Jobs
Interviews

96 Azure Sentinel Jobs

Setup a job Alert
JobPe aggregates results for easy application access, but you actually apply on the job portal directly.

5.0 - 9.0 years

0 Lacs

karnataka

On-site

Join our team as a Security Analyst in India, where you will play a crucial role in assessing, triaging, and proactively responding to security-related threats, incidents, and events. You will be tasked with defending our assets, information, and systems from unauthorized access, use, disclosure, disruption, modification, perusal, inspection, recording, or destruction. By collaborating with internal and external stakeholders, including third-party suppliers, you will ensure that incident response, user access, alert monitoring, root cause analysis, and scenario planning activities are carried out in accordance with standard operating procedures and to a high standard. This role is available at the associate vice president level. In this role, you will work across various domains, stakeholders, and specialists to anticipate and identify security events, incidents, and trends that could impact the bank, our customers, employees, or assets adversely. Your responsibilities will include contributing to security operations, conducting root cause analysis on security incidents, providing training and scenario planning, preparing reports and briefings, and developing response plans, procedures, and playbooks to enhance response capability. Moreover, you will proactively manage risks to achieve key security-related customer and compliance outcomes, participate in security operations such as production support, incident response, and on-call rotations, maintain security response processes, and ensure the delivery of security-related services align with expectations. Act swiftly in responding to customer queries and complaints, establish feedback loops to enhance service and response, and analyze large volumes of data to identify trends and causal factors. We are seeking an individual with a strong passion for cloud security and automation utilizing Agile and DevOps methodologies and promoting a shift-left culture that integrates security analysis into each CI/CD stage. The ideal candidate will have experience with Azure Cloud and security stack, including Defender, Azure Sentinel, and Azure Security Centre, automated security assessments, third-party security tools integration, and compliance standards like PCI-DSS. Additionally, you should possess expertise in security controls, the ability to communicate technical issues to various stakeholders, experience in penetration testing and vulnerability management, and an understanding of Agile methodologies gained through working in an Agile team.,

Posted 1 day ago

Apply

3.0 - 7.0 years

0 Lacs

karnataka

On-site

At EY, you'll have the chance to build a career as unique as you are, with the global scale, support, inclusive culture, and technology to become the best version of you. We are counting on your unique voice and perspective to help EY become even better. Join us and build an exceptional experience for yourself and a better working world for all. As a CMS-TDR Senior at EY, you will work as a Senior Analyst within our cyber security team. Your role will involve assisting clients in detecting and responding to security incidents with the support of SIEM, EDR, and NSM solutions. Your key responsibilities will include: - Operational support using SIEM solutions (Splunk, Sentinel, CrowdStrike Falcon LogScale), EDR (CrowdStrike, Defender, Carbon Black), and NSM (Fidelis, ExtraHop) for multiple customers. - Specializing in second-level incident validation and detailed investigations. - Performing incident coordination and communication with clients to ensure effective containment, eradication, and recovery. - Providing SIEM support activities, including ad hoc reporting and basic troubleshooting. - Advising customers on best practices and use cases to achieve customer end-state requirements. - Providing near real-time analysis, investigating, reporting, remediating, coordinating, and tracking security-related activities for customers. Skills and attributes for success include: - Customer service orientation, meeting commitments, and seeking feedback for improvement. - Good knowledge of SIEM technologies such as Splunk, Azure Sentinel, CrowdStrike Falcon LogScale from a security analyst's perspective. - Troubleshooting issues associated with SIEM solutions. - Ability to work with minimal supervision. - Exposure to IoT/OT monitoring (Claroty, Nozomi Networks) is a plus. - Experience in security monitoring and cyber incident response. - Knowledge in ELK Stack, network monitoring technology platforms (Fidelis XPS, ExtraHop), and endpoint protection tools (Carbon Black, Tanium, CrowdStrike, Defender). To qualify for this role, you must have: - A B.Tech./B.E. degree with sound technical skills. - Ability to work in 24x7 shifts. - Strong command of verbal and written English. - Technical acumen and critical thinking abilities. - Strong interpersonal and presentation skills. - Minimum 3 years of hands-on experience in SIEM/EDR/NSM solutions. - Certification in any of the SIEM platforms. - Knowledge of RegEx, Perl scripting, and SQL query language. - Certifications such as CCSA, CEH, CISSP, GCIH, GIAC. Working at EY offers: - Inspiring and meaningful projects. - Education, coaching, and personal development opportunities. - Support, coaching, and feedback from engaging colleagues. - Opportunities for skills development and career progression. - Freedom and flexibility to shape your role according to your needs. EY is dedicated to building a better working world by creating long-term value for clients, people, and society and building trust in the capital markets. Our diverse teams across 150 countries provide trust through assurance and help clients grow, transform, and operate in various sectors. We ask better questions to find new answers for the complex issues facing our world today.,

Posted 2 days ago

Apply

10.0 - 15.0 years

11 - 15 Lacs

Pune, Maharashtra, India

On-site

Position Summary We are seeking a skilled Cloud Security Engineer to design, implement, and maintain secure architectures in AWS and Azure environments. The role focuses on risk assessment, IAM, container security (Kubernetes, Docker), compliance with standards like GDPR and ISO 27001, and collaboration with cross-functional teams to integrate security into cloud operations. The ideal candidate will bring strong technical skills, a deep understanding of cloud-native security tools, and leadership in secure cloud design. Key Responsibilities Design and implement secure AWS and Azure cloud architectures Integrate and manage tools like Azure Sentinel, Azure Active Directory, Microsoft 365 Defender, and AWS GuardDuty Configure AWS IAM, cloud firewalls, and other native security services Implement and enforce Zero Trust Security principles Ensure infrastructure compliance with industry standards (GDPR, ISO 27001, etc.) Conduct risk assessments and develop cloud threat mitigation strategies Optimize cloud architecture for cost efficiency, performance, and security Support security incident response and vulnerability management in cloud environments Collaborate with CloudOps and engineering teams to embed security by design Lead and contribute to audits and security reviews Basic Qualifications Bachelor's or Master's degree in Computer Science, Information Security, or a related field Hands-on experience with AWS and Azure security services Proficiency in Infrastructure as Code (Terraform, CloudFormation) Experience in container security using Kubernetes and Docker Deep understanding of IAM, network security, encryption protocols Familiarity with cloud compliance frameworks and standards (GDPR, ISO 27001) Soft Skills Excellent communication and collaboration skills Strong analytical and problem-solving capabilities Ability to lead or mentor junior team members Proactive mindset and detail-oriented

