Manage and maintain SIEM infrastructure, focusing on threat detection and incident response within a Microsoft ecosystem. Responsibilities include monitoring alerts, developing detection rules, and mentoring junior analysts.
Job Summary: We are seeking a skilled and experienced SIEM Platform Engineer specializing in Microsoft Defender for Endpoint (MDE) at Level 2 and above. The ideal candidate will be responsible for implementing, managing, and maintaining the SIEM environment, focusing on threat detection, incident response, and system optimization within a Microsoft ecosystem.
Key Responsibilities:
- Manage and maintain the SIEM infrastructure, particularly MDE, ensuring optimal performance and uptime.
- Monitor and analyze security alerts and events from various data sources within the Microsoft ecosystem.
- Perform advanced threat hunting, detection, and analysis using MDE and related SIEM tools.
- Develop, tune, and optimize detection rules, dashboards, and reports.
- Investigate and respond to security incidents, conducting root cause analysis and implementing mitigations.
- Collaborate with IT and Security teams to integrate new data sources and refine monitoring strategies.
- Conduct system upgrades, patch management, and version control to maintain security tool effectiveness.
- Document incidents, procedures, and technical configurations.
- Train and mentor junior security analysts in leveraging SIEM and MDE effectively.
Qualifications:
- Bachelor’s degree in computer science, Information Security, or related field (or equivalent experience).
- Minimum of 3-5 years of experience working with SIEM platforms, specifically Microsoft Defender for Endpoint (Level 2 and above).
- Strong understanding of threat detection, incident response, and security operations.
- Proficiency in scripting (e.g., PowerShell, Python) for automation and log parsing.
- Hands-on experience with security monitoring, event correlation, and log management.
- Excellent problem-solving skills and attention to detail.
- Relevant certifications (e.g., Microsoft Certified: Security Operations Analyst, CompTIA Security+, CISSP) are a plus.
Key Competencies:
- Analytical thinking and threat analysis
- Strong communication and collaboration skills
- Adaptability and continuous learning
- Proactive problem-solving
Top Skills
Microsoft Defender For Endpoint
Powershell
Python
SIEM
Similar Jobs
Artificial Intelligence • Cloud • HR Tech • Information Technology • Productivity • Software • Automation
The role involves managing technical delivery of ServiceNow solutions, optimizing IT asset management processes, mentoring colleagues, and engaging with stakeholders to drive customer satisfaction and adoption.
Top Skills:
AnsibleAWSAzureChefHTTPJavaScriptOauthPowershellPuppetPythonRestServicenowSnmpSoapSsoTcpVMwareXML
Artificial Intelligence • Software • Analytics • Cybersecurity
The Senior Technology Consultant leads IAM migration projects, provides consultancy on Microsoft identity solutions, and ensures effective governance and security practices. They mentor teams and manage multiple projects while collaborating with clients to deliver tailored solutions.
Top Skills:
Conditional Access PoliciesIamIgaIntuneMicrosoft DefenderMicrosoft Entra IdMicrosoft PurviewOn-Premises AdPowershellScim
Artificial Intelligence • Software • Analytics • Cybersecurity
The Senior Technology Consultant is responsible for managing SOAR incidents, creating playbooks, mentoring engineers, and improving threat detection through automation and analysis.
Top Skills:
APIsPythonSoar
What you need to know about the Chennai Tech Scene
To locals, it's no secret that South India is leading the charge in big data infrastructure. While the environmental impact of data centers has long been a concern, emerging hubs like Chennai are favored by companies seeking ready access to renewable energy resources, which provide more sustainable and cost-effective solutions. As a result, Chennai, along with neighboring Bengaluru and Hyderabad, is poised for significant growth, with a projected 65 percent increase in data center capacity over the next decade.

