Sr Cyber Security Engineer

Gurucul

Pune District

On-site

INR 1,800,000 - 2,800,000

Full time

42 hours ago
Be an early applicant
Application generator

Stand out for this role — generate a tailored resume and cover letter in about a minute.

Get past ATS filters

Job summary

Gurucul, a global cybersecurity company, seeks a driven SIEM Implementation Engineer with 3–5 years of hands-on SIEM experience to join our Professional Services team in India. You will implement, configure, and operationalize Gurucul’s Next-Gen SIEM for enterprise customers, handling log source integration, data normalization, and detection engineering across Linux/Windows environments.

Travel may be required.

Qualifications

  • 3–5 years hands-on experience implementing and supporting SIEM solutions (Gurucul, Splunk, QRadar, ArcSight, Sentinel, or similar).
  • Strong understanding of log parsing, normalization, data pipelines, and data quality validation.
  • Experience writing correlation rules, SQL queries, dashboards, and SIEM alert logic.
  • Basic scripting in Python, PowerShell, or Shell for automation and troubleshooting.
  • Understanding of MITRE ATT&CK framework and common attack techniques.

Responsibilities

  • Install, configure, and deploy Gurucul’s Next-Gen SIEM platform in customer environments (on-prem, cloud, hybrid).
  • Integrate diverse log sources, ensuring proper parsing, normalization, and data quality.
  • Configure data ingestion pipelines, connectors, agents, collectors, and parsing rules.
  • Communicate technical concepts clearly to customers during workshops, onboarding calls, and deployment sessions.
  • Create implementation documentation, deployment guides, and runbooks.
  • Customize and tune SIEM rules, dashboards, correlation logic, and behavioural models as per customer requirements.
  • Perform data integrity checks and troubleshoot ingestion issues, missing fields, and ingestion throughput.
  • Assist customers in implementing new use cases mapped to MITRE ATT&CK and industry threats.
  • Build and refine dashboards, queries, correlation rules, and alerting logic.
  • Support UEBA model validation and help reduce false positives by tuning logic and baselines.

Skills

SIEM experience
Log parsing
Correlation rules
SQL queries
Python scripting
Communication

Education

Bachelor's degree in CS/Engineering/InfoSec
Security certifications (e.g., Security+, CEH)

Tools

Gurucul
Splunk
QRadar
ArcSight
Sentinel
MSSQL
MySQL

Job description

Job Description**
About Gurucul:

Gurucul is a global cyber security company that delivers a unified, cloud-native Security

Analytics and Operations Platform that includes Next-Gen SIEM, Open XDR, UEBA, and

Identity Analytics. Our mission is to help organizations protect their most valuable assets by detecting, predicting, and preventing threats through machine learning behavior profiling, real-

time analytics, and open data security frameworks. We serve Global 1000 enterprises and government agencies around the world.

JOB DESCRIPTION

Gurucul is seeking a motivated SIEM Implementation Engineer (3–5 years of experience)

to join our Professional Services team. The ideal candidate is passionate about security

analytics, hands-on engineering, and delivering exceptional customer experiences. You will

work directly with enterprise customers to implement, configure, and operationalize our

industry-leading SIEM solution. The role combines technical delivery, problem-solving,

customer interaction, and continuous improvement of SIEM capabilities.

This position requires strong fundamentals in SIEM technologies, log source integration,

detection engineering, and system troubleshooting across Linux/Windows environments.

Travel may be required for onsite engagements.