Posted 2 days ago

Apply

5.0 - 7.0 years

10 - 15 Lacs

Bengaluru

Hybrid

Greetings from Newwave Computing ! One of our esteemed clients is looking to hire a seasoned Microsoft Security Consultant with a minimum of 5 years of experience. . Role & responsibilities Implementation & Deployment: Lead end-to-end implementation of Microsoft Defender products (Defender for Endpoint, Identity, Office 365, Cloud Apps, and defender for cloud). Configure and deploy Azure Sentinel for SIEM/SOAR capabilities, including custom alert rules, automation playbooks, and threat hunting. Implement Microsoft Purview (Data Security & Compliance) solutions, including Data Loss Prevention (DLP), Endpoint DLP, Information Protection, and Insider Risk Management. Design and execute Microsoft 365 E5 Security implementations, covering Advanced Threat Protection, Identity & Access Management, Conditional Access Policies and Intune MAM/MDM. Integration & Optimization: Optimize security configurations for threat detection, automated remediation, and compliance reporting. Deliver workshops and training sessions for client teams on security operations and tool management. Preferred candidate profile Certifications: Microsoft Certified: SC-400, SC-200, SC-300, AZ-500 , or equivalent. (Optional) Technical Expertise: Hands-on experience deploying Microsoft Defender suite, Azure Sentinel, and M365 E5 Security . Proficiency in Microsoft Purview (DLP, Information Protection, Audit, eDiscovery) . Strong knowledge of Microsoft Entra ID (Azure AD), Conditional Access, and Intune . Experience with KQL (Kusto Query Language), PowerShell, and automation (Logic Apps, Playbooks) . Soft Skills: Excellent communication and client-facing consulting skills. Ability to translate technical concepts into business value. Strong problem-solving and analytical mindset. Interested candidates kindly send the updated resume to rugma.s@newwavecomputing.com

Posted 3 days ago

Apply

6.0 - 10.0 years

15 - 25 Lacs

Bengaluru

Work from Office

Job Title: Cybersecurity Vulnerability & Patch Management Engineer (Onsite PST Hours) Location: Bangalore, India Work Hours: 8:00 AM – 5:00 PM PST (India Time: 8:30 PM – 5:30 AM IST) Reports To: SecOps Leader, Cybersecurity (US-based) About the Role: We are seeking a skilled and proactive Vulnerability & Patch Management Engineer to join our offshore cybersecurity team supporting Rocket EMS. You will lead the end-to-end vulnerability management and patching program across global infrastructure. This is a strategic, hands-on role requiring expert knowledge in tools like TenableOne, Automox, CrowdStrike Falcon, and Azure security solutions. Key Responsibilities: Manage enterprise-wide vulnerability lifecycle using TenableOne Rapid response to zero-day threats with scripting via CrowdStrike RTR Execute patch deployment using Automox across OS and cloud workloads Develop PowerShell/Python scripts for automation and rollback procedures Perform Azure Sentinel threat hunting using KQL Lead weekly vulnerability/patch management meetings and prepare executive dashboards Collaborate with global IT, SecOps, DevOps, and Engineering teams Required Skills: 5+ years in enterprise patch and vulnerability management Hands-on experience with TenableOne , Automox , CrowdStrike Falcon Complete , Azure Sentinel , and KQL Proficient in PowerShell and/or Python Strong understanding of Azure Cloud security posture and incident response CISSP certification (mandatory) Preferred: Knowledge of Infrastructure-as-Code (Terraform/ARM) Experience in regulated industries or manufacturing Additional certifications: Azure Security Engineer, CrowdStrike Certified Please share your resume to Sirishad@ca-one.com

Posted 4 days ago

Apply

3.0 - 12.0 years

0 Lacs

karnataka

On-site

As an Azure Technical Project Manager, you will be responsible for managing data and analytics projects in the cloud environment. With a minimum of 12 years of IT experience, including at least 3 years in technical project management, you will bring a strong background in overseeing data engineering and data analytics initiatives. Your primary responsibilities will include overseeing migration projects, working with Azure, AWS, and managing data lake implementations. You will need to have hands-on experience in managing data science, analytics, and data engineering projects. Additionally, you should have a good understanding of Micro Service architecture and experience working as a scrum master in agile environments. Your role will involve close collaboration with clients to deliver cutting-edge solutions by leveraging your technical expertise. Strong communication, interpersonal, and leadership skills are essential for engaging with stakeholders and guiding project teams effectively. You should also possess analytical skills to interpret data, conduct statistical analysis, and support ongoing reporting and analysis activities. Furthermore, a deep understanding of cloud solutions, data architecture flow, ETL processing, analytical modeling, and consumption patterns is required. Your ability to articulate technical concepts to business leaders will be crucial in ensuring successful project delivery.,

Posted 1 week ago

Apply

4.0 - 6.0 years

14 - 20 Lacs

Gurugram, Manesar

Hybrid

Threat Protection Engineer | ACPL Must have Microsoft Threat Detection & Protection, Defender, and Cloud Security experience. Should be able to provide L3 support.its a 2 yrs bond with ACPL Company/Manesar location-Hybrid

Posted 1 week ago

Apply

3.0 - 8.0 years

3 - 12 Lacs

Chennai

Work from Office

Responsibilities: * Conduct threat analysis using SOC tools like QRadar & LogRhythm. * Collaborate with incident response team on security incidents. * Monitor network activity for suspicious behavior.

Posted 1 week ago

Apply

8.0 - 9.0 years

5 - 8 Lacs

Hyderabad, Telangana, India

On-site

Key Responsibilities: DevSecOps & Security Automation:Integrate security best practices into CI/CD pipelines using tools like Azure DevOps, GitHub Actions, and Jenkins Automate security scanning for SAST, DAST, and SCA (e , SonarQube, Checkmarx, Veracode) Implement Infrastructure as Code (IaC) security for Azure using Terraform, Ansible, and ARM templates Develop and maintain automated security testing frameworks for applications and cloud workloads Governance, Risk & Compliance (GRC):Ensure compliance with industry security standards (NIST, ISO 27001, CIS, SOC 2, GDPR, HIPAA) Develop and implement security policies, frameworks, and risk assessment strategies Conduct security audits and vulnerability assessments to identify compliance gaps Provide security guidance for third-party risk management and vendor security reviews Cloud Security (Azure & Hybrid Environments):Secure Azure workloads, including Azure Security Center, Defender for Cloud, and Sentinel SIEM Implement Zero Trust security models for cloud-native applications and microservices Enforce IAM, RBAC, and Conditional Access Policies in Azure Monitor and mitigate cloud security threats, ensuring continuous compliance Application Security:Secure web and API applications using OWASP best practices Implement API security measures (OAuth, JWT, WAF, mTLS) Perform threat modeling and secure code reviews Collaborate with development teams to embed Shift Left security principles Incident Response & Threat Management:Develop and implement Incident Response Plans (IRP) and Security Playbooks Investigate security breaches and coordinate forensic analysis Utilize SIEM, SOAR, and XDR tools for threat detection and response Educate DevOps and Engineering teams on secure coding practices Required Skills & Experience: 8+ years of experience in DevSecOps, Cloud Security, and Application Security Strong expertise in Azure Security Services (Defender, Sentinel, Key Vault, RBAC) Hands-on experience with DevSecOps pipelines (Azure DevOps, GitHub, Jenkins) Experience with security automation tools (Terraform, Ansible, Python, PowerShell) Deep knowledge of Application Security (SAST, DAST, SCA, OWASP, API Security) Strong understanding of GRC frameworks (NIST, ISO 27001, CIS Benchmarks) Experience with Container Security (Docker, Kubernetes, Istio) Preferred Qualifications (Nice to Have): Certifications: CISSP, CCSP, CEH, AZ-500, CRISC, OSCP Experience with SIEM & SOAR platforms (Splunk, Azure Sentinel, QRadar) Familiarity with Blockchain Security & Zero Trust architectures Knowledge of AI/ML-based security automation

