Security Delivery Lead

7 - 11 years

12 - 16 Lacs

Posted:19 hours ago| Platform: Naukri logo

Apply

Work Mode

Work from Office

Job Type

Full Time

Job Description


 About The Role  

Project Role :
Security Delivery Lead

Project Role Description :
Leads the implementation and delivery of Security Services projects, leveraging our global delivery capability (method, tools, training, assets).
Must have skills :Security Information and Event Management (SIEM)

Good to have skills :
NA
Minimum 5 year(s) of experience is required

Educational Qualification :
15 years full time education
Summary:The SOAR/SIEM Engineer will be responsible for designing, implementing, optimizing, and maintaining security monitoring and automation capabilities across the organization. The role requires deep technical expertise in SIEM architecture, log onboarding, use case creation, and SOAR automation workflows to improve the efficiency and effectiveness of the SOC.
Roles & Responsibilities:
  • Design, deploy, configure, and maintain SIEM platforms (e.g., Splunk, Tines)
  • Onboard and normalize log sources across applications, infrastructure, cloud, network, and security tools.
  • Develop advanced correlation rules, detections, dashboards, threat models, and reports.
  • Perform SIEM health monitoring, performance tuning, capacity planning, and patch/upgrade activities.
  • Ensure data quality, parsing accuracy, and optimal log ingestion strategies.
  • Design and build automation playbooks using SOAR platforms Tines.
  • Integrate SOAR with SIEM, EDR, NDR, threat intel platforms, ticketing tools, and email gateways.
  • Automate repetitive SOC tasks such as enrichment, triage, containment, notifications, and ticketing.
  • Maintain and optimize playbooks for reliability, performance, and security.
  • Conduct testing, versioning, and documentation for all automation workflows.
  • Translate threat intelligence, MITRE ATT&CK mapping, and risk scenarios into actionable use cases.
  • Design detection logic leveraging logs, network data, endpoint telemetry, and user behavior analytics.
  • Conduct periodic detection tuning and false positive reduction.
  • Support threat hunting and purple team exercises by validating detection coverage.
  • Work closely with SOC Analysts to understand requirements and improve detection and response processes.
  • Assist during incident investigations with log analysis and technical guidance.
  • Provide escalation support for SIEM/SOAR-related issues.
  • Create and maintain technical documentation, SOPs, playbooks, and architecture diagrams.
  • Ensure compliance with internal and external cybersecurity standards and audit requirements.
  • Provide regular reports on engineering activities, automation outcomes, and detection metrics.
    Professional & Technical Skills:
  • Hands-on experience with Splunk (SIEM) and Tines (SOAR)
    Must To Have Skills:
    Proficiency in scripting languages (Python, PowerShell, JavaScript, Bash) for automation.
  • Strong understanding of security technologies:firewalls, proxies, EDR, NDR, IAM, cloud security tools.
  • Experience with incident response and threat management processes.
  • Familiarity with security monitoring tools and technologies.
  • Ability to analyze security events and provide actionable insights.
  • Knowledge of cloud environments (AWS, Azure, GCP) and their logging frameworks.
  • Knowledge of log formats (CEF, JSON, Syslog), parsing, regex, and data normalization.
  • Familiarity with MITRE ATT&CK, cyber kill chain, and detection engineering frameworks.
  • 24x7 Rotaional Shift
  • Excellent communication skills to collaborate with SOC, IT, Cloud, and application teams.
  • Ability to work independently on engineering tasks and solution development.
  • Strong documentation and process discipline.
    Additional Information:
  • The candidate should have minimum 8 years of experience in Security Information and Event Management (SIEM).
  • This position is based at our Bengaluru office.
  • A 15 years full time education is required.
  • Bachelor’s degree in Computer Science, IT, Cybersecurity, or related field.
  • Splunk Architect / Power User
  • Microsoft Sentinel or Azure Security certifications
     Qualification 15 years full time education
  • Mock Interview

    Practice Video Interview with JobPe AI

    Start Python Interview
    cta

    Start Your Job Search Today

    Browse through a variety of job opportunities tailored to your skills and preferences. Filter by location, experience, salary, and more to find your perfect fit.

    Job Application AI Bot

    Job Application AI Bot

    Apply to 20+ Portals in one click

    Download Now

    Download the Mobile App

    Instantly access job listings, apply easily, and track applications.

    coding practice

    Enhance Your Python Skills

    Practice Python coding challenges to boost your skills

    Start Practicing Python Now
    Accenture logo
    Accenture

    Professional Services

    Dublin

    RecommendedJobs for You