SIEM & SOAR Security Architect

Huxley

India

On-site

INR 420,000 - 700,000

Full time

3 days ago
Be an early applicant
Application generator

An application made for this job — a tailored resume and cover letter that speak straight to the posting.

Get past ATS filters

Job summary

Huxley in India seeks an experienced Security Architect to define the future of monitoring and response architecture across hybrid cloud environments. You will establish the technical vision for collecting, processing, and acting on security data at scale.

You will lead architectural roadmaps, partner with cloud, platform engineering, and SRE teams, and evaluate security tech choices, SIEM/SOAR, and telemetry pipelines to improve detection, response, and observability.

Qualifications

  • 10+ years in IT or cybersecurity technical roles.
  • 5+ years designing security architectures for security operations platforms or cyber defense systems.
  • Experience securing environments spanning private cloud, AWS, GCP, and Azure.
  • Extensive experience in SIEM/log analytics platforms (Splunk, Chronicle, Elastic, Sentinel).
  • Proven SOAR platform design or automated security response workflows.

Responsibilities

  • Define the architectural vision for a large-scale security monitoring ecosystem (SIEM, security data lake, SOAR).
  • Design platforms to ingest, process, and analyze massive security telemetry across global clouds.
  • Correlate security logs, cloud telemetry, endpoint data, and infrastructure events to improve detection and visibility.
  • Establish scalable detection architectures to support threat hunting and incident investigation.
  • Design automated response capabilities for rapid containment and remediation of incidents.
  • Collaborate with cloud, platform engineering, and SRE teams to embed security observability.
  • Evaluate security tech choices and develop enterprise-wide standards for telemetry collection and log management.
  • Define technical roadmaps guiding engineering through monitoring and response capabilities.

Skills

Security architecture design
Cloud security
SIEM/Log analytics
SOAR platforms
Telemetry pipelines
MITRE ATT&CK & NIST
Event streaming (Kafka)
Multi-cloud security

Education

CISSP-ISSAP
TOGAF
Advanced cloud architecture certifications

Tools

Splunk
Chronicle
Elastic
Sentinel
Kafka

Job description

Our security organization is responsible for protecting large-scale digital platforms, infrastructure, and customer-facing services from evolving cyber threats. We build and operate security capabilities that enable proactive defense, rapid incident response, and continuous visibility across globally distributed technology environments.

As part of this effort, we are seeking an experienced Security Architect to define the future of our monitoring and response architecture. This individual will establish the technical vision for how security data is collected, processed, analyzed, and acted upon across complex hybrid cloud environments.

The role combines architecture, strategy, and technical leadership, requiring someone who can translate long-term security objectives into scalable engineering solutions.

Responsibilities
  • Create the architectural vision for a large-scale security monitoring ecosystem encompassing SIEM, security data lake, and SOAR capabilities.
  • Design platforms capable of ingesting, processing, and analyzing massive volumes of security telemetry generated across global private and public cloud environments.
  • Define approaches for correlating security logs, cloud telemetry, endpoint data, and infrastructure events to improve detection accuracy and visibility.
  • Establish scalable detection architectures that support threat hunting, incident investigation, and advanced attack detection.
  • Design automated response capabilities that enable rapid containment and remediation of security incidents with minimal manual intervention.
  • Partner with cloud infrastructure, platform engineering, and site reliability teams to ensure security observability is embedded throughout the technology stack.
  • Evaluate and recommend commercial and open-source security technologies based on scalability, performance, operational requirements, and long-term architectural fit.
  • Develop enterprise-wide standards for telemetry collection, log management, monitoring, detection, and response.
  • Define technical roadmaps and guide engineering teams through implementation of monitoring and response capabilities.
  • Act as the primary architectural authority for security monitoring and response initiatives.
Required Experience
  • More than 10 years of experience in information technology, cybersecurity, or related technical fields.
  • At least 5 years of experience designing security architectures for security operations platforms, monitoring environments, or cyber defense systems.
  • Strong expertise securing and architecting environments spanning private cloud, AWS, Google Cloud Platform, and Microsoft Azure.
  • Extensive experience designing and scaling SIEM or log analytics platforms such as Splunk, Chronicle, Elastic, Sentinel, or equivalent technologies.
  • Proven experience designing SOAR platforms or implementing automated security response workflows in large-scale production environments.
  • Deep understanding of telemetry pipelines, data processing architectures, and high-volume event ingestion challenges.
  • Experience working with streaming and event-processing technologies such as Kafka.
  • Ability to convert complex security requirements into practical architectures, implementation plans, and engineering roadmaps.
  • Strong knowledge of detection engineering principles and security frameworks such as MITRE ATT&CK and NIST.
Preferred Experience
  • Experience integrating security monitoring architectures across private data centers and public cloud environments.
  • Background in software engineering, systems engineering, or platform engineering.
  • Ability to develop code, prototypes, or automation to support architectural initiatives.
  • Experience within highly regulated industries such as financial services, e-commerce, telecommunications, or other large-scale global organizations.
  • Relevant certifications including CISSP-ISSAP, TOGAF, advanced cloud architecture certifications, or equivalent credentials.
Get your free, confidential resume review.

or drag and drop your file here.

Similar jobs

Similar jobs worth comparing

Sr IT Security Analyst SIEM SOAR
Sr IT Security Analyst SIEM SOAR

Technogen • Hyderabad

Hybrid
INR 4,500,000 - 7,500,000
Security Architect/Presales Specialist
Security Architect/Presales Specialist

Netenrich • Bengaluru

On-site
INR 3,000,000 - 6,000,000
Technical Architect
Technical Architect

N-able • Bengaluru

On-site
INR 3,500,000 - 7,500,000
Sr Cyber Security Engineer
Sr Cyber Security Engineer

TechBrein Solutions Private Limited • Kozhikode district

On-site
INR 1,200,000 - 2,400,000
Security Engineer(SecOps + General +SIEM Tools)
Security Engineer(SecOps + General +SIEM Tools)

Qtsolv • Hyderabad

On-site
INR 1,200,000 - 2,000,000
Sr. IT Engineer (Security)
Sr. IT Engineer (Security)

DataCore Software GmbH • Bengaluru

On-site
INR 2,500,000 - 4,500,000
Lead Cybersecurity Engineer
Lead Cybersecurity Engineer

Providence India • Hyderabad

On-site
INR 2,500,000 - 4,500,000
Senior Security Operations Engineer
Senior Security Operations Engineer

Webhosting • Bengaluru

On-site
INR 1,200,000 - 2,400,000
Cyber Security Technical Solution Architect
Cyber Security Technical Solution Architect

ITC Infotech • Bengaluru

On-site
INR 2,000,000 - 3,000,000
Security Architect
Security Architect

HCLTech • Jigani

Hybrid
INR 4,500,000 - 7,000,000