Security Engineer ll – Microsoft Sentinel SIEM

The Herjavec Group US

Bengaluru

Hybrid

INR 1,400,000 - 2,100,000

Full time

38 hours ago
Be an early applicant

Get more replies from employers

Send a job-specific resume in minutes.

Benefits offered by this job

Medical Insurance
Life Insurance
Retirement Match Program
Hybrid Work Model
Maternity & Paternity Leave
Paid Time Off
Bereavement & Volunteer Time
Professional Development
LinkedIn L&D Platform
Mobile Phone Reimbursement

Job summary

Cyderes in Bengaluru, India, is hiring a Security Engineer II for Microsoft Sentinel and Defender XDR within its Managed Sentinel SIEM and MDR services. You will work as a trusted technical resource to clients, configuring and optimizing their security ecosystem to counter evolving threats.

You will report to the Senior Manager, Managed Platforms. The role emphasizes detection engineering, onboarding, and integration work, with a hybrid in-office model and collaboration across global teams.

Qualifications

  • Diploma or Bachelor's degree in Computer Science, Cybersecurity, Information Technology, or a related field, or equivalent practical experience.
  • 3–5 years of experience in cybersecurity, SOC, security engineering, or related roles, with at least 2 years of hands‑on Microsoft Sentinel experience.
  • Experience with Microsoft Sentinel, Microsoft Defender XDR, Azure Log Analytics, and KQL.
  • Experience working in an MSSP, MDR, or customer-facing security environment with multi-tenant Azure environments; Azure Lighthouse experience.
  • Experience with Windows and Linux logs, Entra ID, networking fundamentals, authentication/authorization, and common security telemetry.
  • Experience with Azure Logic Apps, REST APIs, and scripting using PowerShell or Python.
  • Working knowledge of the MITRE ATT&CK framework and MDR/SOC operational workflows.
  • Certifications such as SC-200, AZ-500, SC-100, Security+, or Microsoft Defender certifications.

Responsibilities

  • Administer and maintain Microsoft Sentinel and Defender XDR environments across multiple managed client tenants, ensuring platform health and availability.
  • Support platform intake and provide coverage during Eastern Time business hours, including troubleshooting of platform and telemetry issues.
  • Onboard and integrate new log sources and security data into Sentinel, validating connectivity, parsing, normalisation, data quality, and entity mapping.
  • Maintain, and tune Sentinel detection rules using KQL, including Scheduled, NRT, and Fusion analytics, with a focus on reducing false positives and improving alert fidelity.
  • Map detection use cases to MITRE ATT&CK and contribute to reusable detection, threat-hunting, dashboards, workbooks, and reporting libraries.
  • Monitor Sentinel and Defender XDR alerts and perform Tier 2 investigation and escalation support for MDR/SOC teams.
  • Develop SOAR automation using Azure Logic Apps, including automated response actions such as device isolation, user disablement, IP blocking, and ticket creation.
  • Monitor ingestion volumes, connector health, and data quality while identifying opportunities for platform standardisation, performance improvement, and cost optimization across the MSSP environment.
  • Develop runbooks, SOPs, onboarding documentation, and detection standards while staying current with Microsoft security platform capabilities and industry best practices.

Skills

Microsoft Sentinel
Defender XDR
KQL
Azure Log Analytics
Azure Lighthouse
PowerShell
Python
REST APIs
MITRE ATT&CK
MDR/SOC

Education

Bachelor's degree in Computer Science / Cybersecurity / IT

Tools

Azure Logic Apps
Microsoft Sentinel
Defender XDR
Azure Lighthouse
Azure Monitor

Job description

Bengaluru, Karnataka. Managed Services – 115 - Managed Platforms. Full-Time. Hybrid.

We Help the World Be Everyday Ready™. Today's threatscape is relentless. So are we. At Cyderes, we build practical Identity & Access Management (IAM), Exposure Management, and risk programs, helping organizations stop active threats fast with Managed Detection & Response (MDR) that integrates with existing tools. Powering it all is Meridian, our entity fabric that connects identities, assets, and access into one trusted reality. Augmented by AI and driven by seasoned operators, our tireless global team arms organizations with the people, platforms, and perspectives they need to conquer whatever tomorrow throws their way.

Great Place to Work® Certified™ | United States | Canada | United Kingdom | India

About The Job

The Security Engineer ll – Microsoft Sentinel & Defender XDR plays a critical engineering role within Cyderes' Managed Sentinel SIEM and MDR services. You will go beyond basic platform administration. The Security Engineer ll is responsible for detection engineering, platform optimization, onboarding lifecycle execution, and Defender XDR integration. You will be a trusted technical resource to clients, ensuring you configure, improve, and improve their Microsoft security ecosystem against evolving threats. You will represent and promote the Cyderes brand through collaboration, and delivery that meets client expectations. You will report to Senior Manager, Managed Platforms.

