SIEM Threat Detection & Response Engineer- Senior Associate
On-siteBengaluru, Karnataka, India
Job Summary
Identify and analyze potential threats to organizational security using advanced cybersecurity technologies, specifically implementing use cases with SPL/KQL to enhance detection across multiple data sources. Develop secure systems and proactive solutions by building dashboards, alerts, and SOAR workflows with Logic Apps, Phantom, and Demisto to automate incident response. Integrate log sources with Azure Sentinel via REST API and conduct vulnerability assessments to safeguard sensitive data and enable digital infrastructure resilience. Collaborate with diverse clients and teams to adapt to varying challenges in a fast-paced environment while applying cloud and hybrid environment knowledge to optimize security measures.
Required Qualifications
- At least a Bachelor's degree
- At least 4-8 years of experience
- Oral and written proficiency in English
- At least one of the following: One or more certifications aligned to threat intelligence and vulnerability management, including GCTI, CISSP, or equivalent threat and risk management credentials
- Demonstrating proficiency in scripting languages like Python
- Utilizing SIEM solutions such as Splunk, ArcSight, and Azure Sentinel
- Implementing SOAR workflows using Logic Apps, Phantom, or Demisto
- Integrating log sources with Sentinel using REST API
- Applying knowledge of cloud and hybrid environments
- Engaging in threat intelligence and threat hunting activities
Hiring someone like this?
Get your role in front of qualified candidates on Sorce.