SIEM MS Sentinel Administrator

6 years

0 Lacs

Posted:1 week ago| Platform: Linkedin logo

Apply

Work Mode

On-site

Job Type

Full Time

Job Description

Job Type :

Full-time, Payroll

Location :

Onsite - Bengaluru / Noida

Duration :

Long-term

Position Overview

We are seeking an experienced SIEM MS Sentinel Administrator with 6+ years of experience in security monitoring, SIEM administration, and Microsoft Sentinel. The ideal candidate will have hands-on expertise in managing Sentinel environments, fine-tuning alerts, troubleshooting host non-reporting, and ensuring overall SIEM health and Responsibilities :
  • Monitor host reporting status and raise support tickets for non-reporting hosts.
  • Troubleshoot and resolve host non-reporting issues; perform remediation for non-compliance Sentinel agents.
  • Collaborate with Cybersecurity teams to manage SIEM operations and incident response.
  • Fine-tune deployed use cases to reduce false-positive alerts.
  • Optimize log ingestion and perform log trimming at indexing to reduce daily Sentinel license utilization.
  • Generate weekly reports as per client-defined formats.
  • Monitor, respond, and resolve Sentinel-related tickets in a timely manner.
  • Perform upgrades for Sentinel components including indexers, search heads, universal forwarders, and heavy forwarders.
  • Manage Indexer Clustering and Search Head Clustering environments.
  • Raise CRQ (Change Requests) for critical activities and maintain proper change management records.
  • Perform regular health checks, backup checks, and validations of Sentinel components.
  • Provide support during patching activities, including readiness to work off-hours (up to 3 times per month).
  • Develop and maintain Standard Operating Procedures (SOPs), SMTDs, KB articles, and best practices documentation.
  • Ensure compliance with security standards and assist in audits where Skills :
  • Security Information and Event Management (SIEM) : Minimum 3 years experience.
  • Microsoft Azure Sentinel : Minimum 2 years hands-on experience.
  • Strong knowledge of Indexer Clustering and Search Head Clustering.
  • Experience in Cybersecurity operations and SIEM tools.
  • Proficiency in troubleshooting and resolving Sentinel component and agent Skills :
  • Experience in log optimization and license utilization management.
  • Familiarity with incident management, ticketing systems, and reporting frameworks.
  • Strong communication and documentation skills.
  • Ability to work independently and in collaboration with cross-functional :
  • System and Network Administrators (Hardware Engineering)
  • Information Security Analyst (Software and Web Development)
  • Support Specialist (Customer Service and IT Operations)
  • Administrator (Business Owner)
(ref:hirist.tech)

Mock Interview

Practice Video Interview with JobPe AI

Start Job-Specific Interview
cta

Start Your Job Search Today

Browse through a variety of job opportunities tailored to your skills and preferences. Filter by location, experience, salary, and more to find your perfect fit.

Job Application AI Bot

Job Application AI Bot

Apply to 20+ Portals in one click

Download Now

Download the Mobile App

Instantly access job listings, apply easily, and track applications.

coding practice

Enhance Your Skills

Practice coding challenges to boost your skills

Start Practicing Now

RecommendedJobs for You