Job Description
Please share CV to
[email protected] with the below details: Total Experience- Current ctc- expected ctc- Notice Period- SOC Detection and Automation Engineer Experience required- 6 to 10 years Overview Responsible for enhancing our security posture by developing, implementing, and maintaining detection content within the SIEM. A key focus of this position will be leveraging our SIEMs automation and AI capabilities to streamline level 1 security incident triage and response, thereby increasing the efficiency and effectiveness of our Security Operations Center (SOC). Mandatory Skills- Detection Engineering, Detection Rule/Use Case Development, SIEM/SOAR, MITRE ATTACK, Threat Hunting, Python/PowerShell, SOAR Playbooks, Automation, API Integrations, Rule Tuning & False Positive Reduction, EDR/XDR, Forensic Investigation, SIEM Data Ingestion/Parsing, Cloud Security Monitoring, Threat Intelligence etc Responsibilities--We are seeking a highly skilled and motivated SOC Engineer to join our security operations team. This critical role will be responsible for:
Detection Engineering and Content Development - Design, develop, test, and deploy high-fidelity detection rules, correlational logic, and behavioral models within SIEM. - Translate threat intelligence, known vulnerabilities, and observed attack techniques (e.g., MITRE ATT&CK; framework) into actionable detection content. - Continuously review and tune existing detection content to minimize false positives while maximizing coverage of emerging threats. - Ensure all detection content is mapped to relevant security controls and incident response playbooks. Automation and Efficiency - Develop, implement, and maintain automation playbooks (using our SIEMs automation engine) to automate repetitive Level 1 incident triage tasks, data enrichment, and initial response actions. - Integrate SIEM with other security tools and enterprise platforms via APIs and connectors to facilitate seamless data flow
📌 DART Engineer (Bengaluru)
🏢 HCLSoftware
📍 Bengaluru