Microsoft Sentinel Architect

HCLTech

Dadri

On-site

INR 4,000,000 - 7,000,000

Full time

24 hours ago
Be an early applicant

Get more replies from employers

Send a job-specific resume in minutes.

Job summary

HCLTech in India is seeking an experienced Microsoft Sentinel Architect to design, implement, and manage enterprise-scale cloud security monitoring solutions using Microsoft Sentinel and Splunk.

The ideal candidate will lead security architecture efforts, develop analytics rules, playbooks, and automation workflows, and coordinate with global security operations to strengthen cybersecurity posture across Linux/Windows environments.

Qualifications

  • 10+ years of experience in Cybersecurity, SIEM, and Security Operations.
  • Strong hands-on experience with Microsoft Sentinel Architecture and Engineering.
  • Extensive experience administering and supporting Splunk Enterprise environments.
  • Experience with Azure Security Services and Microsoft Security Stack.
  • Strong understanding of SIEM, SOAR, Incident Response, and Threat Hunting concepts.
  • Experience integrating diverse log sources and security technologies.
  • Demonstrated knowledge of ITIL principles and service management processes.
  • Experience in scripting and automation using PowerShell, Python, or similar technologies.
  • Strong troubleshooting and problem-solving skills.
  • Excellent communication and stakeholder management skills.

Responsibilities

  • Design and develop security architectures leveraging Microsoft Sentinel to meet business and compliance requirements.
  • Implement, configure, and optimize Microsoft Sentinel for security monitoring and threat detection.
  • Develop and maintain analytics rules, workbooks, playbooks, and automation workflows.
  • Integrate multiple log sources and security tools into Microsoft Sentinel.
  • Create security use cases and detection strategies to improve SOC effectiveness.
  • Support incident investigation, threat hunting, and response activities.
  • Administer and maintain Splunk infrastructure including Search Heads, Indexers, and Universal Forwarders.
  • Troubleshoot Splunk server, deployment, and forwarder-related issues.
  • Manage data onboarding, index administration, and retention policies.
  • Build and maintain dashboards, reports, alerts, and knowledge objects.
  • Support users in designing production-quality dashboards and reports.
  • Monitor platform performance, capacity planning, and optimization.
  • Implement automation scripts for maintenance and alerting tasks.
  • Support Splunk deployments across Linux, Unix, and Windows environments.
  • Work with Cribl for data routing, filtering, and optimization.

Skills

Microsoft Sentinel Architecture
SIEM Operations
Security Architecture
Automation
PowerShell
Python
Azure Security Services
Security Monitoring

Tools

Splunk Enterprise
Cribl

Job description

Job Description – Microsoft Sentinel Architect

Job Title: Microsoft Sentinel Architect

Location: India

Experience: 10+ Years

About the Role

We are seeking an experienced Microsoft Sentinel Architect to design, implement, and manage enterprise-scale cloud security monitoring solutions. The ideal candidate will have extensive experience in Microsoft Sentinel, Splunk Administration, SIEM Operations, Security Architecture, and Automation to support global security operations and strengthen cybersecurity posture.

Key Responsibilities

Microsoft Sentinel Architecture & Engineering

  • Design and develop security architectures leveraging Microsoft Sentinel to meet business and compliance requirements.
  • Implement, configure, and optimize Microsoft Sentinel for security monitoring and threat detection.
  • Develop and maintain analytics rules, workbooks, playbooks, and automation workflows.
  • Integrate multiple log sources and security tools into Microsoft Sentinel.
  • Create security use cases and detection strategies to improve SOC effectiveness.
  • Support incident investigation, threat hunting, and response activities.
  • Administer and maintain Splunk infrastructure including Search Heads, Indexers, and Universal Forwarders.
  • Troubleshoot Splunk server, deployment, and forwarder-related issues.
  • Manage data onboarding, index administration, and retention policies.
  • Build and maintain dashboards, reports, alerts, and knowledge objects.
  • Support users in designing production-quality dashboards and reports.
  • Monitor platform performance, capacity planning, and optimization.
  • Implement automation scripts for maintenance and alerting tasks.
  • Support Splunk deployments across Linux, Unix, and Windows environments.
  • Work with Cribl for data routing, filtering, and optimization.

Required Skills

  • 10+ years of experience in Cybersecurity, SIEM, and Security Operations.
  • Strong hands-on experience with Microsoft Sentinel Architecture and Engineering.
  • Extensive experience administering and supporting Splunk Enterprise environments.
  • Experience with Azure Security Services and Microsoft Security Stack.
  • Strong understanding of SIEM, SOAR, Incident Response, and Threat Hunting concepts.
  • Experience integrating diverse log sources and security technologies.
  • Demonstrated knowledge of ITIL principles and service management processes.
  • Experience in scripting and automation using PowerShell, Python, or similar technologies.
  • Strong troubleshooting and problem-solving skills.
  • Excellent communication and stakeholder management skills.

Preferred Skills

  • Experience with Cribl administration and optimization.
  • Azure Security certifications.
  • Knowledge of cloud security, Zero Trust, and Security Operations Center (SOC) environments.
  • Experience working in large enterprise and global support environments.
Get your free, confidential resume review.
or drag and drop your file here.
Similar jobs

Similar jobs worth comparing

Technical Consultant – SIEM, Sentinel
Technical Consultant – SIEM, Sentinel

Jobtailor • Bengaluru

On-site
INR 1,800,000 - 3,600,000
Technical Consultant - SIEM, Sentinel
Technical Consultant - SIEM, Sentinel

Computacenter • Bengaluru

On-site
INR 3,500,000 - 7,500,000
Cyber Security Engineer
Cyber Security Engineer

Futurism Technologies, INC. • Pune District

Hybrid
INR 2,000,000 - 3,400,000
SIEM Architect
SIEM Architect

Tata Consultancy Services • Chennai District

On-site
INR 3,000,000 - 5,000,000
Siem Engineer
Siem Engineer

Computacenter • Bengaluru

On-site
INR 4,000,000 - 7,000,000
MS Sentinel and EDR Specialist, SOC L3 (SME)
MS Sentinel and EDR Specialist, SOC L3 (SME)

HypTechie • Faridabad District

On-site
INR 1,200,000 - 1,800,000
Technical Consultant - SIEM Sentinel
Technical Consultant - SIEM Sentinel

Computacenter Germany AG & Co. oHG • Bengaluru

On-site
INR 1,800,000 - 2,400,000
Technical Lead Engineer- Security Delivery (Sentinal Implementation)
Technical Lead Engineer- Security Delivery (Sentinal Implementation)

Whitefield Careers • Bengaluru

On-site
INR 1,500,000 - 2,300,000
Cloud Architect
Cloud Architect

Paramount Computer Systems LLC • India

Hybrid
INR 1,200,000 - 1,800,000
Soc Architect
Soc Architect

Tata Consultancy Services • Chennai District

On-site
INR 2,500,000 - 5,500,000