Posted 1 week ago

Apply

1.0 - 5.0 years

0 Lacs

karnataka

On-site

As an Enterprise IT Security Analyst Cloud and Endpoints, you will play a crucial role in ensuring the security of our cloud environments, specifically across AWS or Azure. Your primary responsibilities will revolve around collaborating with DevOps and IT teams to implement and oversee security measures, identify and mitigate risks, and ensure compliance with industry standards. Your key responsibilities will include: - Utilizing Microsoft Defender for Cloud and EDR tools like SentinelOne, CrowdStrike, or Microsoft Defender for Endpoint to enhance security measures. - Applying AI coding techniques for anomaly detection, threat prediction, and automated response systems. - Managing Microsoft Defender for Cloud to safeguard Azure environments. - Leveraging Endpoint Detection and Response (EDR) tools for threat detection and response. - Designing, implementing, and managing security solutions across AWS, Azure, and GCP. - Employing AWS security capabilities such as AWS Inspector, WAF, GuardDuty, and IAM for cloud infrastructure protection. - Implementing Azure security features including Azure Security Center, Azure Sentinel, and Azure AD. - Managing security configurations and policies across GCP using tools like Google Cloud Armor, Security Command Center, and IAM. - Conducting regular security assessments and audits to ensure vulnerability identification and compliance. - Developing and maintaining security policies, procedures, and documentation. - Collaborating with cross-functional teams to integrate security best practices into the development lifecycle. - Monitoring and responding to security incidents and alerts. - Implementing and managing Cloud Security Posture Management (CSPM) solutions with tools like Prisma Cloud, Dome9, and AWS Security Hub to continuously enhance cloud security posture. - Utilizing Infrastructure as Code (IaC) tools such as Terraform, CloudFormation, and ARM templates for cloud infrastructure automation and management. Qualifications: Must Have Qualifications: - Bachelor's degree in computer science, Information Technology, or a related field. - 1-3 years of experience in cloud security engineering. - Proficiency in AWS security capabilities. - Strong skills in Terraform for Infrastructure as Code (IaC). - Experience with Cloud Security Posture Management (CSPM) tools. - Familiarity with Web Application Firewall (WAF). - Relevant certification such as CISSP or AWS Certified Security Specialty or similar. Good to Have Qualifications: - Additional experience with AWS security capabilities. - Strong understanding of cloud security frameworks and best practices. - Proficiency in Infrastructure as Code (IaC) tools like CloudFormation and ARM templates. - Experience with AI coding and applying machine learning techniques to security. - Excellent problem-solving skills and attention to detail. - Strong communication and collaboration skills. This role will be based at The Leela Office on Airport Road, Kodihalli, Bangalore. The position follows a hybrid work model with office presence on Tuesdays, Wednesdays, and Thursdays, and remote work on Mondays and Fridays. The work timings are from 1 PM to 10 PM IST, with cab pickup and drop facility available. Candidates based in Bangalore are preferred.,

Posted 1 week ago

Apply

6.0 - 8.0 years

18 - 20 Lacs

Faridabad, Greater Noida

Work from Office

Job Summary/Objective: Set up & Maintain On-premises Active Directory, Azure Hybrid Cloud Infrastructure Windows Administration on VMWARE/Hyper-V in Datacenter & Backup Administrator Skills: On-premise Active Directory Administrator & ADFS Administration Configure and manage Microsoft Intune for MDM and MAM Support hybrid Azure AD joined and Azure AD joined devices. Manage synchronization between on-premises Active Directory and Azure AD using Azure AD Connect. Window Server Administration in Data Center patching via WSUS or configuration management tools SCCM/Manage Engine Proficient PowerShell Scripting /.NET Programming Experience on VMWARE, Hyper-V Admin & Backup Tools, Work Experience on Azure Security Centre, Azure Defender, and Azure Sentinel (nice to Have) Work Experience in ISO27001/SOC2/GDPR Compliant Organization(Nice to Have) Good Document writing Skill on Microsoft Excel & PowerPoint Preparation Certifications: Exam AZ-800: Administering Windows Server Hybrid Core Infrastructure Exam AZ-801: Configuring Windows Server Hybrid Advanced Services SC-300: Microsoft Identity and Access Administrator Experience: Relevant 6 Years Personal attributes: Good Communication skills specially written, Excel and PowerPoint Preparation Team Leader, Effectively articulation of ideas, convey information. Addresses customer inquiries or issues promptly & professionally. Clear and concise communication is essential for understanding requirements & expectations. Work Environment : 5 Days in-office working, Posting at Faridabad/Greater Noida, May have to travel Chennai & Overseas Roles and Responsibilities Azure Intune & AD Admin Activities: Implement identity and access management solutions using Azure Active Directory (Azure AD). Manage and maintain the Azure Active Directory (Azure AD) environment. Create, modify, and delete user accounts, groups, and roles. Manage synchronization between on-premises Active Directory and Azure AD using Azure AD Connect. Implement and manage identity and access management (IAM)policies, including role-based access control (RBAC) and conditional access policies to enforce the principle of least privilege. Configure and manage Microsoft Intune for MDM and MAM. Create and deploy configuration profiles, compliance policies, app protection policies, and conditional access. Package and deploy line-of-business and store apps using Win32, MSIX, or Microsoft Store for Business. Integrate Intune with Azure AD, Microsoft Defender for Endpoint, and Autopilot for device provisioning. Implement Windows Autopilot for seamless out-of-the-box provisioning and enrolment. Monitor device compliance, remediate issues, and generate reports. Enforce security baselines, BitLocker encryption, antivirus and firewall policies. Troubleshoot Intune issues related to deployment, enrolment, or application distribution. Coordinate with security, network, and support teams to ensure endpoint protection and compliance. Support hybrid Azure AD joined and Azure AD joined devices. Maintain up-to-date knowledge of Intune and related technologies and apply best practices Integrate Azure AD with other cloud services and on-premises systems. Automate routine administrative tasks using PowerShell and other scripting tools. Manage single sign-on (SSO) configurations and integrate with external identity providers. Generate and analyse reports on user activities, access patterns, and security incidents. Assist with onboarding and offboarding processes to ensure proper access management. Work closely with IT, security, and development teams to implement and manage Azure AD solutions. Azure Network Admin Activities: Design and implement Azure network solutions, including virtual networks, subnets, network security groups (NSGs), and routing configurations. Manage and maintain azure network services such as Azure VPN Gateway, Azure ExpressRoute, Azure Firewall, Azure Load Balancer, and Azure Traffic Manager. Monitor network performance and troubleshoot network-related issues to ensure optimal performance and availability. Implement and manage network security measures, including firewalls, intrusion detection/prevention systems (IDS/IPS), and security policies. Conduct regular network assessments and audits to ensure compliance with industry standards and best practices. Azure Security Related Activities: Establish security policies, standards, and procedures for Azure environments. Conduct risk assessments and vulnerability analyses to identify potential threats. Design secure architectures for Azure cloud solutions, including network, application, and data security. Design and implement secure hybrid cloud solutions, integrating on-premises and Azure resources. Configure Azure security services, such as Azure Security Centre, Azure Defender, and Azure Sentinel, Azure Policy, Azure Blueprints Implement network security measures, including Azure Firewall, Network Security Groups (NSGs), and Virtual Private Networks (VPNs). Implement continuous monitoring and logging using Azure Monitor, Azure Log Analytics, and Azure Sentinel. Maintain comprehensive documentation of security policies, procedures, and configurations. Ensure compliance with regulatory requirements and industry standards (SOC2, GDPR, ISO 27001). Windows Server Admin Related Activities: Install, configure, and maintain Windows Server 2012/2016/2019/2022 systems. Manage Active Directory, DNS, DHCP, Group Policy Objects, and File/Print Services. Implement and support Failover Clustering and High Availability for business-critical services. Administer virtualized environments using Hyper-V and/or VMware vSphere. Ensure timely OS and software patching via WSUS or configuration management tools SCCM/Manage Engine Troubleshoot hardware, software, and performance issues, and perform root cause analysis. Design and maintain backup and disaster recovery solutions, including replication and restore testing. Collaborate with storage and network teams to maintain system performance and availability. Support hybrid integration with Azure AD, Intune, Microsoft Endpoint Manager, or MECM/SCCM (as applicable). Other Tasks: Identify potential risks or issues before they escalate Dealing with Customers for issues Embrace change, adapt quickly to shifting needs or conditions. Maintaining documentation of configurations, processes, and procedures Generating reports on performance, availability, and security metrics for management and compliance purposes Pay attention to details to ensure project requirements and deliverables are met accurately Review project documentation, monitor progress Work closely with diverse teams, stakeholders, and clients Provide Consultancy to the Customers

