Posted on: 29/09/2026
Job Description :
- Architect, build, and implement scalable and resilient SIEM and MDR solutions aligned to customer security requirements.
- Leverage technologies such as Splunk, Cribl, Snowflake, Databricks, and AWS native services to develop advanced detection, monitoring, investigation, and response capabilities.
- Analyze, onboard, normalize, and optimize security telemetry from firewalls, endpoints, cloud platforms, identity providers, and applications.
- Develop, fine-tune, and maintain detection logic, correlation rules, use cases, dashboards, and alerting mechanisms to maximize detection effectiveness while minimizing false positives.
- Support MDR operations through threat analysis, threat hunting, incident investigations, and continuous improvement of detection coverage.
- Integrate SIEM platforms with SOAR, EDR/XDR, Threat Intelligence Platforms, IAM solutions, and cloud-native security services.
- Build automation and orchestration workflows to improve security operations efficiency and accelerate detection and response.
- Troubleshoot and resolve complex SIEM, log ingestion, integration, and performance-related issues.
- Collaborate with customers and internal teams to identify monitoring gaps and implement use cases aligned with the MITRE ATT&CK framework.
Must Have & Desired Skills :
- 7+ years of experience in SIEM Engineering, MDR, SOC, Security Operations, or Cybersecurity Operations.
- Hands-on experience with Splunk, Cribl, AWS, Snowflake, Databricks, or equivalent SIEM and security analytics platforms.
- Strong understanding of security telemetry and log sources across network, endpoint, cloud, identity, and application environments.
- Experience in MDR services, threat analysis, threat hunting, incident response, and detection engineering.
- Strong scripting and automation skills using Python, Bash, and Terraform.
- Knowledge of MITRE ATT&CK, security operations workflows, and cloud security best practices.
- Familiarity with DevSecOps principles and security automation.
- Strong analytical, troubleshooting, and stakeholder management skills.
Education & Certifications :
- Bachelors Degree, Good to have InfoSec Certification
Did you find something suspicious?
Posted by
Posted in
CyberSecurity
Functional Area
IT Security
Job Code
1675686