SIEM Security Operations Engineer - Sentinel Onboarding

HCLTech

Poland

On-site

PLN 180,000 - 240,000

Full time

14 days+

Get more replies from employers

Send a job-specific resume in minutes.

Benefits offered by this job

Life insurance
Private medical care
MultiSport Card
Glasses subsidy
Language courses subsidy
Holiday bonuses

Job summary

HCLTech is seeking a Security Operations Engineer to expand the ALaM program by onboarding new paramount applications into monitoring scope for SIEM use cases and DORA compliance by 2026. The role focuses on SIEM engineering, threat modelling, rule optimization, testing, and workshop facilitation.

You will work with SOC, engineering, and red teams to improve alert fidelity and ensure robust monitoring across critical applications, leveraging Azure/AWS, Windows/Linux, and SQL/Oracle environments.

Qualifications

  • Hands-on experience with SIEM platforms, preferably Microsoft Sentinel.
  • Proven ability in detection engineering, rule creation and rule testing.
  • Ability to automate testing and validation with scripting (Python, PowerShell, Bash or similar).
  • Strong communication in English (spoken and written); capable of leading workshops.

Responsibilities

  • Detection Engineering: Build, optimize, and maintain SIEM detection rules (prefer Microsoft Sentinel).
  • Testing & Automation: Test and verify use cases, automate testing workflows.
  • Application Onboarding: Onboard key applications into monitoring scope.
  • Requirements Gathering: Collaborate with application teams to define logging and detection needs.
  • Workshop Facilitation: Lead workshops with application owners to align on security capabilities.
  • Technical Documentation: Produce documentation for detection logic and verification results.
  • Collaboration: Work with SOC, engineering, and red teams to improve alert fidelity.

Skills

SIEM Expertise
Detection Engineering
Scripting & Automation
English Communication
Cloud & Infra
Windows & Linux
SQL/Oracle Databases
Independent Worker
Workshop Facilitation

Job description

HCLTech is seeking a Security Operations Engineer to expand the ALaM program by onboarding new paramount applications into monitoring scope for SIEM use cases and DORA compliance by 2026. The role focuses on SIEM engineering, threat modelling, rule optimization, testing, and workshop facilitation.

You will work with SOC, engineering, and red teams to improve alert fidelity and ensure robust monitoring across critical applications, leveraging Azure/AWS, Windows/Linux, and SQL/Oracle environments.

Get your free, confidential resume review.
or drag and drop your file here.
Similar jobs

Similar jobs worth comparing

Remote MDR Sentinel Expert — Cloud Security & SIEM
Remote MDR Sentinel Expert — Cloud Security & SIEM

SoftwareONE Deutschland GmbH • Warszawa

Hybrid
PLN 190,000 - 270,000
Global culture
Mentor program
President's Club
+2
SOC Analyst - Cloud & Payment Security Champion
SOC Analyst - Cloud & Payment Security Champion

Planet • Warszawa

Hybrid
PLN 140,000 - 190,000
Senior Cybersecurity & SIEM Specialist | SOC & Detection
Senior Cybersecurity & SIEM Specialist | SOC & Detection

SEIDOR • Warszawa

On-site
PLN 180,000 - 260,000
Lead Security Operations Engineer
Lead Security Operations Engineer

Jobtailor • Wrocław

On-site
PLN 180,000 - 240,000
Senior Cybersecurity Logging & Monitoring Architect
Senior Cybersecurity Logging & Monitoring Architect

Altherias • Warszawa

Hybrid
PLN 150,000 - 210,000
Lead SecOps Engineer - AI-Driven Security Operations (Remote)
Lead SecOps Engineer - AI-Driven Security Operations (Remote)

payabl. • Warszawa

On-site
PLN 180,000 - 280,000
Provident Fund
Annual Learning Budget
€150 Wolt monthly allowance
+7
Azure Security Orchestration Engineer (Automation & SIEM)
Azure Security Orchestration Engineer (Automation & SIEM)

Bayer AG • Warszawa

Hybrid
PLN 156,000 - 187,000
Home office allowance
Flexible benefits
Life insurance
+4
Remote Senior Security Architect: Microsoft Cloud & Sentinel
Remote Senior Security Architect: Microsoft Cloud & Sentinel

Sii Poland • Katowice

On-site
PLN 180,000 - 280,000
Great Place to Work
Solid financial situation
Contracts with the biggest brands
+8
Staff Product Manager - AI SIEM, Detection and Response
Staff Product Manager - AI SIEM, Detection and Response

SentinelOne • Poland

On-site
PLN 240,000 - 340,000
RSUs
ESPP
Leave benefits
+6
Remote Senior Security Engineer — Microsoft Cloud & SIEM
Remote Senior Security Engineer — Microsoft Cloud & SIEM

Sii Poland • Poznań

On-site
PLN 180,000 - 240,000
Great Place to Work
Profit sharing
Medical care