Posted 1 week ago

Apply

3.0 - 7.0 years

0 Lacs

karnataka

On-site

At EY, you'll have the chance to build a career as unique as you are, with the global scale, support, inclusive culture, and technology to become the best version of yourself. And EY is counting on your unique voice and perspective to help the organization become even better. Join us and build an exceptional experience for yourself, and contribute to creating a better working world for all. As a CMS-TDR Staff at EY, you will be part of the cyber security team and work as a SOC analyst to assist clients in detecting and responding to security incidents with the support of SIEM, EDR, and NSM solutions. **The Opportunity:** We are seeking a Security Analyst with experience in SIEM, EDR, and NSM solutions. **Your key responsibilities include:** - Providing operational support using SIEM solutions (Splunk, Sentinel, CrowdStrike Falcon LogScale), EDR Solution (Defender, CrowdStrike, Carbon Black), NSM (Fidelis, ExtraHop) for multiple customers. - Performing the first level of monitoring and triaging of security alerts. - Conducting initial data gathering and investigation using SIEM, EDR, NSM solutions. - Providing near real-time analysis, investigation, and reporting of security incidents for customers. **Skills and attributes for success:** - Customer Service oriented with a commitment to meeting customer needs and seeking feedback for improvement. - Hands-on knowledge of SIEM technologies like Splunk, Azure Sentinel, CrowdStrike Falcon LogScale from a Security analyst's perspective. - Exposure to IOT/OT monitoring tools like Claroty, Nozomi Networks is a plus. - Good knowledge and experience in Security Monitoring and Cyber Incident Response. - Familiarity with Network monitoring platforms like Fidelis XPS, ExtraHop and endpoint protection tools such as Carbon Black, Tanium, CrowdStrike, Defender ATP, etc. **To qualify for the role, you must have:** - B. Tech./ B.E. with sound technical skills. - Ability to work in 24x7 shifts. - Strong command of verbal and written English language. - Technical acumen and critical thinking abilities. - Strong interpersonal and presentation skills. - Hands-on experience in SIEM, EDR, and NSM solutions. - Certification in any of the SIEM platforms. - Knowledge of RegEx, Perl scripting, and SQL query language. - Certification such as CEH, ECSA, ECIH, Splunk Power User. **What working at EY offers:** At EY, you will work on inspiring and meaningful projects with a focus on education, coaching, and personal development. You will have opportunities for skill development, career progression, and the freedom to handle your role in a way that suits you best. EY offers support, coaching, and feedback from engaging colleagues, along with an environment that emphasizes high quality and knowledge exchange. EY is dedicated to building a better working world, creating value for clients, people, and society, and building trust in the capital markets. With diverse teams in over 150 countries, EY provides trust through assurance and helps clients grow, transform, and operate across various domains.,

Posted 1 week ago

Apply

7.0 - 11.0 years

0 Lacs

vadodara, gujarat

On-site

Exigo Tech is a Sydney-based Technology Solutions Provider specializing in Infrastructure, Cloud, and Application solutions for businesses across Australia. We are dedicated to enhancing operational efficiencies by leveraging technology solutions that streamline business processes. We are currently seeking a full-time Azure Solution Architect to join our Managed Service team. In this role, you will be responsible for planning, designing, building, configuring, commissioning, and maintaining computer networks and systems. It is imperative that all tasks are completed on schedule by following established procedures. Key Responsibilities: - Scope out, set up, configure, and deliver Microsoft IaaS and PaaS solutions on the Azure platform - Collaborate with sales, presales, project managers, and project engineers to ensure successful project delivery from inception to handover on the Azure platform - Conduct solution presentations, proof of concepts, and training sessions for internal and external stakeholders - Develop and standardize delivery best practices using runbooks, templates, and scripts - Serve as a trusted advisor and Azure evangelist, staying abreast of market trends and Microsoft Azure updates - Adhere to ISO 27001:2022 norms Technical Skills: - Proficiency in Microsoft Public Cloud Stack, including Azure IaaS and PaaS solutions - Experience with M365, Azure AD, Exchange Online, SharePoint, and Azure - Expertise in migrations, Azure Cloud readiness assessments, and identity management - Knowledge of Azure Stack HCI, Azure Storage, networking, backup, DR, databases, security, and governance Functional Skills: - Strong troubleshooting and communication abilities - Team player with excellent organizational and time management skills - Self-driven, flexible, and innovative Experience: 7 - 10 years Salary Range: Competitive, plus Medical and Accidental Insurance, Paid Leaves, and Holidays Certifications: Microsoft Certified: Azure Solutions Architect Expert (AZ303 + AZ304) In addition to technical proficiency, the ideal candidate must possess exceptional communication skills and a proactive approach to addressing client needs promptly and effectively. If you meet the qualifications, we encourage you to apply now by attaching your resume. We will reach out to you if your skills align with our requirements.,

