





Tier-1 brand, Bangalore metro, and visible mid-level security role increase applicant competition.
Role requires specialized SIEM, detection, and incident response skills, limiting industry transferability.
Explicit 6+ years, 3+ years SIEM experience, Splunk and Python requirements make screening strict.
Login to See Your Match Score
Create a free account or log in to unlock your CV match score across:
Develop and maintain high-fidelity security detections, policies, and response workflows across multiple data domains including identity, endpoint, network, cloud, SaaS, and vulnerability.
Partner with business units and technical teams to map business processes to security use cases, and enhance security operations through incident triage, investigation, and automation.
Improve detection quality with a focus on reducing attack surface, minimizing false positives, accelerating containment, and continuous operational improvements.
6+ years of cybersecurity or related technical experience with at least 3+ years in incident response, detection engineering, security operations, or SIEM engineering.
Strong hands-on experience with SIEM platforms, preferably Splunk, including designing correlations, detections, and alerts.
Bachelor’s degree in Computer Science, Information Security, Engineering, or related technical field.
Must be able to work from the Bangalore office; remote work only allowed for PTO, approved travel, or leave.
Experienced in building and tuning detections covering complex attacker behaviors using security frameworks like MITRE ATT&CK while factoring risk context and asset criticality.
Practically skilled in scripting (Python) and API integrations to automate response workflows and improve analyst efficiency in security operations.
Capable of collaborating cross-functionally with technical and non-technical teams to translate ambiguous threats into actionable detection logic and operational improvements.