Lead Assistant Manager-SIEM

EXL

Dadri

Hybrid

INR 1,500,000 - 2,100,000

Full time

6 days ago
Be an early applicant
Application generator

Turn this role into an interview — a resume and cover letter built around what this employer wants.

Get past ATS filters

Job summary

EXL in India seeks an experienced Microsoft Sentinel SIEM Administrator to manage and optimize the Microsoft Sentinel platform, develop detection use cases, and automate security workflows.

You will build advanced KQL queries, implement UEBA, support threat hunting and incident response, and collaborate with SOC teams to strengthen monitoring and compliance.

Qualifications

  • Experience managing and optimizing Microsoft Sentinel SIEM platforms.
  • Ability to develop detection use cases and analytics rules for threat detection.
  • Proficiency in writing advanced KQL queries for threat reporting and analytics.
  • Experience implementing UEBA to identify anomalous and malicious behavior.
  • Automation of security processes using PowerShell, Python, Logic Apps and Playbooks.

Responsibilities

  • Manage, configure, and optimize Microsoft Sentinel SIEM platform.
  • Develop and maintain security use cases, analytics rules, detection content, and alerting mechanisms.
  • Perform threat hunting, incident investigation, and root cause analysis using Microsoft Sentinel.
  • Design, write, and optimize KQL queries for detection and reporting.
  • Implement UEBA to identify abnormal behavior and security risks.
  • Integrate and manage log sources from cloud, network, endpoint, and on-prem environments.
  • Build and maintain Sentinel Workbooks, Dashboards, and Reports for monitoring and compliance.
  • Develop automation using Logic Apps, Playbooks, PowerShell, and Python.
  • Monitor SIEM performance, data ingestion, retention, and platform health.
  • Collaborate with SOC teams for alert triage and incident response.

Skills

Microsoft Sentinel
SIEM
KQL
UEBA
PowerShell
Python
Logic Apps
Playbooks
Dashboards

Job description

We are seeking an experienced Microsoft Sentinel SIEM Administrator The ideal candidate will be responsible for managing and optimizing Microsoft Sentinel, developing detection use cases, creating advanced KQL queries, implementing UEBA capabilities, automating security processes, and supporting threat hunting and incident response activities. This role requires strong expertise in SIEM content development, security analytics, automation, and proactive threat detection.


Key Skills & Responsibilities
  • Manage, configure, and optimize Microsoft Sentinel SIEM platform.
  • Develop and maintain security use cases, analytics rules, detection content, and alerting mechanisms.
  • Perform threat hunting, incident investigation, and root cause analysis using Microsoft Sentinel.
  • Design, write, and optimize KQL (Kusto Query Language) queries for threat detection, reporting, and security analytics.
  • Implement and fine-tune UEBA (User & Entity Behavior Analytics) to identify anomalous and malicious behavior.
  • Integrate and manage log sources from cloud, network, endpoint, and on-premises environments.
  • Build and maintain Sentinel Workbooks, Dashboards, and Reports for monitoring and compliance requirements.
  • Develop and implement automation using Logic Apps, Playbooks PowerShell, and Python.
  • Monitor SIEM performance, data ingestion, retention policies, and platform health.
  • Collaborate with SOC teams for alert triage, incident response, and continuous improvement of security monitoring capabilities.
  • Analyze security trends and provide actionable insights to enhance the organization's security posture.
  • Support regulatory and compliance requirements through effective logging, monitoring, and reporting.

Get your free, confidential resume review.
or drag and drop your file here.
Similar jobs

Similar jobs worth comparing

Technical Consultant – SIEM, Sentinel
Technical Consultant – SIEM, Sentinel

Jobtailor • Bengaluru

On-site
INR 1,800,000 - 3,600,000
Cloud Operations - Senior Specialist-Cyber Security-Engineering
Cloud Operations - Senior Specialist-Cyber Security-Engineering

EXL • Dadri

On-site
INR 1,200,000 - 1,800,000
Microsoft Sentinel Architect
Microsoft Sentinel Architect

HCLTech • Dadri

On-site
INR 4,000,000 - 7,000,000
Senior SOC (Security Operations Center) Analyst
Senior SOC (Security Operations Center) Analyst

Orcapod Consulting Services • Mumbai

Hybrid
INR 1,200,000 - 1,800,000
Siem Detection Engineer - Cumulus Systems Pvt. Ltd. (Maharashtra)
Siem Detection Engineer - Cumulus Systems Pvt. Ltd. (Maharashtra)

Proterial • India

On-site
INR 1,800,000 - 3,200,000
Siem Engineer
Siem Engineer

Computacenter • Bengaluru

On-site
INR 4,000,000 - 7,000,000
Azure Sentinel
Azure Sentinel

Cloudxtreme • Hyderabad, Chennai District, Bengaluru

On-site
INR 4,500,000 - 6,500,000
Platform Analyst III - Cyber Security
Platform Analyst III - Cyber Security

V2 Solutions • Bengaluru

On-site
INR 1,800,000 - 3,000,000
SIEM & Detection Engineering Specialist
SIEM & Detection Engineering Specialist

Lonvec Technologies Private Limited • Bengaluru

Hybrid
INR 1,800,000 - 2,600,000
Cloud Security Engineer
Cloud Security Engineer

ERM Placement Services • Kolkata District

On-site
INR 900,000 - 1,700,000