Posted 1 week ago

Apply

7.0 - 12.0 years

16 - 31 Lacs

Kolkata

Remote

Job Summary: We are seeking a highly skilled and motivated SOC Analyst / Detection Engineer to join our Security Operations Center. This role requires expertise in developing advanced KQL and Splunk queries, detection engineering, and incident response within complex enterprise environments. The ideal candidate will bring hands-on experience with SIEM, EDR, cloud security, incident playbooks, and OSINT tools, while also showing a passion for mentoring junior team members. Key Responsibilities: Develop and fine-tune detection rules and analytics using KQL (Microsoft Sentinel) and SPL (Splunk). Lead threat hunting activities leveraging EDR telemetry, SIEM logs, and threat intelligence sources. Design and implement detections based on behavioral patterns and MITRE ATT&CK mappings. Investigate security alerts and incidents, triage threats, and provide detailed incident reports and root cause analysis. Build and maintain incident response playbooks, SOPs, and runbooks to streamline SOC operations. Collaborate with internal teams to continuously improve detection logic and incident workflows. Mentor and train junior analysts, promote knowledge sharing, and support SOC skill development. Develop integrations and use cases with various log sources from on-prem, cloud, and hybrid environments. Utilize OSINT tools and frameworks (e.g., VirusTotal, Shodan, Censys, MISP, AbuseIPDB, Whois, etc.) during threat investigation and enrichment. Drive automation and orchestration where applicable using SOAR technologies. Stay up to date on threat intelligence, emerging tactics, techniques, and procedures (TTPs). Technical Skill Requirements: Detection Engineering: Strong expertise in writing detection queries (KQL/SPL), developing use cases, and tuning alerts. SIEM: Hands-on experience with Microsoft Sentinel and Splunk (Enterprise Security). EDR/XDR: CrowdStrike Falcon, Microsoft Defender for Endpoint. Cloud Security: Security monitoring in Azure, AWS, and GCP. Microsoft 365 Security: Defender for Office 365, Entra ID (Azure AD), Purview (compliance). Web Security Filtering: Experience or knowledge of Zscaler and similar solutions. Incident Response: Playbook development, SOPs, runbook creation, triage, and remediation. OSINT Tools: Practical usage of VirusTotal, URLScan.io, MISP, Shodan, Censys, GreyNoise, AbuseIPDB, Whois, etc. Log Analysis: Deep understanding of log formats from servers, network devices, cloud services, and applications. Automation/SOAR: Familiarity with automation frameworks (Logic Apps, Sentinel Playbooks, Splunk SOAR) is a plus. Scripting: PowerShell, Python, or equivalent scripting for enrichment and automation. Additional Expectations: Willingness to mentor and train junior SOC team members. Ability to work independently in a fast-paced SOC environment. Excellent analytical, communication, and problem-solving skills. Strong attention to detail and a proactive security mindset. Preferred Certifications (Nice to Have): SC-200: Microsoft Security Operations Analyst Splunk Core/Enterprise Security certifications CrowdStrike CCFR / CCFH Zscaler ZCCA/ZCCP Azure/AWS/GCP security certifications GIAC (GCIA, GCED, GCIH) or other relevant SANS certifications

Posted 1 week ago

Apply

8.0 - 11.0 years

35 - 37 Lacs

Bengaluru

Hybrid

Key Skills: SIEM, SOAR, Azure Sentinel, FortiSOAR, Python, PowerShell, Cyber Security, Automation, Security Frameworks, Compliance, Incident Response, Playbook Creation, Log Onboarding, Cyber Kill Chain. Roles & Responsibilities: Manage and oversee SIEM and SOAR solutions, including log onboarding and creation of automated playbooks. Provide hands-on technical expertise across Cyber Security and technology domains. Collaborate with internal teams to integrate and optimize security monitoring tools and automate workflows. Maintain and ensure the performance of SIEM and SOAR platforms, enhancing detection and response capabilities. Design and implement automation solutions using scripting languages (e.g., Python, PowerShell). Support and ensure compliance with security frameworks and industry regulations. Analyze and remediate security incidents, leveraging expertise in the Cyber Kill Chain and common attack methods. Work closely with cross-functional teams to define security requirements, processes, and practices. Communicate complex security concepts to non-technical stakeholders. Monitor and report on security events and incidents to ensure continuous improvement of security posture. Experience Required: 8-11 years of experience in IT Security, with at least 6 years managing SIEM and SOAR solutions. Strong hands-on experience with SIEM (e.g., Azure Sentinel) and SOAR platforms (e.g., FortiSOAR). Experience in log onboarding for SIEM solutions and creating automated playbooks on SOAR platforms. Solid understanding of security frameworks, compliance regulations, and industry standards. Technical experience in Cyber Security and technology domains, including threat analysis and remediation. Proven ability to work under pressure and manage time effectively. Familiarity with e-commerce, logistics, supply chain, and port operations applications is a plus. Education: A ny Graduation.

Posted 1 week ago

Apply

8.0 - 13.0 years

18 - 33 Lacs

Mumbai, Mumbai (All Areas)

Work from Office

Job Description: We are seeking a Senior Azure Cloud Architect with strong experience in infrastructure as code (IaC) using ARM templates. The ideal candidate will be responsible for automating and managing our Azure infrastructure, implementing operational controls, and supporting cloud security and monitoring tools. Key technologies include Azure Sentinel, Azure Log Analytics, and Azure DevOps. Experience with Tenable is a plus. Responsibilities: Design, develop, and deploy infrastructure using ARM templates. Automate cloud operations and implement control mechanisms. Integrate Azure Sentinel and Log Analytics for monitoring and security insights. Collaborate with DevOps teams to streamline CI/CD pipelines. Support vulnerability management tools such as Tenable (preferred). Requirements: Proven experience with Azure cloud architecture and automation. Expertise in ARM templates, Azure DevOps, and infrastructure management. Hands-on experience with Azure Sentinel and Log Analytics. Familiarity with security and compliance standards in cloud environments. Experience with Tenable or other vulnerability management tools is a plus.