Responsibilities
  • Administer and maintain Microsoft Sentinel and Defender XDR environments across multiple managed client tenants, ensuring platform health and availability.
  • Support platform intake and provide coverage during Eastern Time business hours, including troubleshooting of platform and telemetry issues.
  • Onboard and integrate new log sources and security data into Sentinel, validating connectivity, parsing, normalisation, data quality, and entity mapping.
  • Maintain, and tune Sentinel detection rules using KQL, including Scheduled, NRT, and Fusion analytics, with a focus on reducing false positives and improving alert fidelity.
  • Map detection use cases to MITRE ATT&CK and contribute to reusable detection, threat-hunting, dashboards, workbooks, and reporting libraries.
  • Monitor Sentinel and Defender XDR alerts and perform Tier 2 investigation and escalation support for MDR/SOC teams.
  • Develop SOAR automation using Azure Logic Apps, including automated response actions such as device isolation, user disablement, IP blocking, and ticket creation.
  • Monitor ingestion volumes, connector health, and data quality while identifying opportunities for platform standardisation, performance improvement, and cost optimization across the MSSP environment.
  • Develop runbooks, SOPs, onboarding documentation, and detection standards while staying current with Microsoft security platform capabilities and industry best practices.
Requirements
  • Diploma or Bachelor's degree in Computer Science, Cybersecurity, Information Technology, or a related field, or equivalent practical experience.
  • 3–5 years of experience in cybersecurity, SOC, security engineering, or related roles, with at least 2 years of hands‑on Microsoft Sentinel experience.
  • Experience with Microsoft Sentinel, Microsoft Defender XDR, Azure Log Analytics, and KQL.
  • Experience working in an MSSP, MDR, or customer-facing security environment with multi-tenant Azure environments; Azure Lighthouse experience.
  • Experience with Windows and Linux logs, Entra ID, networking fundamentals, authentication/authorization, and common security telemetry.
  • Experience with Azure Logic Apps, REST APIs, and scripting using PowerShell or Python.
  • Working knowledge of the MITRE ATT&CK framework and MDR/SOC operational workflows.
  • We prefer relevant certifications such as SC-200, AZ-500, SC-100, Security+, or Microsoft Defender certifications.
  • Documentation, with the ability to balance daily platform operations, detection engineering, and continuous improvement.
WHY CYDERES?

Benefits that go beyond the basics, we support our people so they can do their best work.

  • Medical Insurance - Employee + dependents covered
  • Life Insurance - Protection for what matters most
  • Retirement Match Program - We invest in your future
  • Hybrid Work Model - 2–3 days in office
  • Maternity & Paternity Leave - Time for the moments that matter
  • Paid Time Off - PTO + sick & casual leave
  • Bereavement & Volunteer Time - Give back to your community
  • Professional Development - Reimbursement program
  • LinkedIn L&D Platform - Thousands of courses at your fingertips
  • Mobile Phone Reimbursement - Stay connected, on us

Cyderes is an Equal Opportunity Employer (EOE). Qualified applicants are considered for employment without regard to race, religion, color, sex, age, disability, sexual orientation, genetic information, national origin, or veteran status.

Get your free, confidential resume review.
or drag and drop your file here.
Similar jobs

Similar jobs worth comparing

Security Engineer ll – Microsoft Sentinel SIEM
Security Engineer ll – Microsoft Sentinel SIEM

Cyderes • Bengaluru

Hybrid
INR 900,000 - 1,500,000
Medical Insurance
Hybrid Work Model
Paid Time Off
+1
Security Engineer ll – Microsoft Sentinel SIEM
Security Engineer ll – Microsoft Sentinel SIEM

Linuxconfig • India

Hybrid
INR 1,500,000 - 2,800,000
Medical Insurance
Hybrid Work Model
PTO and leave benefits
+2
Security Engineer ll - Microsoft Sentinel SIEM
Security Engineer ll - Microsoft Sentinel SIEM

Cacheflow • Bengaluru

Hybrid
INR 1,200,000 - 3,000,000
Medical Insurance - Employee + depend.
Life Insurance
Hybrid Work Model
Senior Security Engineer - Microsoft Sentinel SIEM
Senior Security Engineer - Microsoft Sentinel SIEM

Cyderes • Bengaluru

On-site
INR 3,000,000 - 5,000,000
Medical Insurance
Life Insurance
Retirement Match Program
+7
Senior Security Engineer - Microsoft Sentinel SIEM
Senior Security Engineer - Microsoft Sentinel SIEM

The Herjavec Group US • Bengaluru

Hybrid
INR 1,500,000 - 2,100,000
Medical Insurance
Life Insurance
Paid Time Off
+4
Senior Security Engineer - Microsoft Sentinel SIEM
Senior Security Engineer - Microsoft Sentinel SIEM

Cacheflow • Bengaluru

Hybrid
INR 3,000,000 - 5,500,000
Medical Insurance
Retirement Match Program
Hybrid Work Model
+3
Senior Security Analyst
Senior Security Analyst

Cacheflow • Bengaluru

Hybrid
INR 1,800,000 - 3,200,000
Medical Insurance
Life Insurance
Retirement Match Program
+7
Security Analyst II, Splunk
Security Analyst II, Splunk

Cyderes • India

On-site
INR 900,000 - 1,500,000
Medical Insurance
Hybrid Work Model
Paid Time Off
+1
Technical Consultant - SIEM, Sentinel
Technical Consultant - SIEM, Sentinel

Computacenter • Bengaluru

On-site
INR 3,500,000 - 7,500,000
MS Sentinel and EDR Specialist, SOC L3 (SME)
MS Sentinel and EDR Specialist, SOC L3 (SME)

HypTechie • Faridabad District

On-site
INR 1,200,000 - 1,800,000