RESPONSIBILITIES
Implementation & Deployment
  • Install, configure, and deploy Gurucul’s Next-Gen SIEM platform in customer
  • environments (on-prem, cloud, hybrid).
  • Integrate diverse log sources, ensuring proper parsing, normalization, and data
  • quality.
  • Configure data ingestion pipelines, connectors, agents, collectors, and parsing rules.
  • Communicate technical concepts clearly to customers during workshops, onboarding calls, and deployment sessions.
  • and best practices.
  • Create implementation documentation, deployment guides, and runbooks.
  • Customize and tune SIEM rules, dashboards, correlation logic, and behavioural
  • models as per customer requirements.
  • Perform data integrity checks and troubleshoot ingestion issues, missing fields, and
  • Optimize platform performance, resource utilization, and ingestion throughput.
  • Assist customers in implementing new use cases mapped to MITRE ATT&CK and
  • industry threats.
  • Build and refine dashboards, queries, correlation rules, and alerting logic.
  • Support UEBA model validation and help reduce false positives by tuning logic and
  • baselines.
Troubleshooting & Technical Expertise
  • Troubleshoot SIEM platform issues on both Windows and Linux environments.
  • Work with databases (MSSQL, MySQL) to validate ingestion, queries, and backend
  • configurations.
  • Collaborate with product and engineering teams for escalations or platform-related
  • issues.
Training & Knowledge Transfer
  • Conduct customer training sessions on SIEM features, log integrations, dashboards,
  • reporting, and detection frameworks.
  • Provide continuous guidance, best practices, and operational recommendations to
  • customers.
Operational Deliverables
  • Maintain up-to-date documentation including architecture diagrams, SOPs, and
  • integration playbooks.
  • Support pre-sales during POCs, demos, and technical deep dives when required.
  • Ensure customer satisfaction through timely delivery, clear communication, and
EXPERIENCE

Candidates should have experience in the following:

  • 3–5 years of hands-on experience implementing and supporting SIEM solutions (Gurucul, Splunk, QRadar, ArcSight, Sentinel, or similar).
  • Strong understanding of log parsing, normalization, data pipelines, and data quality validation.
  • Experience writing correlation rules, SQL queries, dashboards, and SIEM alert logic.
  • Basic scripting in Python, PowerShell, or Shell for automation and troubleshooting.
  • Understanding of MITRE ATT&CK Framework and common attack techniques.
  • Familiarity with networking concepts, cyber security domains, and threat detection
  • Experience working directly with enterprise customers in implementation or support
  • roles.
  • Good communication and documentation skills.
Preferred Skills (Good to Have)
  • Exposure to Big Data components (Kafka, Elasticsearch, Hadoop).
  • Knowledge of Identity Analytics, UEBA, or behavior analytics models.
  • Experience with REST APIs, integration scripts, or automation frameworks.
EDUCATION
  • Bachelor’s degree in computer science, Engineering, Information Security, or
  • Security certifications such as Security+, CEH, GCIA, or vendor-specific SIEM certifications are a plus.
LOCATION / TRAVEL

Position is based in Pune, India. This role may require up to 20–30% travel for customer onsite implementation activities.

Get your free, confidential resume review.

or drag and drop your file here.

Similar jobs

Similar jobs worth comparing

Senior Technical Support Engineer – SIEM / UEBA
Senior Technical Support Engineer – SIEM / UEBA

Gurucul • Pune District

On-site
INR 1,200,000 - 1,800,000
Senior SIEM Engineer
Senior SIEM Engineer

securonix • Bengaluru

On-site
INR 2,500,000 - 5,000,000
Health Insurance (INR 7,50,000)
Personal Accident Insurance (INR 10,00
Term Life Insurance
SIEM Engineer II
SIEM Engineer II

securonix • Bengaluru

On-site
INR 1,400,000 - 2,400,000
Health Insurance
Personal Accident Insurance
Term Life Insurance
+1
SIEM Engineer I
SIEM Engineer I

Securonix • Mumbai

On-site
INR 1,500,000 - 2,100,000
Health Insurance
Personal Accident Insurance
Term Life Insurance
SIEM Engineer II
SIEM Engineer II

Securonix • Maharashtra

On-site
INR 1,200,000 - 2,000,000
Health Insurance
Personal Accident cover
Term Life Insurance
Siem Engineer Ii
Siem Engineer Ii

Securonix • Karnataka

On-site
INR 2,500,000 - 4,200,000
Security Technician
Security Technician

Fujitsu • Bengaluru Urban

On-site
INR 1,200,000 - 2,400,000
Relocation assistance
Multiple city locations across India
No visa sponsorship
Senior SIEM Engineer
Senior SIEM Engineer

Cognizant • Chennai District

Hybrid
INR 1,800,000 - 2,400,000
Hybrid Work Model
Security Technician
Security Technician

Fujitsu • Dadri

On-site
INR 1,200,000 - 2,500,000
Security Technician
Security Technician

Fujitsu • Pune District

On-site
INR 1,500,000 - 2,800,000
Relocation assistance