Summary
✨ AI‑Generated
Join an enterprise security engineering function focused on SIEM, SOC, threat detection, and security automation. You will onboard telemetry, optimize security analytics platforms, develop detection rules and alerts, design SOAR workflows, and continuously improve monitoring and incident-response capabilities.
Highlights
Design and continuously improve security monitoring and threat detection capabilities, optimize SIEM operations, develop detection use cases, and automate security workflows across a broad enterprise environment.
Description
Join HCLTech!
HCLTech is a global tech company with 225,000+ HCLTechies across 60 countries, offering digital, engineering, and cloud solutions.
Serving major industries like Financial Services, Manufacturing, Healthcare, Telecom, and more, its 12-month revenue ending September 2024 was $13 billion.
Key responsibilities
Identify critical applications and telemetry sources for SIEM onboarding.Optimise Microsoft Sentinel ingestion and cost drivers while preserving detection value.Develop or tune threat analytics and detection use cases.Plan automation, sandboxing and SOAR workflows with ServiceNow integration touchpoints.Support breach attack simulation POC and triage process improvement.Design, implement, and continuously improve security monitoring and threat detection capabilities across the organization.Onboarding, configuration, and optimization of Microsoft Sentinel and other SIEM platforms.Develop and maintain detection rules, use cases, alerts, dashboards, and security monitoring processes.Build and enhance SOAR playbooks to automate repetitive security operations and incident response activities.Perform threat hunting, incident investigations, and root cause analysis to identify and address security threats.Integrate security tools, cloud platforms, endpoints, and network devices into the SIEM ecosystem.Work closely with SOC analysts, security teams, and technology stakeholders to improve visibility, detection coverage, and response effectiveness.Provide recommendations to strengthen the organization's overall security posture and monitoring maturity.
Required skills and experience
Microsoft Sentinel and SIEM onboardingDetection engineering and analytics tuningSOAR playbooks and automationThreat simulation and sandboxingSOC process and incident workflow integrationExperience in Security Operations, SIEM Engineering, Threat Detection, or Cyber Security Monitoring.Strong hands-on experience with Microsoft Sentinel, including log onboarding, analytics rules, workbooks, hunting queries, and incident management.Experience working with SIEM platforms such as Microsoft Sentinel, Splunk, IBM QRadar, ArcSight, or similar solutions.Good understanding of security operations, security monitoring, incident response, and threat hunting practices.Experience developing and tuning detection use cases to reduce false positives and improve threat visibility.Hands-on experience with SOAR platforms and security automation workflows.Strong knowledge of log analysis, event correlation, and security investigations across cloud, endpoint, identity, and network environments.Familiarity with the MITRE ATT&CK Framework, threat intelligence integration, and detection engineering concepts.Experience with Microsoft security technologies such as Microsoft Defender XDR, Defender for Endpoint, Defender for Cloud, and Entra ID is highly desirable.Strong analytical, troubleshooting, and stakeholder communication skills.Experience supporting or leading SIEM/SOC transformation, optimization, or modernization initiatives is preferred.
Join a multinational company offering endless opportunities in a dynamic, multicultural environment.
Apply now and submit your CV!
Why become an HCLTechie?
At HCLTech, we offer diverse opportunities to learn, innovate, and fast-track your career.
You'll work with global clients and industry-leading experts, gaining access to mentorship and rewarding growth paths.
Our people-friendly work culture fosters flexibility, leadership, and personal and professional growth, giving you the freedom to explore, experiment, and thrive.
We believe in doing things differently, offering hands-on training and coaching, and celebrating the passion and commitment of our teams.
Discover the benefits of joining HCLTech:
Comprehensive benefits package.Global career opportunities and mobility.Flexible work environment supporting work-life balance.Exciting projects and upskilling opportunities to shape your role.Total wellbeing focus: Beyond professional growth, you’ll be able to collaborate with like- minded colleagues to drive meaningful impact through initiatives like our CSR Council, Diversity Council, Women Connect, and many more.