
Search by job, company or skills
Job Position: Senior SIEM Engineer – LogRhythm
Location: Gurgaon
Experience: 7+ to 10+ Years
Key Responsibilities
* Install, configure, administer, and maintain LogRhythm SIEM components and infrastructure.
* Manage onboarding and parsing of log sources from firewalls, servers, applications, cloud platforms, EDR, IDS/IPS, and network devices.
* Develop, fine-tune, and optimize AI Engine rules, correlation rules, alarms, and custom security use cases.
* Monitor security events and investigate suspicious or malicious activities identified through SIEM monitoring.
* Perform SIEM health checks, troubleshooting, performance tuning, and high-EPS optimization.
* Integrate LogRhythm with third-party security tools and automate workflows using APIs, Python, PowerShell, or Bash scripting.
* Support Security Operations Center (SOC) teams during incident investigations and root cause analysis.
* Create and maintain dashboards, reports, and compliance monitoring solutions for operational and executive stakeholders.
* Ensure SIEM operations comply with security standards and frameworks such as MITRE ATT&CK, NIST, ISO 27001, PCI-DSS, and GDPR.
* Plan and execute SIEM upgrades, patching, backup, and maintenance activities.
Required Skills & Qualifications
* Bachelor's degree in Computer Science, Cybersecurity, Information Technology, or equivalent practical experience.
* 5+ years of hands-on experience with LogRhythm SIEM administration and engineering.
* Strong understanding of SIEM architecture, event correlation, log management, and threat detection.
* Experience working in SOC environments and incident response operations.
* Hands-on experience with log onboarding, parser troubleshooting, and use case development.
* Knowledge of security technologies including Firewalls, IDS/IPS, EDR, DLP, Antivirus, and Network Security solutions.
* Familiarity with MITRE ATT&CK, NIST, ISO 27001, PCI-DSS, and cybersecurity best practices.
* Scripting and automation knowledge using Python, PowerShell, or Bash.
* Excellent troubleshooting, analytical, and communication skills.
Preferred Certifications
* LogRhythm SIEM Certification
* CISSP
* CEH
* CISM
* CompTIA Security+
Job ID: 147538247
Skills:
API security, cloud security, network security, Networking, intrusion detection systems, privileged access management systems, information security technologies, data streaming platforms, cloud and infrastructure architecture, security information event management platforms, endpoint security systems
Skills:
API security, cloud security, network security, Networking, intrusion detection systems, privileged access management systems, information security technologies, data streaming platforms, cloud and infrastructure architecture, security information event management platforms, endpoint security systems
Skills:
PowerShell, Logstash, Bash, Gcp, Elasticsearch, Azure, Python, AWS, Elastic Agents, regular expressions, Elastic SIEM, Filebeat
Skills:
API security, cloud security, network security, Networking, intrusion detection systems, privileged access management systems, information security technologies, cloud and infrastructure architecture, data streaming platforms, security information event management platforms, endpoint security systems
Skills:
NIST Framework, Firewalls, IEC 62443 standards, Access Controls, Engineering, Network Segmentation, Intrusion Detection Systems
We don’t charge any money for job offers