Posted 1 week ago

Apply

1.0 - 5.0 years

0 Lacs

karnataka

On-site

As an Enterprise IT Security Analyst Cloud and Endpoints, you will play a crucial role in ensuring the security of the cloud environments in either AWS or Azure. Your responsibilities will involve collaborating closely with the DevOps and IT teams to implement and manage security measures, identify risks, and ensure compliance with industry standards. You will be expected to have experience with Microsoft Defender for Cloud and Endpoint Detection and Response (EDR) tools such as SentinelOne, CrowdStrike, or Microsoft Defender for Endpoint. Furthermore, you will apply AI coding techniques to enhance security measures, implement Microsoft Defender for Cloud for Azure protection, and utilize EDR tools for threat detection and response. Designing, implementing, and managing security solutions across various cloud platforms like AWS, Azure, and GCP will be a key part of your role. Utilizing security capabilities specific to each platform, such as AWS Inspector, WAF, GuardDuty, Azure Security Center, Sentinel, and IAM, will be essential in safeguarding the cloud infrastructure. Regular security assessments, audits, and the development of security policies and documentation will also fall within your responsibilities. Collaborating with cross-functional teams to integrate security best practices into the development lifecycle, monitoring and responding to security incidents, and managing Cloud Security Posture Management (CSPM) solutions using tools like Prisma Cloud and AWS Security Hub will be crucial aspects of your role. You should hold a Bachelor's degree in computer science, Information Technology, or a related field, along with 1-3 years of experience in cloud security engineering. Proficiency in AWS security capabilities, Azure AD, Microsoft Defender, M365, Exchange security, and Terraform for Infrastructure as Code (IaC) is required. Relevant certifications such as CISSP or AWS Certified Security Specialty will be beneficial. Additional qualifications that would be advantageous include experience with cloud security frameworks, Infrastructure as Code (IaC) tools like CloudFormation and ARM templates, AI coding, and machine learning techniques applied to security. Strong problem-solving skills, attention to detail, and effective communication and collaboration abilities are also desired. This position is based at The Leela Office in Bangalore, with a hybrid work model of 3 days in the office and 2 days remote work. The work timings are from 1 pm to 10 pm IST, with cab pickup and drop facilities available. Candidates based in Bangalore are preferred for this role.,

Posted 1 week ago

Apply

9.0 - 14.0 years

25 - 40 Lacs

Bengaluru

Hybrid

Role: Azure Architect Experience Level: Lead/Architect Job Summary: We are seeking a seasoned Azure Architect to lead the design, deployment, and governance of enterprise-scale Azure solutions. This role requires deep expertise in cloud architecture, hybrid integrations, security, and migration strategy, with a strong practical understanding of Microsofts Well-Architected Framework. The ideal candidate will provide strategic guidance while also being hands-on with implementation and optimization. Key Responsibilities: 1. Solution Design & Implementation Design end-to-end Azure cloud solutions tailored to business and technical requirements. Create detailed architecture documents, reference models, and implementation guidelines. Collaborate with stakeholders to align cloud strategies with enterprise goals. 2. Landing Zone & Disaster Recovery Design and implement Azure landing zones using best practices for scalability and governance. Define and execute disaster recovery strategies, including region-based resiliency and RTO/RPO alignment. Implement Azure native services for availability, failover, and monitoring. 3. On-Premises Technologies Integrate and manage hybrid environments with on-premise infrastructure (e.g., Active Directory, VMware, System Center). Establish secure and performant connectivity using VPN, ExpressRoute, and Azure Arc. Assist in hybrid application architecture and cloud readiness assessments. 4. Azure Well-Architected Framework Apply principles from the Azure Well-Architected Framework across architecture design. Provide real-world implementation examples focusing on cost optimization, security, reliability, operational excellence, and performance efficiency. Conduct architectural reviews and recommend improvements aligned with WAF pillars. 5. Azure Security Services Implement and manage security tools including Microsoft Defender for Cloud, Azure Firewall, Azure Sentinel, and Key Vault. Define and enforce security policies, threat protection, and compliance controls. Conduct cloud security assessments and mitigate identified risks. 6. Azure Identity & Access Management (IAM) Design and enforce IAM policies using Azure AD, Conditional Access, RBAC, and PIM. Manage identity federation, multi-factor authentication, and secure workload identities. Support secure access design for applications, APIs, and hybrid workloads. 7. Azure Migration & Cloud Transition Lead or advise on cloud migration projects involving rehosting, replatforming, and modernization. Use tools such as Azure Migrate, Database Migration Service, and third-party utilities. Plan for migration dependencies, downtime, cutover strategies, and validation. Required Skills & Experience: 9+ years of experience in cloud architecture and Azure solution delivery. Proven hands-on experience designing and implementing enterprise-grade Azure solutions. Strong knowledge of hybrid integration, security, IAM, and DR practices. Experience with cloud migration projects and methodologies. Preferred Qualifications: Microsoft Certified: Azure Solutions Architect Expert (AZ-305) Microsoft Certified: Azure Security Engineer Associate (AZ-500) Microsoft Certified: Azure Administrator or equivalent experience Soft Skills: Excellent communication and stakeholder management. Strong analytical thinking and problem-solving capabilities. Leadership skills to drive architecture and governance decisions. Ability to mentor technical teams and lead complex initiatives.

Posted 2 weeks ago

Apply

15.0 - 20.0 years

13 - 17 Lacs

Pune

Work from Office

Project Role : Security Architect Project Role Description : Define the cloud security framework and architecture, ensuring it meets the business requirements and performance goals. Document the implementation of the cloud security controls and transition to cloud security-managed operations. Must have skills : Security Information and Event Management (SIEM) Good to have skills : NAMinimum 5 year(s) of experience is required Educational Qualification : 15 years full time education Summary :As a Security Architect, you will define the cloud security framework and architecture, ensuring it meets the business requirements and performance goals. Your typical day will involve collaborating with various teams to assess security needs, documenting the implementation of cloud security controls, and transitioning to cloud security-managed operations. You will engage in discussions to refine security strategies and ensure compliance with industry standards, all while adapting to the evolving landscape of cloud security challenges. Roles & Responsibilities:1)Design and implement Microsoft Sentinel architecture, including data connectors, analytics rules, and workbooks.2)Integrate Sentinel with various data sources, including Azure services on-premises systems, and third-party security products.3)Develop and maintain data connectors, APIs and custom integrations.4)Configure and optimize incident response workflows, including automated response actions and playbooks.5)Collaborate with security operations teams to implement Sentinel-based security monitoring and incident response processes.6)Provide training and support to security teams on Sentinel features and functionality7)Continuously monitor and optimize Sentinel performance, scalability, and reliability8)Develop and maintain custom dashboards, reports, and workbooks to provide security insights and metrics. 9)Integrate Azure Logic Apps with Azure Sentinel to automate security workflows and incident response.10)Develop custom connectors for Logic apps to integrate with Azure Sentinel and other security tools. 11)Collaborate with security teams, developers, and operation teams to ensure seamless integration and deployment of Logic Apps with Azure Sentinel12)Configure and maintain Sentinel workspaces, including data connectors, analytics rules. 13)Optimize Sentinel workspace performance, scalability, and security.14)Develop and maintain reports and dashboards to provide visibility into security metrics and trends.15)Strong knowledge of KQL and experience writing complex queries. Proficiency in Microsoft Sentinel, Azure Security Center and Azure Monitor- Experience with data analytics, machine learning, and threat intelligence. Expected to be an SME.- Collaborate and manage the team to perform.- Responsible for team decisions.- Engage with multiple teams and contribute on key decisions.- Provide solutions to problems for their immediate team and across multiple teams.- Develop and maintain comprehensive documentation of security architecture and frameworks.- Conduct regular assessments and audits to ensure compliance with security policies and standards. Professional & Technical Skills: - Must To Have Skills: Proficiency in Sentinel SIEM & KQL query.- Strong understanding of cloud security principles and practices.- Experience with security incident response and management.- Familiarity with compliance frameworks such as ISO 27001, NIST, or GDPR.- Knowledge of network security protocols and technologies. Additional Information:- The candidate should have minimum 5 years of experience in Security Information and Event Management (SIEM).- This position is based in Pune.- A 15 years full time education is required. Qualification 15 years full time education

