Search by job, company or skills

Senior Security Engineer Microsoft Sentinel / SIEM

Senior Security Engineer Microsoft Sentinel / SIEM

hireflex
8-10 Years
Not Disclosed
  • Posted 2 hours ago
  • Be among the first 10 applicants

Job Description

We're Hiring: Senior Azure Security Engineer – Microsoft Sentinel / SIEM

Location: Bengaluru

We are looking for a Senior Azure Security Engineer with strong hands-on experience in Microsoft Sentinel, Azure Security, SIEM integrations, telemetry engineering, KQL, and detection engineering.

The role will focus on enterprise-scale SIEM onboarding, log integration design, telemetry pipeline engineering, security architecture validation, and operational troubleshooting.

Experience Required

  • 8+ years of overall Security Engineering experience
  • 6+ years of hands-on experience with enterprise SIEM platforms
  • Strong hands-on experience with Microsoft Sentinel
  • Strong Microsoft Azure Security experience
  • Advanced KQL and detection engineering experience
  • Strong experience in SIEM integration design and log onboarding
  • Experience with telemetry and log engineering at enterprise scale
  • Experience conducting security architecture and integration reviews
  • Experience mentoring junior engineers

Key Responsibilities

  • Qualify and assess new SIEM onboarding requirements and integrations
  • Review architecture, authentication, security controls, and connectivity requirements
  • Design and review log onboarding patterns and telemetry pipelines
  • Develop and maintain Data Collection Rules (DCRs), parsers, and transformations
  • Support ASIM normalization and security telemetry schema design
  • Estimate telemetry volumes and support retention and cost assessments
  • Develop and optimize KQL queries and detection use cases
  • Troubleshoot log ingestion, connectivity, authentication, and data-quality issues
  • Support onboarding of applications, infrastructure, cloud platforms, and security tools into the SIEM
  • Develop reusable onboarding standards, engineering patterns, and accelerators
  • Collaborate with Security Engineering, Threat Monitoring, Infrastructure, Technology, and platform teams
  • Provide technical guidance and mentoring to junior engineers

Required Technical Skills

  • Microsoft Azure: Entra ID, Networking, Log Analytics, Azure Monitor, Key Vault, RBAC
  • Microsoft Sentinel
  • SIEM platforms such as Splunk, QRadar, or Elastic
  • Log ingestion technologies including Azure Monitor Agent (AMA), Syslog, Logstash, Fluent Bit, and Beats
  • Data Collection Rules (DCRs)
  • KQL / Kusto Query Language
  • ASIM and SIEM data normalization
  • Detection engineering
  • Cloud Security Engineering
  • Linux and container platforms
  • Git and CI/CD practices
  • Telemetry and log pipeline engineering

Preferred Profile:

  • Strong experience delivering enterprise SIEM onboarding or migration programmes
  • Experience designing scalable and cost-efficient telemetry architectures
  • Strong understanding of security monitoring and detection engineering
  • Ability to translate business and security requirements into technical onboarding patterns
  • Strong troubleshooting and stakeholder-management skills
  • Experience working across Security Engineering, SOC, Infrastructure, and application teams

More Info

Job Type:
Industry:
Employment Type:

Key Skills

Detection engineering

Linux and container platforms

Cloud Security Engineering

KQL

Microsoft Sentinel

ASIM and SIEM data normalization

Telemetry and log pipeline engineering

About Company

Similar Jobs

10-12 yrs
Bengaluru, India
Skills:
Siem, Sentinel One, Microsoft Defender, Defender XDR, Crowdstrike Falcon, Microsoft Sentinel, Crowdstrike, Google Chronicle, Next Gen Splunk, EDR