SIEM Integration Architect

2 days ago


Bangalore RGA Tech Park, India Unisys Full time ₹ 12,00,000 - ₹ 24,00,000 per year

What success looks like in this role:

  • Lead the integration of alarm/data feeds from multiple SIEM platforms (e.g., Splunk, LogRhythm, Securonix) into Microsoft Sentinel.
  • Configure and manage Cribl pipelines to collect, filter, transform, and enrich raw data before forwarding to Sentinel.
  • Design and implement data normalization strategies to ensure consistent formatting, tagging, and field mapping.
  • Build and maintain data ingestion workflows, ensuring optimized performance, scalability, and reliability.
  • Develop and maintain custom Sentinel connectors, KQL queries, workbooks, and analytics rules.
  • Implement and tune SOAR automation playbooks using Logic Apps or integrated response tools.
  • Collaborate with resolver teams (Platform, Application, CloudOps) for end-to-end use case implementation.
  • Act as SME for Microsoft Sentinel and Cribl architecture in client-facing and technical forums.
  • Troubleshoot integration and ingestion issues across hybrid and cloud-native infrastructures.
  • Establish alert pipelines to bring security alerts/alarms from legacy SIEM tools into Sentinel for centralized monitoring.
  • Ensure data integrity, compliance, and auditability in accordance with customer and regulatory requirements.
  • Generate technical documentation, integration standards, and data flow diagrams.
  • Provide expert guidance to SOC analysts and security engineers on new use cases and data onboarding.
  • Stay updated on current and emerging threats to enhance detection and response capabilities.

You will be successful in this role if you have:

  • Required Skills & Experience:
  • 10–15 years of experience in cybersecurity, with a strong technical background in SIEM tools and security data architecture.
  • Proven experience with Microsoft Sentinel, including data connectors, KQL, and automation via Logic Apps.
  • Hands-on expertise in Cribl: stream design, data parsing, enrichment, routing, and performance tuning.
  • Experience with multiple SIEM platforms (e.g., Splunk, LogRhythm, Securonix) and their alarm/log structures.
  • Deep understanding of SIEM data ingestion models, log collection, and telemetry pipelines.
  • Familiarity with cloud-native services (Azure, AWS, GCP) and their logging/integration mechanisms.
  • Scripting experience with Python and PowerShell for integration and automation tasks.
  • Strong knowledge of security frameworks (MITRE ATT&CK, NIST, OWASP, etc.) and their application in real-world use cases.
  • Ability to troubleshoot complex integration issues involving multiple data sources and tools.

Key Qualifications:

  • Bachelor's degree in Computer Science, Information Security, or related field.
  • Certifications preferred: Microsoft SC-200, Security+, GCIH, CEH, Cribl Certified Admin.
  • Excellent communication and stakeholder management skills.
  • Strong problem-solving mindset and attention to detail.
  • Ability to mentor junior staff and lead technical discussions.

Unisys is proud to be an equal opportunity employer that considers all qualified applicants without regard to age, blood type, caste, citizenship, color, disability, family medical history, family status, ethnicity, gender, gender expression, gender identity, genetic information, marital status, national origin, parental status, pregnancy, race, religion, sex, sexual orientation, transgender status, veteran status or any other category protected by law.

This commitment includes our efforts to provide for all those who seek to express interest in employment the opportunity to participate without barriers. If you are a US job seeker unable to review the job opportunities herein, or cannot otherwise complete your expression of interest, without additional assistance and would like to discuss a request for reasonable accommodation, please contact our Global Recruiting organization at or alternatively Toll Free: Prompt 4).  US job seekers can find more information about Unisys'  EEO commitment here.


  • Java Sr. Architect

    9 minutes ago


    Bangalore - RGA Tech Park, India Unisys Full time ₹ 12,00,000 - ₹ 36,00,000 per year

    What success looks like in this role: Business Development and Client Facing Responsibilities Fills a senior architect functional role with in-depth portfolio related technology specialization to build quality infrastructure solutions that meet the requirements and advises clients on Unisys Solution offerings, strategy, designs, specific technologies,...


