Description
About the role
The role is part of the Platform Engineering team and focuses on security monitoring and detection engineering. You will work with SIEM platforms, onboard diverse log sources, develop and tune detection rules, and assist in threat hunting to protect the organisation’s infrastructure.
Responsibilities
- Perform day‑to‑day SIEM operations, including monitoring, health checks and troubleshooting.
- Configure and onboard log sources such as Windows, Linux, firewalls, EDR, WAF, cloud services and VPNs.
- Resolve issues related to missing logs, parsing errors, connectivity problems and ingestion delays.
- Develop and maintain SIEM correlation rules and detection use cases based on emerging threats.
- Analyze false positives and fine‑tune detection rules to reduce alert noise.
- Map detection use cases to MITRE ATT&CK tactics, techniques and sub‑techniques.
- Conduct basic threat‑hunting activities using SIEM queries.
- Analyse security events from endpoints, networks, authentication systems and cloud environments.
- Write queries in KQL, SPL or LogRhythm and automate tasks with Python, PowerShell or Bash.
- Document detection gaps, new use‑cases and maintain SIEM documentation.
Eligibility
- Fresh graduates from the 2023, 2024, 2025 or 2026 batches.
- No prior professional experience required (0‑3 years acceptable).
Skills
- Python scripting
- PowerShell scripting
- MITRE ATT&CK framework
- SIEM platforms (e.g., Splunk)
- Threat hunting techniques
- KQL / SPL query languages
Skills
· 7 totalSimilar roles
JPMorgan Chase
2h ago
Liquidity Risk Analyst
Hexaware
2h ago
Customer Service Voice Team Member
Citi
2h ago
Fraud Operations Specialist
TransUnion
11h ago
Associate Data Engineer
IQVIA
12h ago
Software Development Engineer 1
Bureau
12h ago
Data Engineer