Group SIEM Engineer
23 hours ago
KEY ACCOUNTABILITIES
- Administer and maintain SIEM and SOAR platforms, including configuration, tuning, and updates.
- Onboarding of Log sources into SIEM platform, enhancing our security monitoring capabilities.
- Develop and implement correlation rules to detect potential security threats as per threat landscape.
- Design, implement, and maintain SOAR solutions to automate incident response workflows.
- Collaborate with cross-functional teams to integrate SOAR with existing security tools and processes.
- Develop playbooks for incident response and ensure regular testing and updates.
- Provide recommendation for Security Use-cases and SOAR Playbooks creation and optimization for any new/existing systems.
- Analyse and integrate threat intelligence data in SIEM and SOAR to enhance detection capabilities and incident response.
- Stay current with emerging threats and vulnerabilities, integrating relevant intelligence into security practices.
- Create and maintain documentation for SIEM and SOAR configurations, procedures, and playbooks.
- Generate regular reports on security incidents, trends, and metrics for management review.
- Provide training and guidance to team members on SIEM and SOAR best practices.
- Document all incidents, investigations, and analysis activities accurately and thoroughly.
OTHER
- Act as an ambassador for DP World at all times when working; promoting and demonstrating positive behaviours in harmony with DP World's Principles, values and culture; ensuring the highest level of safety is applied in all activities; understanding and following DP World's Code of Conduct and Ethics policies.
- Perform other related duties as assigned.
QUALIFICATIONS, EXPERIENCE AND SKILLS
Knowledge and Experience
- Bachelor's Degree in Computer Science or equivalent.
- Should have 8 -10 years of experience in IT Security with at least 6 years' experience in managing SIEM and SOAR solutions including logs onboarding and creation of automated playbooks.
- Technical and hands-on experience across Cyber Security and technology domains.
- Strong hands-On Experience on SIEM and SOAR Solutions.
- Understanding of security frameworks and compliance regulations.
- Proficiency in scripting languages (e.g., Python, PowerShell) for automation purposes.
- Excellent analytical and problem-solving skills, with the ability to communicate technical concepts to non-technical stakeholders.
- Strong understanding of the Cyber Kill Chain, pervasive threats attack methods and remediation.
- Industry recognized professional certifications CISSP, GIAC, NSE or Microsoft Azure.
- Good understanding in E-commerce, logistics, supply chain & port operations applications will be added advantage.
Soft Skills
- Sound analytical and intellectual capabilities.
- Excellent time management and organizational skills.
- Decision-making abilities.
- Team player and conflict management skills.
- Ability to multi-task, prioritize, coordinate, and work well under pressure to meet deadlines.
- Strong interpersonal and communication skills ability to work in a team environment.
- Cultural awareness.
- Must possess Excellent Reporting Skills.
Technical Skills
- Knowledge of Security information and event management (SIEM) and Security Orchestration and Automation (SOAR) solutions.
- Hands-on experience with Azure Sentinel SIEM Solution and FortiSOAR platform is desired.
- Experience with log onboarding on SIEM solution.
- Experience with automated playbook creation on SOAR Platform.
#LI-MP1
-
SIEM & Data Engineer T500-21279
6 days ago
Bengaluru, Karnataka, India MUFG Full time ₹ 12,00,000 - ₹ 36,00,000 per yearAbout Us:MUFG Bank, Ltd. is Japan's premier bank, with a global network spanning in more than 40 markets. Outside of Japan, the bank offers an extensive scope of commercial and investment banking products and services to businesses, governments, and individuals worldwide. MUFG Bank's parent, Mitsubishi UFJ Financial Group, Inc. (MUFG) is one of the world's...