Posted 2 weeks ago

Apply

7.0 - 10.0 years

7 - 14 Lacs

Pune

Work from Office

Role & responsibilities Preferred candidate profile This role is for you if you have the below Educational qualifications •Graduation degree in any stream or equivalent / post-graduation degree/diploma, Certification in any IAM product would be an added advantage. Work experience •We are looking for a of IAM resource with 5+ years of experience for one of our engagements. The resource must work from our Pune/Bangalore office and willing to work on shifts The ideal candidate will: •At least 60 months of Privileged Access Management domain experience with expertise in Conjur as the primary skill and CyberArk administration as the secondary skill •A quick learner and adaptable to changing environments •Have strong analytical skills and communication skills •Build strong professional working relationships with client personnel •Clear understanding of IAM solution design and configuration •Working in rotational shifts supporting client environment. •Deliver timely and high-quality work diligently •Identify issues and opportunities, and communicate them to appropriate senior member Technical Skills Required: •60 months of experience in Conjur and CyberArk administration 1. Conjur Administration: •Serve as the primary administrator for Conjur, overseeing deployment, configuration, and maintenance of the Conjur environment. •Manage secrets within Conjur, ensuring their protection and proper access control according to organizational policies and requirements. •Monitor system performance, conduct regular health checks, and ensure high availability and reliability of Conjur services. •Troubleshoot and resolve complex issues related to Conjur infrastructure and performance. •Implement and enforce best practices for secrets management, policy management, and integration with other systems. 2. CyberArk Privilege Cloud Administration: •Act as a secondary administrator for CyberArk Privilege Cloud, contributing to the deployment, configuration, and maintenance of the solution. •Assist in managing privileged accounts, credential rotation, session management, and audit trails as per organizational policies. •Support monitoring and troubleshooting of CyberArk Privilege Cloud performance and issues, ensuring reliable and secure operations.

Posted 2 weeks ago

Apply

2.0 - 6.0 years

0 Lacs

telangana

On-site

As a highly skilled Azure Security Analyst at Global Power Components, you will be responsible for safeguarding our Azure cloud infrastructure. This role requires you to be onsite 100% of the time. Your main responsibilities will include monitoring and threat analysis, vulnerability assessments, policy development, compliance, incident response, continuous improvement, and training. In terms of monitoring and threat analysis, you will be expected to analyze security events, detect anomalies, respond to threats in real-time, generate detailed incident reports, and provide recommendations for mitigation. You will also need to continuously monitor Azure cloud environments using advanced security tools and dashboards. For vulnerability assessments, you will conduct regular security audits and risk assessments of Azure-based systems, identify vulnerabilities and gaps in the infrastructure, and implement corrective measures to ensure a secure environment. In terms of policy development, compliance, and incident response, you will develop, implement, and enforce Azure-specific security policies and best practices. You will lead the investigation and remediation of security incidents within Azure services and establish an incident response plan for Azure workloads. Continuous improvement and training are essential aspects of this role. You will need to stay updated on the latest Azure security tools, features, and threats, evaluate and recommend enhancements to the organization's Azure security architecture, and conduct security awareness training for employees on Azure-specific risks and preventive measures. To qualify for this position, you should have a Bachelor's degree in Computer Science, Information Technology, or a related field, along with 2+ years of experience in Azure security, cloud security, or a related field. A strong understanding of Azure Active Directory (Azure AD), Azure Security Center, and Azure Sentinel is required, as well as experience with identity and access management, including role-based access control (RBAC), and familiarity with vulnerability scanning tools and network security protocols. Global Power Components is an Equal Opportunity Employer committed to diversity and inclusion in the workplace.,

Posted 2 weeks ago

Apply

3.0 - 4.0 years

7 - 9 Lacs

Bengaluru

Work from Office

Experience in working with tools like CrowdStrike, Proofpoint, Proxy, SIEM like Google SecOps, Azure Sentinel and understanding of SOAR/MDR platforms (Demisto, Resilient etc.) Good knowledge of cyber kill chain, recent threats and MITRE ATT&CK techniques and tactics. Experience in Manual Threat Hunting, effective dashboard, views, reports, alarm understanding. Regularly review standard operating procedures. Helping client in mitigating critical incidents. Advanced Device Health Management, Threat Intel feeds knowledge. Good functional knowledge of cloud, linux, windows, EDR, sandbox, firewall, IDS/IPS, AV, WAF, AD, DNS etc. Must have any one of CEH/ECSA/CHFI/ACISE. Excellent communication and presentation skills. Open to work on 24x7 shifts from office. Preferred Skills: Azure Sentinel SIEM,SOAR Concept,Cyber Security,SOC Monitoring

