25 Sep
|
Capgemini
|
Pune
Experience: 4-6 Years
Location: Pan India
We are hiring a SIEM Engineer with hands-on experience in Splunk, Microsoft Sentinel, and IBM QRadar. The candidate will be responsible for SIEM administration, log onboarding, use-case development, security monitoring, threat detection, and incident investigation.
Key Skills
- Splunk Enterprise / Splunk ES
- Microsoft Sentinel
- IBM QRadar
- SIEM Administration & Engineering
- Log Analysis & Event Correlation
- Threat Detection & Incident Response
- Dashboard & Report Creation
- Security Monitoring
Responsibilities
- Manage and maintain SIEM platforms (Splunk, Sentinel, QRadar).
- Configure log collection, parsing, and onboarding from multiple sources.
- Develop correlation rules, alerts, dashboards, and reports.
- Monitor security events and support incident investigations.
- Perform alert tuning, troubleshooting, and performance optimization.
- Collaborate with SOC and Security teams to improve detection capabilities.
Valuable to Have
- KQL, SPL, AQL
- Python, PowerShell, Bash
- Azure, AWS, GCP Security
- SOAR tools and Threat Intelligence integrations
Preferred Certifications
- Splunk Certified Admin/Architect
- Microsoft SC-200
- IBM QRadar Certification
- CEH, CISSP, CISM
📌 Siem Engineer (Pune)
🏢 Capgemini
📍 Pune