Upload Button Icon Add office photos
Engaged Employer

i

This company page is being actively managed by Orbus International Team. If you also belong to the team, you can get access from here

Orbus International Verified Tick

Compare button icon Compare button icon Compare
4.4

based on 26 Reviews

filter salaries All Filters

19 Orbus International Jobs

SIEM Content Management Lead - Threat Detection (1-2 yrs)

1-2 years

Bangalore / Bengaluru

SIEM Content Management Lead - Threat Detection (1-2 yrs)

Orbus International

posted 2mon ago

Job Role Insights

Flexible timing

Job Description

We are looking for a highly skilled SIEM Content Management Lead to oversee the design, development, and implementation of security information and event management (SIEM) solutions.

The ideal candidate will have strong expertise in SIEM platforms, content creation, and threat detection techniques to enhance the organization's security monitoring and response capabilities.

Key Responsibilities :

SIEM Content Development :

- Design, develop, and maintain SIEM content, including detection rules, use cases, correlation rules, dashboards, and reports.

- Optimize SIEM content to minimize false positives and maximize detection accuracy.

- Develop threat detection use cases based on threat intelligence, attack scenarios, and business requirements.

Incident Response Support :

- Work closely with the Incident Response team to support investigations by providing relevant SIEM content.

- Enhance detection capabilities by analyzing security incidents and refining detection rules accordingly.

- Participate in post-incident reviews to improve SIEM use cases and response processes.

Threat Intelligence Integration :

- Integrate threat intelligence feeds and data sources into SIEM to improve detection capabilities.

- Stay updated on the latest threat trends and leverage threat intelligence to improve SIEM content.

SIEM Platform Management :

- Manage the SIEM platform, ensuring its performance, availability, and scalability.

- Work with security operations teams to troubleshoot and resolve issues related to SIEM content.

Collaboration and Stakeholder Management :

- Collaborate with various teams, including IT, SOC, and Incident Response, to understand business requirements and develop relevant SIEM content.

- Conduct regular meetings with stakeholders to review and update SIEM content based on emerging threats and organizational needs.

Continuous Improvement :

- Monitor the effectiveness of SIEM content and make continuous improvements to detection capabilities.

- Conduct regular audits of SIEM content to ensure compliance with industry standards and best practices.

Required Skills and Experience :

Experience :

- 5+ years of experience in security operations, SIEM content development, or a related field.

- Strong expertise in SIEM platforms such as Splunk, IBM QRadar, ArcSight, or Azure Sentinel.

- Experience developing and tuning SIEM content, including correlation rules, dashboards, and alerts.

Technical Skills :

- In-depth knowledge of threat detection techniques, security event analysis, and incident response processes.

- Familiarity with threat intelligence frameworks (MITRE ATT&CK, Cyber Kill Chain, etc.) and their integration with SIEM.

- Hands-on experience with scripting and automation (Python, PowerShell, etc.) for SIEM content management.

Certifications :

- Relevant certifications such as CISSP, CEH, GCIA, GMON, or vendor-specific certifications (Splunk Certified Architect, QRadar Certified Deployment Professional) are a plus.

Soft Skills :

- Excellent problem-solving skills and attention to detail.

- Strong communication and collaboration abilities, with the capability to work effectively with cross-functional teams.

- Ability to work in a fast-paced, dynamic environment and adapt to changing security requirements.

Preferred Qualifications :

- Experience with cloud-based SIEM solutions and monitoring cloud-native environments.

- Understanding of security frameworks and compliance requirements (e., NIST, ISO 27001)


Functional Areas: Other

Read full job description

What people at Orbus International are saying

What Orbus International employees are saying about work life

based on 26 employees
74%
74%
52%
100%
Flexible timing
Monday to Friday
No travel
Day Shift
View more insights

Orbus International Benefits

Team Outings
Job Training
Free Transport
Cafeteria
Work From Home
Free Food +6 more
View more benefits

Compare Orbus International with

TCS

3.7
Compare

Infosys

3.7
Compare

Wipro

3.7
Compare

HCLTech

3.5
Compare

Tech Mahindra

3.6
Compare

LTIMindtree

3.9
Compare

Mphasis

3.4
Compare

Hexaware Technologies

3.6
Compare

KPIT Technologies

3.5
Compare

Rao IIT Academy

3.5
Compare

Arena Animation

3.7
Compare

Tradeshala

4.5
Compare

Delhi World Public School

3.5
Compare

The Millennium School

3.9
Compare

Safeducate

4.2
Compare

BASIX Academy for Building Lifelong Employability

3.7
Compare

Ravindra Bharathi Schools

3.1
Compare

IQ City Medical College

3.6
Compare

Board Infinity

3.9
Compare

Digiperform

4.0
Compare

Similar Jobs for you

Management at Zyoin

2-5 Yrs

₹ 12-25 LPA

Security Operations at Temenos India

2-5 Yrs

₹ 12-18 LPA

IT Consultant at TAC INFOSEC PRIVATE LIMITED

1-2 Yrs

₹ 15-25 LPA

Security Operations Center Analyst at Embee Software Pvt Ltd

2-3 Yrs

₹ 15-18 LPA

Security Operations Center Analyst at Akshaya IT Business solutions

1-4 Yrs

₹ 10-12 LPA

Incident Manager at NEXTHIRE LLP

Delhi ncr, Gurgaon / Gurugram

1-10 Yrs

₹ 10-30 LPA

Compliance Associate at Thrive Pass

Delhi ncr, Metros

2-4 Yrs

₹ 5-14 LPA

Security Operations at Spaulding Ridge Advisory India Pvt. Ltd.

Pune, Maharashtra

2-8 Yrs

₹ 12-20 LPA

Project Manager at Payatu

2-5 Yrs

₹ 10-20 LPA

GRC Analyst at 6d Technologies

1-4 Yrs

₹ 5-15 LPA

SIEM Content Management Lead - Threat Detection (1-2 yrs)

1-2 Yrs

Bangalore / Bengaluru

2mon ago·via hirist.com

SAP APO Consultant (3-4 yrs)

3-4 Yrs

11d ago·via hirist.com

Java Security Engineer (5-8 yrs)

5-8 Yrs

Chennai

1mon ago·via hirist.com

SAP APO/GATP Consultant (5-8 yrs)

5-8 Yrs

Bangalore / Bengaluru

1mon ago·via hirist.com

Cloud Security Posture Management Engineer (5-7 yrs)

5-7 Yrs

Bangalore / Bengaluru

1mon ago·via hirist.com

Cyber Threat Analyst (3-6 yrs)

3-6 Yrs

Bangalore / Bengaluru

1mon ago·via hirist.com

SAS Analyst (5-8 yrs)

5-8 Yrs

Hyderabad / Secunderabad

1mon ago·via hirist.com

Splunk IT Service Intelligence Engineer - Unix/Windows OS (5-10 yrs)

5-10 Yrs

Bangalore / Bengaluru

1mon ago·via hirist.com
write
Share an Interview