Senior SIEM Engineer - "SIEM", "Security Information, Event Management" - Mumbai, 5.00 - 8.00 yrs | Sampoorna (J50694)

job opening

Job Summary


Experience:

5.00 - 8.00  Years 

Industrial Type:

IT-Hardware & Networking

Location:

Mumbai

Functional Area:

IT Software - Client Server

Designation:

Senior SIEM Engineer

Key Skills:

"SIEM" OR "Security Information and Event Management"

Educational Level:

Graduate/Bachelors

Job Post Date:

Stream of Study:

Degree:

BCA, BE-Comp/IT, BE-Other, BSc-Comp/IT, BSc-Other, BTech-Comp/IT, BTech-Other, MCA, ME-Comp/IT, ME-Other, MSc-Comp/IT, MSc-Other, MTech-Comp/IT, MTech-Other

Company Description


Our Client is built on an AI-first, technology-agnostic approach to cybersecurity - engineered to outpace evolving threats, maximize ROI from existing investments, and strengthen enterprise-wide secu rity posture. Our Client help organizations tackle complex cybersecurity challenges with intelligence-led, outcome-focused services - delivered by experts with deep real-world experience to drive tangible business outcomes.

Job Description


Job Location: Airoli, Navi Mumbai (Client Location)
5 days Work from Office - General Shift

About the Role
We are looking for an experienced and driven SIEM Engineer to join our growing SOC Services team. The candidate will be responsible for onboarding new log sources, ensuring data normalization, maintaining log quality, and supporting detection engineering initiatives. The candidate should have strong hands-on experience in SIEM platform configuration, log parsing, data validation, and security use-case enablement (preferably on the Securonix platform).

Key Responsibilities
1. Onboard and integrate multiple security and IT data sources into the SIEM platform.
2. Support onboarding of Network security devices (Firewalls, IDS/IPS, WAF, Proxies), EDR/XDR, IAM, Cloud platforms (AWS, Azure, GCP), Database, and Infrastructure logs.
3. Configure log collection using agents, APIs, syslog, connectors, and cloud-native integrations.
4. Validate log ingestion, field extraction, parsing, and normalization.
5. Ensure logs align with the SIEM data model and taxonomy standards.
6. Perform data quality checks, including completeness, timeliness, and accuracy.
7. Design and implement log parsing rules, regex extraction, and field mappings.
8. Ability to develop custom parsers and connectors.
9. Troubleshoot ingestion and parsing issues across diverse data formats.
10. Work closely with SOC analysts, detection engineers, platform administrators, and customers.
11. Provide onboarding guidance and log requirement recommendations.
12. Support audit and compliance log validation activities.

Required technical skills sets
13. Hands-on experience with at least one SIEM platform.
14. Experience onboarding logs from AWS CloudTrail, GuardDuty, VPC Flow Logs, Azure Monitor, Entra ID logs, SaaS applications via APIs.
15. Strong understanding of: Syslog protocols REST APIs, JSON, XML, CSV log formats, Regex and log parsing techniques, Event normalization and enrichment.
16. Working knowledge of Python / Shell scripting.
17. Experience with Linux/Unix and Windows logging mechanisms.
18. Knowledge of network protocols and security telemetry.
19. Understanding of SOC operations and incident detection lifecycle and MITRE framework.

Required Experience
20. 5-6 years of hands-on experience in managing an enterprise SIEM platform.
21. Strong architectural knowledge of SIEM
22. Proven track record in SIEM platform management and onboarding new data sources and integration

announce
Did not find a matching job? You can still send your CV to jobs@sampoorna.com or Register Here