15 Aug
|
Tata Consultancy Services
|
Indore
15 Aug
Tata Consultancy Services
Indore
Role : SIEM Consultant
Exp Range: 5 to 8 Years
Location: Indore
Must Hav
eexperience in SOC, Threat Detection, Incident Response, or SIEM Engineering roles
.Robust hands-on expertise with Microsoft Sentinel, including KQL, analytics rules, threat hunting, and playbooks
.Experience working with at least one additional SIEM platform, such as Splunk, QRadar, or Elastic
.Solid understanding of MITRE ATT&CK;, detection engineering, and log analysis
.Proficiency in PowerShell and/or Python scripting for automation
.Familiarity with EDR, IAM, firewall, and cloud security logs
.Must have experience implementing and deploying SIEM solutions
.
Responsibiliti
esOnboard and normalize log sources across cloud, endpoint, network, and SaaS environment
s.Develop, optimize, and tune detection rules using KQL, aligned with the MITRE ATT&CK; framewor
k.Create dashboards, health checks, reports, and key performance indicators (KPIs
).Implement and maintain SOAR automation using Microsoft Sentinel Playbooks and Logic App
s.Support threat hunting activities and assist with incident investigation and respons
e.Ensure SIEM platform performance, cost optimization, and compliance requirements are me
t.
📌 Security Operations Center Analyst (Indore)
🏢 Tata Consultancy Services
📍 Indore