-
SIEM Engineer
3 days ago
Bengaluru, Karnataka, India Autodesk Full time ₹ 12,00,000 - ₹ 36,00,000 per yearJob Requisition ID # 25WD92686Position OverviewAutodesk is seeking a highly skilled SIEM Engineer to manage and enhance our SIEM platform. This role involves working closely with the SOC, Detection Engineers, Threat Hunters, Security Logging, and SOAR teams to develop, evolve, and fine-tune detections, alerts, and other SIEM configurations to protect...
-
SIEM Admin
3 days ago
Bengaluru, Karnataka, India Tata Consultancy Services (TCS) Full time ₹ 12,00,000 - ₹ 36,00,000 per yearSr. SIEM admin with minimum 5+ yrs of exp,strong knowledge in Custom parser developmentThreat detection use-case designing, implementation and fine-tuning,create rules/dashboards for compliance and audit requirements.Strong understanding of security incident management, malware management and vulnerability management processesWorking knowledge of the...
-
Engineer - SIEM | On Site, Bangalore
2 weeks ago
Bengaluru, Karnataka, India Optiv Full timeAt Optiv, we're on a mission to help our clients make their businesses more secure. We're one of the fastest-growing companies in a truly essential industry. In your role at Optiv, you'll be inspired by a team of the brightest business and technical minds in cybersecurity. We are passionate champions for our clients and know from experience that the best...
-
Job Title: Azure SIEM Engineer
3 days ago
Bengaluru, Karnataka, India Akshya Patra Services Full time ₹ 12,00,000 - ₹ 24,00,000 per yearAzure SIEM Engineer - Cybersecurity As an Azure SIEM Engineer in the Cybersecurity domain, you will play a pivotal role in safeguarding the organization's digital assets. Your primary responsibility will be to implement and manage Security Information and Event Management (SIEM) solutions within Microsoft Azure. This position is critical in identifying,...
-
Principal Engineer- SIEM
3 days ago
Bengaluru, Karnataka, India Optiv Full time ₹ 12,00,000 - ₹ 36,00,000 per yearThe Principal Engineer will be responsible for creation of procedures, implementation of processes and development of staff for managing and maintaining security systems across internal and client environments. The Principal Engineer will work closely with Management, Senior Engineers, Solution Architects, Senior Security Engineers, other Principal...
-
SIEM Administrator
2 weeks ago
Bengaluru, Karnataka, India Atos Full time ₹ 5,00,000 - ₹ 15,00,000 per yearAbout AtosAtos is a global leader in digital transformation with c. 78,000 employees and annual revenue of c. € 10 billion. European number one in cybersecurity, cloud and high-performance computing, the Group provides tailored end-to-end solutions for all industries in 68 countries. A pioneer in decarbonization services and products, Atos is committed to...
-
Bengaluru, Karnataka, India Deloitte Full time ₹ 12,00,000 - ₹ 36,00,000 per yearCyberDeloitte Cyber understands the unique challenges and opportunities businesses face in cybersecurity. Join our team to deliver powerful insights to help our clients navigate the ever-changing threat landscape. Through powerful insights and managed services that simplify complexity, we enable businesses to operate with resilience, grow with confidence,...
-
Manager – Threat ation Security Group-ISG
2 weeks ago
Bengaluru, Karnataka, India Mashreq Bank Full time ₹ 12,00,000 - ₹ 36,00,000 per yearDescriptionManage security event monitoring and incident response using SIEM platforms, with preference for Azure Sentinel and ArcSight.Analyze and respond to security events from diverse sources such as firewalls, IDS/IPS, antivirus solutions, DAM systems, web servers, proxies, and banking applications.Develop and maintain alert rules and logic within SIEM...
-
Presales SOC SIEM
3 days ago
Bengaluru, Karnataka, India Clarity Consulting Full time ₹ 12,00,000 - ₹ 36,00,000 per yearYour work profile.As Manager in our Cyber Team, youll build and nurture positive working relationships with teams andclients with the intention to exceed client expectations: -Key Responsibilities:• Client Engagement & Solutioning:Engage with clients to understand their cybersecurity requirements, challenges,especially around SOC operations.Design and...