  • Bangalore - RGA Tech Park, India Unisys Full time ₹ 12,00,000 - ₹ 36,00,000 per year

    What success looks like in this role: Design, develop, and deliver cutting-edge cloud technology solutions on Microsoft Azure Cloud Leverage automation to produce repeatable patterns and solutions.Understand client business goals and outcomes and align them to compelling solutions.Discover, identify, and articulate unrecognized business value opportunities...


  • bangalore, India MUFG Full time

    About Us:MUFG Bank, Ltd. is Japan’s premier bank, with a global network spanning in more than 40 markets. Outside of Japan, the bank offers an extensive scope of commercial and investment banking products and services to businesses, governments, and individuals worldwide. MUFG Bank’s parent, Mitsubishi UFJ Financial Group, Inc. (MUFG) is one of the...

  • Integration Architect

    2 weeks ago


    bangalore, India Best Infosystems Ltd. Full time

    Integration Architect_Full-Time_Bangalore/Pune/Navi Mumbai/Noida/Hyderabad/ChennaiJob Title: Integration ArchitectJob Type: Full-TimeExperience: 15+ yearsLocation: Bangalore/Pune/Navi Mumbai/Noida/Hyderabad/ChennaiJob Description:We need Integration Architect who should have strong experience in Application and whole platform related to integration such as...

  • CSA SIEM Admin

    2 days ago


    Bangalore, Raheja Towers, - M. G. Road, India Deutsche Bank Full time ₹ 13,00,000 - ₹ 32,00,000 per year

    Job Description:Job Title: CSA SIEM Admin (Splunk, Sentinel)Corporate Title: Assistant Vice PresidentLocation: Bangalore, IndiaRole DescriptionThe COO Chief Security Office (CSO) is responsible for addressing information security risks to the Deutsche Bank global IT, as a Security Engineer-AVP, you will play a key technical role in our SIEM Operations team...

  • DevOps Architect

    2 weeks ago


    Bangalore, India Maveric Systems Limited Full time

    DevSecOps Architect Job Summary: We are looking for a seasoned DevSecOps Architect with over 10+ years of experience to lead the design and implementation of secure, scalable, and automated DevSecOps solutions. The ideal candidate will have deep expertise in CI/CD automation, cloud platforms (AWS, Azure, GCP), containerization, infrastructure as code (IaC),...


  • Bangalore - RGA Tech Park, India Unisys Full time ₹ 12,00,000 - ₹ 36,00,000 per year

    What success looks like in this role: Collaborate with business stakeholders, product managers, development and testing teams to identify business needs and requirementsConduct research and analysis to develop a deep understanding of the business and industry trends, specifically related to Airline passenger service systems, ticketing and offer management...


  • bangalore, India Best Infosystems Ltd. Full time

    Apigee Integration Architect_Pan India_Full-Time Job Title: Apigee Integration Architect Location: Pan India Job Type: Full-Time Experience: 15+ Years Job Description: We need Integration Architect who should have strong experience in Application and whole platform related to integration such as API Management, ESB, ETL, Event based integration . Also,...


  • bangalore, India Best Infosystems Ltd. Full time

    Apigee Integration Architect_Pan India_Full-Time Job Title: Apigee Integration Architect Location: Pan India Job Type: Full-Time Experience: 15+ Years Job Description: We need Integration Architect who should have strong experience in Application and whole platform related to integration such as API Management, ESB, ETL, Event based integration . Also,...


  • Bangalore, Karnataka, India Unisys Full time

    What success looks like in this role SIEM SOAR Support Assist in configuring and maintaining SIEM SOAR platforms to support log collection threat detection and automated response workflows Monitor and troubleshoot SIEM SOAR systems to ensure reliable operation and data integrity Support the creation of detection rules dashboards and alerts under senior...