Siem Detection Engineer - Cumulus Systems Pvt. Ltd. (Maharashtra)

Proterial

India

On-site

INR 1,800,000 - 3,200,000

Full time

14 days+

Get more replies from employers

Send a job-specific resume in minutes.

Job summary

Hitachi India Pvt Ltd seeks an experienced L2 Detection Specialist to design, test, and maintain high-fidelity detection content for SIEM platforms such as Microsoft Sentinel or Google SecOps. You will collaborate with SOAR engineers and SOC analysts to fine-tune alert logic and enable rapid threat identification and response.

Responsibilities include building detections, dashboards, and reports; validating logic via simulations and live feedback; integrating threat intel; and supporting audits

Qualifications

  • Minimum 3 years in cybersecurity operations or engineering.
  • At least 1–2 years hands-on experience building detections in Microsoft Sentinel, KQL, or Google SecOps.
  • Strong understanding of MITRE ATT&CK and its practical application to detection engineering.
  • Familiarity with cloud infrastructures (Azure, GCP, AWS) and security logs they generate.
  • Proficiency in scripting for automation (Python or PowerShell).
  • Relevant certifications (SC-200, Google SecOps, CompTIA Security+).
  • Excellent documentation and ability to convey complex concepts clearly.

Responsibilities

  • Design, build, and maintain detection rules, queries, dashboards, and reports in SIEM platforms.
  • Tune detection logic through simulations, red-team findings, and live incident feedback.
  • Analyze logs to identify suspicious patterns and develop signatures.
  • Integrate threat intel (IoCs, TTPs) to broaden detection coverage.
  • Apply MITRE ATT&CK guidance to prioritise detections.
  • Perform regular health checks to reduce false positives.
  • Collaborate with SOAR to automate enrichment, triage, and response actions.
  • Conduct threat hunts to uncover undetected techniques.
  • Generate metrics and trend reports for SOC leadership.

Skills

MITRE ATT&CK
Azure
GCP
AWS
Python
PowerShell
Security logs
Certifications
Technical writing
Detection engineering

Tools

Microsoft Sentinel
KQL
YARA-L
Power BI
Tableau
Sigma

Job description

Location Pune Maharashtra India Job ID Rhidden_mobile Date Posted 2025-11-21 Company Name HITACHI INDIA PVT LTD Profession Job Category Other Job Schedule Full time Remote No Job Title SIEM Detection Engineer Designation Engineer Company Cumulus Systems Pvt Ltd Location Pune India Salary As per Industry

Company Overview

Cumulus Systems engages in providing End-to-End Software Development Lifecycle involving Business Requirements Analysis Solution Architecture Design Development Testing Deployment and Postproduction Support Its cross-domain storage performance management platform called MARS Measure Analyze Recommend Solve monitors and helps manage large-scale heterogeneous IT infrastructure across the entire enterprise

Position Overview

As an L2 Detection Specialist you will design test and maintain high-fidelity detection content in one of the following SIEM platforms Microsoft Sentinel KQL or Google Security Operations YARA-L Partnering closely with SOAR engineers SOC analysts and solutions engineers you will perform proactive threat hunting fine-tune alert logic and ensure our global SOC can rapidly identify and respond to emerging threats

Job Roles Responsibilities
  • Design build and maintain detection rules correlation searches dashboards and reports in one of the specialized SIEM platform
  • Continuously validate and tune detection logic through simulations red-team findings SOC false positives and live incident feedback
  • Analyze log and telemetry data to uncover suspicious behaviors patterns and indicators of compromise develop current signatures accordingly
  • Integrate external threat-intelligence feeds IoCs and TTPs to enrich alerts and broaden detection coverage
  • Leverage MITRE ATT CK and other frameworks to guide prioritization and detection development methodology
  • Perform periodic rule health checks adjusting thresholds to maximize fidelity and minimize false positives
  • Collaborate with SOAR engineers to automate enrichment triage and response actions that stem from SIEM alerts
  • Conduct hypothesis threat intelligence driven threat hunts to identify advanced attacker techniques not yet covered by automated detections
  • Generate clear actionable metrics and trend reports for SOC leadership highlighting alert volumes rule efficacy and tuning outcomes
  • Maintain detection KPIs to measure alert accuracy
  • Document all detection logic tuning rationales and operational procedures to support audit compliance and knowledge transfer
  • Provide technical consultation during incident investigations and post-incident retrospectives identifying detection gaps and recommending improvements
Skills
  • Strong understanding of MITRE ATT CK and its practical application to detection engineering
  • Familiarity with cloud infrastructures Azure GCP AWS and the security logs they generate
  • Proficiency in scripting for automation Python or PowerShell preferred
  • Working knowledge of common security controls and telemetry sources firewalls IDS IPS EDR endpoint protection cloud logs etc
  • Relevant certifications any of Admin SC-200 Microsoft Sentinel Google SecOps Certified CompTIA Security GCP Azure AWS Foundational
  • Excellent written documentation skills and the ability to convey complex detection concepts to both technical and non-technical stakeholders
Experience
  • Minimum 3 years overall experience in cybersecurity operations or engineering
  • At least 1-2 years hands-on experience building detections in one of the following SIEMs Microsoft Sentinel KQL or Google SecOps YARA-L
  • Nice-to-Have Experience integrating SOAR playbooks with SIEM alerts
  • Prior involvement in purple-team exercises or red-team simulations
  • Knowledge of additional query or signature languages e g Sigma Elastic Query DSL Scripting Knowledge Python Powershell Data Analytics Reporting Expertise in Microsoft PowerBI Tableau or equivalents.
Get your free, confidential resume review.
or drag and drop your file here.
Similar jobs

Similar jobs worth comparing

Cybersecurity Engineer – SIEM & Threat Detection
Cybersecurity Engineer – SIEM & Threat Detection

YO IT Consulting • Maharashtra

On-site
INR 1,200,000 - 1,500,000
SIEM & Detection Engineering Specialist
SIEM & Detection Engineering Specialist

Lonvec Technologies Private Limited • Bengaluru

Hybrid
INR 1,800,000 - 2,600,000
Cloud Operations - Senior Specialist-Cyber Security-Engineering
Cloud Operations - Senior Specialist-Cyber Security-Engineering

EXL Service • Dadri

On-site
INR 1,200,000 - 1,800,000
Security Analyst
Security Analyst

Access Healthcare • Zone 7 Ambattur

On-site
INR 1,200,000 - 2,100,000
Sr. Consultant
Sr. Consultant

Tribastion Technologies Pvt. Ltd. • India

On-site
INR 1,000,000 - 1,500,000
Platform Engineer-Threat Engineer
Platform Engineer-Threat Engineer

V2 Solutions • Hyderabad

On-site
INR 1,400,000 - 2,200,000
Cyber Security Analyst (SOC)
Cyber Security Analyst (SOC)

Genpact • Pune District

Hybrid
INR 700,000 - 1,100,000
Soc Analyst
Soc Analyst

BUSINESSNEXT • Dadri

On-site
INR 1,200,000 - 2,000,000
Microsoft Sentinel Architect
Microsoft Sentinel Architect

HCLTech • Dadri

On-site
INR 4,000,000 - 7,000,000
Senior Cybersecurity Analyst L3 – Threat Detection & SIEM
Senior Cybersecurity Analyst L3 – Threat Detection & SIEM

YO IT Consulting • Maharashtra

On-site
INR 1,500,000 - 2,500,000