Posted 2 weeks ago

Apply

15.0 - 20.0 years

13 - 17 Lacs

Hyderabad

Work from Office

Project Role : Security Architect Project Role Description : Define the cloud security framework and architecture, ensuring it meets the business requirements and performance goals. Document the implementation of the cloud security controls and transition to cloud security-managed operations. Must have skills : Security Information and Event Management (SIEM) Good to have skills : NAMinimum 7.5 year(s) of experience is required Educational Qualification : 15 years full time education Summary :As a Security Architect, you will define the cloud security framework and architecture, ensuring it meets the business requirements and performance goals. Your typical day will involve collaborating with various teams to assess security needs, documenting the implementation of cloud security controls, and transitioning to cloud security-managed operations. You will engage in discussions to align security strategies with organizational objectives, ensuring that all security measures are effectively integrated into the cloud environment. Your role will also require you to stay updated on the latest security trends and technologies to enhance the overall security posture of the organization. Roles & Responsibilities:1)Design and implement Microsoft Sentinel architecture, including data connectors, analytics rules, and workbooks.2)Integrate Sentinel with various data sources, including Azure services on-premises systems, and third-party security products.3)Develop and maintain data connectors, APIs and custom integrations.4)Configure and optimize incident response workflows, including automated response actions and playbooks.5)Collaborate with security operations teams to implement Sentinel-based security monitoring and incident response processes.6)Provide training and support to security teams on Sentinel features and functionality7)Continuously monitor and optimize Sentinel performance, scalability, and reliability8)Develop and maintain custom dashboards, reports, and workbooks to provide security insights and metrics. 9)Integrate Azure Logic Apps with Azure Sentinel to automate security workflows and incident response.10)Develop custom connectors for Logic apps to integrate with Azure Sentinel and other security tools. 11)Collaborate with security teams, developers, and operation teams to ensure seamless integration and deployment of Logic Apps with Azure Sentinel12)Configure and maintain Sentinel workspaces, including data connectors, analytics rules. 13)Optimize Sentinel workspace performance, scalability, and security.14)Develop and maintain reports and dashboards to provide visibility into security metrics and trends.15)Strong knowledge of KQL and experience writing complex queries. Proficiency in Microsoft Sentinel, Azure Security Center and Azure Monitor- Experience with data analytics, machine learning, and threat intelligence. Expected to be an SME.- Collaborate and manage the team to perform.- Responsible for team decisions.- Engage with multiple teams and contribute on key decisions.- Provide solutions to problems for their immediate team and across multiple teams.- Develop and maintain comprehensive documentation of security architecture and frameworks.- Conduct regular assessments and audits to ensure compliance with security policies and standards. Professional & Technical Skills: - Must To Have Skills: Proficiency in Sentinel SIEM & KQL query.- Strong understanding of cloud security principles and best practices.- Experience with security incident response and threat management.- Familiarity with regulatory compliance frameworks such as GDPR, HIPAA, or PCI-DSS.- Knowledge of network security protocols and technologies. Additional Information:- The candidate should have minimum 7.5 years of experience in Security Information and Event Management (SIEM).- This position is based at our Hyderabad office.- A 15 years full time education is required. Qualification 15 years full time education

Posted 2 weeks ago

Apply

15.0 - 20.0 years

13 - 17 Lacs

Bengaluru

Work from Office

Project Role : Security Architect Project Role Description : Define the cloud security framework and architecture, ensuring it meets the business requirements and performance goals. Document the implementation of the cloud security controls and transition to cloud security-managed operations. Must have skills : Security Information and Event Management (SIEM) Good to have skills : NAMinimum 7.5 year(s) of experience is required Educational Qualification : 15 years full time education Summary :As a Security Architect, you will define the cloud security framework and architecture, ensuring it meets the business requirements and performance goals. Your typical day will involve collaborating with various teams to assess security needs, documenting the implementation of cloud security controls, and transitioning to cloud security-managed operations. You will engage in discussions to refine security strategies and ensure compliance with industry standards, all while adapting to the evolving landscape of cloud technologies and security threats. Roles & Responsibilities:1)Design and implement Microsoft Sentinel architecture, including data connectors, analytics rules, and workbooks.2)Integrate Sentinel with various data sources, including Azure services on-premises systems, and third-party security products.3)Develop and maintain data connectors, APIs and custom integrations.4)Configure and optimize incident response workflows, including automated response actions and playbooks.5)Collaborate with security operations teams to implement Sentinel-based security monitoring and incident response processes.6)Provide training and support to security teams on Sentinel features and functionality7)Continuously monitor and optimize Sentinel performance, scalability, and reliability8)Develop and maintain custom dashboards, reports, and workbooks to provide security insights and metrics. 9)Integrate Azure Logic Apps with Azure Sentinel to automate security workflows and incident response.10)Develop custom connectors for Logic apps to integrate with Azure Sentinel and other security tools. 11)Collaborate with security teams, developers, and operation teams to ensure seamless integration and deployment of Logic Apps with Azure Sentinel12)Configure and maintain Sentinel workspaces, including data connectors, analytics rules. 13)Optimize Sentinel workspace performance, scalability, and security.14)Develop and maintain reports and dashboards to provide visibility into security metrics and trends.15)Strong knowledge of KQL and experience writing complex queries. Proficiency in Microsoft Sentinel, Azure Security Center and Azure Monitor- Experience with data analytics, machine learning, and threat intelligence. Expected to be an SME.- Collaborate and manage the team to perform.- Responsible for team decisions.- Engage with multiple teams and contribute on key decisions.- Provide solutions to problems for their immediate team and across multiple teams.- Develop and maintain comprehensive documentation of security architecture and frameworks.- Conduct regular assessments and audits to ensure compliance with security policies and standards. Professional & Technical Skills: - Must To Have Skills: Proficiency in Sentinel SIEM & KQL query.- Strong understanding of cloud security principles and best practices.- Experience with security incident response and threat management.- Familiarity with regulatory compliance frameworks such as GDPR, HIPAA, or PCI-DSS.- Knowledge of network security protocols and technologies. Additional Information:- The candidate should have minimum 7.5 years of experience in Security Information and Event Management (SIEM).- This position is based at our Bengaluru office.- A 15 years full time education is required. Qualification 15 years full time education

Posted 2 weeks ago

Apply

6.0 - 9.0 years

8 - 18 Lacs

Bengaluru

Work from Office

Role & responsibilities About the Role: We are seeking a skilled and proactive Vulnerability & Patch Management Engineer to join our offshore cybersecurity team supporting Rocket EMS. You will lead the end-to-end vulnerability management and patching program across global infrastructure. This is a strategic, hands-on role requiring expert knowledge in tools like TenableOne, Automox, CrowdStrike Falcon, and Azure security solutions. Key Responsibilities: Manage enterprise-wide vulnerability lifecycle using TenableOne Rapid response to zero-day threats with scripting via CrowdStrike RTR Execute patch deployment using Automox across OS and cloud workloads Develop PowerShell/Python scripts for automation and rollback procedures Perform Azure Sentinel threat hunting using KQL Lead weekly vulnerability/patch management meetings and prepare executive dashboards Collaborate with global IT, SecOps, DevOps, and Engineering teams Required Skills: 5+ years in enterprise patch and vulnerability management Hands-on experience with TenableOne , Automox , CrowdStrike Falcon Complete , Azure Sentinel , and KQL Proficient in PowerShell and/or Python Strong understanding of Azure Cloud security posture and incident response Preferred: Knowledge of Infrastructure-as-Code (Terraform/ARM) Experience in regulated industries or manufacturing Additional certifications: Azure Security Engineer, CrowdStrike Certified

Posted 2 weeks ago

Apply
Page 1 of 4
cta

Start Your Job Search Today

Browse through a variety of job opportunities tailored to your skills and preferences. Filter by location, experience, salary, and more to find your perfect fit.

Job Application AI Bot

Job Application AI Bot

Apply to 20+ Portals in one click

Download Now

Download the Mobile App

Instantly access job listings, apply easily, and track applications.

Featured Companies