Back to jobs
Siem/sentinel (Rm 2119) (Bengaluru)
Source rightBengaluru, Karnataka, IndiaAdded 53m ago
Security Analyst
Full-time
Apply on company siteCraft my tailored resume free
Free to start · No card · 5 credits the moment you sign up
Job description
Must have:
SIEM/Sentinel
- strong experience in implementation of MS Sentinel, log source integration, logic apps, use case management
- Expert knowledge in SOC Implementation Services, Incident response, and Microsoft Defender for Cloud.
- Solid knowledge in SOAR EUBA.
- Working knowledge of ITSM tools, ServiceNow preferred.
- Ability to onboard new log sources on Sentinel and troubleshoot syslog issues.
- Architect and design solutions to meet functional security requirements in Azure Sentinel.
- Develop a deep understanding of how customers use the Azure Sentinel platform and security across Azure and M365 workloads.
- Create and review Azure Sentinel architecture and solution design artifacts.
- Setup and configure Azure Sentinel, Azure Security Center, Microsoft Defender, and M365 Security.
- Perform security analyst operations within Azure Sentinel, including incident response and remediation.
- Drive strategic and complex projects with critical dependencies.
- Engage directly with customers at the CIO/CTO level, support executive briefings and innovation partnerships.
- Build and deploy EM+S solutions to meet client needs.
- Develop, update, and manage PowerShell scripting for automation.
- Coach and mentor team members on client interaction and work delivery.
- Knowledge of security frameworks such as ISO/IEC 27001, NIST 800-53, OWASP, ISM.
- Strong understanding of Azure security services, including Azure Security Center, Azure Sentinel, Azure Active Directory, Azure Firewall, Azure Virtual Networks, and Azure Key Vault.
- Configure and customize Microsoft Defender ATP, M365 ATP, or Azure Cloud App Security.
- Ability to migrate workloads to the cloud and optimize resource costs.
- Experience in designing and implementing security controls and solutions in Azure environments.
- Collaborate with security teams to gather requirements and translate them into effective Sentinel configurations.
- Configure data connectors to ingest security data from various so .