05 Aug
|
HCL Technologies
|
Noida
05 Aug
HCL Technologies
Noida
SME - Security Information And Event Management (SIEM)
Experience: 10 to Not Available years
Location: Noida, India
Skills: Cortex XSOAR, Splunk SOAR, Swimlane, Sentinel SOAR, Python, REST APIs, JSON, SIEM, EDR, XDR, IAM, firewalls, email gateways, cloud platforms, MITRE ATT&CK;, AWS, Azure, GCP, GCED, GCIH, GCIA, CISSP
Job Summary
Job Title - Senior Engineer – SOAR Location - India
Key Responsibilities
SOAR Platform Engineering
• Configure and enhance SOAR platforms (e.g., Cortex XSOAR, Splunk SOAR, Swimlane, Sentinel SOAR)
• Develop reusable automation frameworks and response components
Automation & Integration
• Build and maintain API based integrations with security tools (SIEM, EDR/XDR, IAM, firewalls, email gateways, cloud platforms)
• Develop custom scripts and connectors using Python, REST APIs, and vendor SDKs
SOC & Incident Response Support
• Partner with SOC analysts to convert manual workflows into automated playbooks
• Support major security incidents by rapidly creating or modifying response automations
• Align SOAR workflows with MITRE ATT&CK; based detections and threat response strategies
• Integrate threat intelligence feeds and enrichment services into playbooks
• Ensure SOAR implementations follow security, risk,
and compliance requirements
• Identify opportunities to increase automation coverage and reduce MTTR
Required Skills & Experience
• Minimum 10 Years of experience
• Strong hands on experience with SOAR platforms (Cortex XSOAR, Splunk SOAR, Swimlane, etc.)
• Solid understanding of REST APIs, JSON, authentication mechanisms
• Experience integrating SIEM, EDR/XDR, IAM, email, network, and cloud security tools
• Robust understanding of SOC operations and incident response processes
• Familiarity with MITRE ATT&CK;, detection to response workflows
• Experience working with threat intelligence, indicators, and enrichment services
• Exposure to cloud environments (AWS, Azure, GCP) and SaaS security tooling
• Excellent troubleshooting and problem solving skills
• Ability to translate SOC requirements into scalable automation
• Strong communication skills and ability to work under incident pressure
Preferred Qualifications
• Experience in financial services or regulated environments
• Prior exposure to large scale SOC transformation or automation programs
• Certifications such as:
• GCED, GCIH, GCIA, CISSP
📌 SME Security Information And Event Management (SIEM) (Noida)
🏢 HCL Technologies
📍 Noida