Talent.com
Security Information and Event Management Engineer

Security Information and Event Management Engineer

Palo Alto NetworksDelhi, Republic Of India, IN
9 days ago
Job description

Our Mission

At Palo Alto Networks® everything starts and ends with our mission :

Being the cybersecurity partner of choice, protecting our digital way of life.

Our vision is a world where each day is safer and more secure than the one before. We are a company built on the foundation of challenging and disrupting the way things are done, and we’re looking for innovators who are as committed to shaping the future of cybersecurity as we are.

Who We Are

Our hybrid teams collaborate across geographies to solve big problems, stay close to our customers, and grow together. You will be part of a culture that values trust, accountability, and shared success where your work truly matters.

Job Description

Your Career

As a SIEM Engineer for Cortex XSIAM, you will be responsible for assisting with the log migration and detection strategy of our customers. You will work closely with the technical lead to ensure that all of the relevant log sources are onboarded and ingested into XSIAM in accordance with industry best practices and customer requirements. You will then work to determine a suitable detection strategy, helping to protect customers from threats, by designing and implementing correlation rules.

Your Impact

  • Work with technical lead to develop log ingestion strategy
  • Contribute to detection strategy based on industry best practices
  • Detail step by step process to ingest high quality log sources
  • Perform log source monitoring and optimization
  • Create high quality correlation rules
  • Tune log sources and correlation rules
  • Be an SME for SIEM, Correlation and Log Source Ingestion
  • Recognize opportunities where automation can improve analyst alert handling
  • Collaborate with internal and external teams to ensure product adoption
  • Create technical documentation detailing SIEM aspects of the engagement
  • Travel to customer meetings and workshops as needed (10%)

Qualifications

Your Experience

  • Strong communication (written and verbal) and presentation skills, both internally and externally
  • Fluent English is a requirement
  • 8+ years of deploying and integrating (SIEM) to enterprise to large enterprise-level
  • Coordinating and conducting event collection, log management, event management, compliance automation, and identity monitoring activities using (SIEM) platforms
  • The ability to create and develop correlation and detection rules, within a (SIEM) to support alerting capabilities
  • Experience working with and deploying a variety of SIEM technologies (i.E Splunk, IBM QRadar)
  • A proven ability to offer suggestions on detection strategy based on customer requirements
  • Strong Regular Expression skills
  • Ability to understand logs, locating and understanding 3rd party documentation where needed
  • Familiarity with reports on the status of the SIEM to include metrics on items such as number of logging sources - log collection rate, and other performance metrics
  • Knowledge of Security Analysis & Response a plus, including both endpoint, network & cloud based environments
  • 4 years experience with Security Operation Centers tooling and processes
  • Relevant bachelor's degree or industry recognized qualifications (CISSP, GIAC, SIEM Vendor Qualification etc)
  • Ability to read and understand technical design documentation
  • Ability to create technical design documentation
  • Additional Information

    The Team

    Our Professional Services team is critical to our success and mission. As part of this team, you enable customer success by providing support to clients post-sale. Our dedication to our customers doesn’t stop once they sign — it evolves.

    As threats and technology evolve, we stay in step to accomplish our mission. You’ll be involved in implementing new products, transitioning from old products to new, and fixing integrations and critical issues as they are raised. But you won’t wait for them to be raised, you’ll seek them out, too. We fix and identify technical problems with a pointed focus of providing the best customer support in the industry.

    Our Commitment

    We’re problem solvers that take risks and challenge cybersecurity’s status quo. It’s simple : we can’t accomplish our mission without diverse teams innovating, together.

    We are committed to providing reasonable accommodations for all qualified individuals with a disability. If you require assistance or accommodation due to a disability or special need, please contact us at accommodations@paloaltonetworks.com.

    Palo Alto Networks is an equal opportunity employer. We celebrate diversity in our workplace, and all qualified applicants will receive consideration for employment without regard to age, ancestry, color, family or medical care leave, gender identity or expression, genetic information, marital status, medical condition, national origin, physical or mental disability, political affiliation, protected veteran status, race, religion, sex (including pregnancy), sexual orientation, or other legally protected characteristics.

    All your information will be kept confidential according to EEO guidelines.

    Create a job alert for this search

    Information Security Engineer • Delhi, Republic Of India, IN

    Related jobs
    • Promoted
    Senior Security Engineer - Infrastructure Security

    Senior Security Engineer - Infrastructure Security

    PoshmarkDelhi, India
    Security team at Poshmark is responsible for securing our application platform, cloud infrastructure, and IT systems to protect Poshmark and its 60 million Community members.As a AWS and Infrastruc...Show moreLast updated: 27 days ago
    • Promoted
    Information Security Engineer

    Information Security Engineer

    ConfidentialNoida, India
    Credgenics is India's first of its kind NPA resolution platform backed by credible investors including Accel Partners and Titan Capital. We work with financial institutions, Banks, NBFCs & Digital l...Show moreLast updated: 12 days ago
    Information Security Engineer

