SOC - SIEM Google Secops, Google Chronicle

Tata Consultancy Services

Hyderabad

On-site

INR 1,200,000 - 1,800,000

Full time

10 days ago

Get more replies from employers

Send a job-specific resume in minutes.

Job summary

Tata Consultancy Services in Hyderabad is seeking a highly skilled Google Chronicle SIEM Engineer with expertise in SOC automation to enhance our detection capabilities and reduce false positives across the security landscape.

The ideal candidate will be responsible for designing, developing, and maintaining advanced detection use cases, automation workflows, and integrations to strengthen our overall security posture and improve operational efficiency within the SOC environment.

Qualifications

  • Experience designing and implementing automated SOC detections.
  • Ability to create and tune correlation rules and parsers.
  • Experience integrating multiple log sources and security tools.

Responsibilities

  • Design, implement, and optimize Google Chronicle SIEM for scalable log ingestion, parsing, normalization, and enrichment.
  • Create and updating correlation rules and use cases
  • Develop and fine-tune detection rules, parsers, and correlation logic to improve threat detection accuracy.
  • Integrate diverse log sources including firewalls, endpoint security, cloud services, IAM, network devices and etc.,
  • Build and maintain custom parsers and dashboards to enhance visibility into security events.
  • Collaborate with threat hunting and detection engineering teams to identify and implement new detection logic.
  • Design and implement automation workflows (SOAR-based or API-based) to reduce analyst workload and response time.
  • Automate alert triage, enrichment, and response actions using scripts, playbooks, or orchestration tools.
  • Integrate Google Chronicle with automation platforms (e.g., Cortex XSOAR, Splunk SOAR, Swimlane, or custom Python-based frameworks).
  • Deploy, configure, and manage Bind Plane agents across servers and cloud workloads.
  • Set up data ingestion from multiple sources (Windows, Linux, databases, firewalls, cloud services).
  • Normalize data schemas and forward logs to SIEM or observability tools (Chronicle, Elastic, Splunk).
  • Configure pipelines for log transformation, labeling, and enrichment.
  • Implement monitoring and alerts for agent health, performance, and log ingestion failures.

Skills

SOC automation
Detection use cases
Automation workflows
Correlation rules
Parsers
Threat detection
SOAR integrations
Data ingestion

Tools

Google Chronicle SIEM
Bind plane
Cribl

Job description

Interview Mode: Virtual Interview (13-Aug)

Job Description:

We are seeking a highly skilled Google Chronicle SIEM Engineer with expertise in SOC automation to enhance our detection capabilities and reduce false positives across the security landscape. The ideal candidate will be responsible for designing, developing, and maintaining advanced detection use cases, automation workflows, and integrations to strengthen our overall security posture and improve operational efficiency within the SOC environment.

Tools:
  • Google Chronicle SIEM
  • Bind plane
  • Cribl
Key Responsibilities

Design, implement, and optimize Google Chronicle SIEM for scalable log ingestion, parsing, normalization, and enrichment.

Create and updating correlation rules and use cases

Develop and fine-tune detection rules, parsers, and correlation logic to improve threat detection accuracy.

Integrate diverse log sources including firewalls, endpoint security, cloud services, IAM, ,network devices and etc.,.

Build and maintain custom parsers and dashboards to enhance visibility into security events.

Collaborate with threat hunting and detection engineering teams to identify and implement new detection logic.

Design and implement automation workflows (SOAR-based or API-based) to reduce analyst workload and response time.

Automate alert triage, enrichment, and response actions using scripts, playbooks, or orchestration tools.

Integrate Google Chronicle with automation platforms (e.g., Cortex XSOAR, Splunk SOAR, Swimlane, or custom Python-based frameworks).

Deploy, configure, and manage Bind Plane agents across servers and cloud workloads.

Set up data ingestion from multiple sources (Windows, Linux, databases, firewalls, cloud services).

Normalize data schemas and forward logs to SIEM or observability tools (Chronicle, Elastic, Splunk).

Configure pipelines for log transformation, labeling, and enrichment.

Implement monitoring and alerts for agent health, performance, and log ingestion failures.

Get your free, confidential resume review.
or drag and drop your file here.
Similar jobs

Similar jobs worth comparing

Soc Analyst 1 - SIEM / Google Secops
Soc Analyst 1 - SIEM / Google Secops

KPMG Assurance and Consulting Services LLP • Bengaluru

On-site
INR 1,200,000 - 1,800,000
Google SecOps Engineer
Google SecOps Engineer

Virtusa • Bengaluru Urban

On-site
INR 3,000,000 - 6,000,000
Google SecOps Engineering Lead
Google SecOps Engineering Lead

Virtusa • Bengaluru Urban

On-site
INR 1,000,000 - 2,000,000
GOOGLE SecOps SIEM Engineer
GOOGLE SecOps SIEM Engineer

Jobskey Search and Selection • Mumbai

On-site
INR 1,200,000 - 1,800,000
SOC Engineer
SOC Engineer

Lonvec Technologies Private Limited • Chennai District

Hybrid
INR 900,000 - 1,200,000
Senior Digital Technology Specialist – Cyber Security Engineering
Senior Digital Technology Specialist – Cyber Security Engineering

Jobtailor • Mumbai

On-site
INR 1,800,000 - 3,000,000
CD&E-Cybersecurity-SIEM-Google Secops-Senior Associate -Bangalore
CD&E-Cybersecurity-SIEM-Google Secops-Senior Associate -Bangalore

PwC Acceleration Center India • Bengaluru

On-site
INR 1,200,000 - 1,800,000
SIEM Google Secops Engineer
SIEM Google Secops Engineer

PwC • Gurugram District, Bengaluru, Hyderabad

Hybrid
INR 1,800,000 - 2,600,000
L2 SOC Analyst
L2 SOC Analyst

UST • Bengaluru

On-site
INR 1,400,000 - 2,200,000
Sr SOC Analyst - CyberAxis
Sr SOC Analyst - CyberAxis

Cyberaxislabs • Hyderabad

On-site
INR 1,200,000 - 1,800,000