCyber security engineerL3share cv on Job DescriptionJob Title:Cyber Security Engineer L3Job Location:Hinjewadi Phase-1, Pune (WFO)Experience: 8+YearsShift:Rotational Shift (5 Days Working)Qualification:BE, BTechJob Description:We are seeking a highly skilled and experienced Azure Sentinel SIEM & XDR Implementation & configuration Engineer to...

  • Security Engineer

    6 days ago


    Pune, Maharashtra, India Sakon Full time ₹ 9,00,000 - ₹ 12,00,000 per year

    Role: The Security Operations (SOC) - Engineer is responsible for monitoring the environment, identifying, reporting, and responding to security threats that put the organization at risk. The primary function of this position is to monitor the security tools and perform alert management and initial incident qualification.Job DescriptionAcknowledge, analyze,...

  • SIME - Architect

    1 week ago


    Pune, Maharashtra, India Neurealm Full time ₹ 12,00,000 - ₹ 36,00,000 per year

    Pune, Maharashtra, IndiaPracticeInformation Systems SecurityJob posted onOct 10, 2025Employee TypeFull Time EmployeeExperience range (Years)9 years - 15 yearsClientProjectsJob Summary:We are seeking an experienced SIEM Architect to design, implement, and manage Security Information and Event Management (SIEM) solutions across the enterprise. The ideal...


  • Pune, Maharashtra, India LRS Technologies Full time ₹ 12,00,000 - ₹ 36,00,000 per year

    Experience: 5- 8 YearsLocation: Sangamwadi, Pune, IndiaPreferred: Immediate Joiners onlySkills:Significant experience in SOC, CERT, or CSIRT environments, with expertise in SIEM administration, threat hunting, detection engineering, and incident response.Strong expertise in configuring, optimizing, and maintaining Microsoft security products,including...


  • Pune, Maharashtra, India, Maharashtra Cohesity Full time

    We are seeking a highly skilled Senior Security Engineer with strong expertise in Endpoint Detection & Response (EDR/XDR) tools (e.g., CrowdStrike Falcon), Security Information and Event Management (SIEM) platforms (e.g., Splunk, Google SecOps/Chronicle), Cloud Security across AWS, Azure, and GCP. The ideal candidate will have Deep investigation skills and...


  • Pune, Maharashtra, India Coditing® Full time ₹ 8,00,000 - ₹ 24,00,000 per year

    Required Skills & QualificationsTechnical ExpertiseProven hands-on experience with Microsoft Sentinel, Microsoft Defender suite (Endpoint, Identity, Office 365, Cloud Apps).Strong knowledge of SIEM, SOAR, threat detection, and incident response.Familiarity with Kusto Query Language (KQL) for log analysis and rule creation.Understanding of Azure Security...


  • Pune, Maharashtra, India Securonix Full time ₹ 10,00,000 - ₹ 25,00,000 per year

    At Securonix, we're on a mission to secure the world by staying ahead of cyber threats, reinforcing all layers of our platform with AI capabilities. Our Securonix Unified Defense SIEM provides organizations with the first and only AI-Reinforced solution built with a cybersecurity mesh architecture on a highly scalable data cloud. Enhanced by Securonix EON's...


  • Pune, Maharashtra, India CLSA Full time ₹ 15,00,000 - ₹ 25,00,000 per year

    Key Areas of ResponsibilitiesIngest logs from all in-scope IT systems to SIEM (MS Sentinel)Configure SIEM test cases / Machine Learning alerts in SIEM systemsFacilitate reviews of SIEM alerts with SOC team to detect security incidents and fine-tune log ingestion as requiredManage Endpoint Security, DLP solutions, Firewall configurations, and Web Proxy...