    Information Security Engineer

    TrackierNoida, UP, IN
    Quick Apply
    At Trackier, we’re building SaaS (software as a service) products that are used in more than 20+ countries across the world. Over the last 9 years, Trackier has helped create industry standards in P...Show moreLast updated: 30+ days ago
    • Promoted
    Information Security Engineer - Monitoring Tools

    Information Security Engineer - Monitoring Tools

    Winx Consulting Services Pvt. Ltd.Delhi, IN
    Job Description Responsibilities : - Adopting and promoting engineering excellence by identifying efficiencies and synergies through means of automation, collaboratio...Show moreLast updated: 16 days ago
    • Promoted
    Senior DevSecOps Engineer - Security Protocols

    Senior DevSecOps Engineer - Security Protocols

    GloifyDelhi, IN
    Remote
    As a Senior DevSecOps Engineer, you will be responsible for managing production environments at scale, implementing security best practices, and ensuring smooth operations across cloud infrastructu...Show moreLast updated: 28 days ago
    • Promoted
    AM / DM - Information Security

    AM / DM - Information Security

    ConfidentialGurgaon / Gurugram
    Management of VAPT (Vulnerability Assessment & Penetration Testing) by ensuring timely scheduling of the VAPT across Infra and application environment and tracking timely closure of the vulnerabili...Show moreLast updated: 30+ days ago
    • Promoted
    Security Architect Okta Identity Management

    Security Architect Okta Identity Management

    PineQ Lab TechnologyDelhi, Delhi, India
    Roles and Responsibilities : - Define, implement, and manage the enterprise authorization framework and architecture using PlainID PBAC. Design and configure fine grained authorization policies, rule...Show moreLast updated: 23 hours ago
    • Promoted
    Security Architect - Identity & Access Management

    Security Architect - Identity & Access Management

    DashhireGurgaon
    Description : About the Role We are looking for a seasoned Security Architect specializing in Identity and Access Management (IAM) to de...Show moreLast updated: 30+ days ago
    • Promoted
    Information Security Engineer III

    Information Security Engineer III

    ConfidentialGurgaon / Gurugram
    Analyze security events : Investigate and assess security incidents promptly.Threat detection : Hunt for potential compromises across the infrastructure. Threat intelligence : Stay informed about emerg...Show moreLast updated: 30+ days ago
    • Promoted
    Endpoint Security Architect

    Endpoint Security Architect

    CoforgeNoida, Republic Of India, IN
    Technical Architect – Endpoint Security & Management.We are seeking a highly skilled.This role is critical to ensuring secure, compliant, and efficient operations across all endpoint devices in the...Show moreLast updated: 2 days ago
    • Promoted
    Information Security - IAM - Systems Engineer

    Information Security - IAM - Systems Engineer

    ConfidentialGurgaon / Gurugram
    AutoZone is looking for an experienced IAM security engineer.This position will be an extension of a US-based team responsible for developing, maintaining, and supporting all IAM systems, processes...Show moreLast updated: 30+ days ago
    • Promoted
    Megthink - Security Engineer

    Megthink - Security Engineer

    MegThink Solutions Private LimitedDelhi, IN
    Remote
    Description : Job Title : Security Engineer Location : Remote Experience : Up to 7 years Employment Ty...Show moreLast updated: 11 days ago
    • Promoted
    Information Security Engineer

    Information Security Engineer

    SodexoNew Delhi, Delhi, India
    Operational security automation is the process of automating some or all aspects of SOC or VOC operations.Replacing manual workflows with automated ones. A fundamental building block of automation i...Show moreLast updated: 30+ days ago
    • Promoted
    Information Security Engineer - SIEM Tools

    Information Security Engineer - SIEM Tools

    TrackierNoida
    At Trackier, we're building SaaS (software as a service) products that are used in more than 20+ countries across the world. Over the last 9 years, Trackier has helped create industry standards...Show moreLast updated: 30+ days ago
    • Promoted
    Megthink - Security Operations Professional - Vulnerability Management

    Megthink - Security Operations Professional - Vulnerability Management

    MegThink Solutions Private LimitedDelhi, IN
    Remote
    About the Role : We are looking for a highly experienced Security Operations (SecOps) professional with deep expertise in Google Cloud (GCP).The role involves leading...Show moreLast updated: 30+ days ago
    • Promoted
    Technical Architect – Endpoint Security & Management

    Technical Architect – Endpoint Security & Management

    CoforgeNoida, Uttar Pradesh, India
    Technical Architect – Endpoint Security & Management.We are seeking a highly skilled.This role is critical to ensuring secure, compliant, and efficient operations across all endpoint devices in the...Show moreLast updated: 2 days ago
    • Promoted
    Information Security Architect

    Information Security Architect

    ConfidentialGurgaon / Gurugram, India
    At Cepheid, we are passionate about improving health care through fast, accurate diagnostic testing.Our mission drives us, every moment of every day, as we develop scalable, groundbreaking solution...Show moreLast updated: 9 days ago
    • Promoted
    Lead Information Security Architect

    Lead Information Security Architect

    ConfidentialNoida, India
    With 80,000 customers across 150 countries, UKG is the largest U.And we're only getting started.Ready to bring your bold ideas and collaborative mindset to an organization that still has so much mo...Show moreLast updated: 12 days ago