Live opening · Posted 6 days ago

TECHNICAL LEAD - Elastic Search

Happiest Minds · Bengaluru, Karnataka, India (On-site)
Linkedin No
You are 6 days behind. JobBeeper subscribers saw this role while it was still new.

At a glance

The key details from the original listing.

Posted 6 days ago
CompanyHappiest Minds
LocationBengaluru, Karnataka, India (On-site)
Work modeNo
SourceLinkedin
Listed6 days ago

Your early-applicant advantage

Live timing from JobBeeper.

Live data
12 min from Linkedin publishing this role to us finding it
124 min median time from a role going live to a subscriber being told
6 hours subscribers had this role before this page existed
15,819 roles found in the last 24 hours — the newest are not on this site yet
Start your free trial →

About the role

Description supplied by the original job listing.

Job Description - SOC L3 Engineer (Elastic SIEM & SOAR)
Location: Bengaluru / India
Experience: 6-10+ Years
Role: SOC L3 / Senior Security Operations Engineer
Role Summary
Seeking an experienced SOC L3 professional with strong expertise in Elastic Security (SIEM) and SOAR platforms. The candidate should possess hands-on experience in SIEM implementation, administration, content engineering, threat hunting, incident response, and SOC optimization across multiple SIEM technologies such as Microsoft Sentinel, QRadar, Splunk, FortiSIEM, ArcSight, Sumo Logic, or similar platforms.
Key Responsibilities
Lead L3 investigations for complex security incidents and advanced threats.
Design, implement, and optimize Elastic SIEM and Elastic Security deployments.
Develop and maintain SOAR playbooks, automation workflows, and integrations.
Build and tune detection rules, correlation logic, dashboards, alerts, and threat hunting content.
Support end-to-end SIEM implementation including onboarding log sources, parsing, normalization, and data pipelines.
Perform threat hunting, malware analysis, and root cause investigations.
Provide technical guidance to L1/L2 analysts and lead incident response activities.
Integrate threat intelligence feeds and improve detection maturity.
Conduct use case development, validation, and security monitoring enhancements.
Participate in SOC transformation, SIEM migrations, and platform evaluations.
Required Technical Skills
Strong hands-on experience with Elastic SIEM / Elastic Security.
Experience with Elastic Defend, Kibana, Elasticsearch, Logstash, Beats, Fleet, and detection engineering.
Hands-on experience in SOAR implementation and automation orchestration.
Experience implementing or managing other SIEM platforms such as Microsoft Sentinel, QRadar, Splunk, FortiSIEM, ArcSight, Sumo Logic, Stellar Cyber, or equivalent.
Strong understanding of Windows, Linux, Active Directory, Azure, AWS, networking, and cloud security.
Knowledge of MITRE ATT&CK, Cyber Kill Chain, IOC analysis, and threat intelligence.
Experience with scripting (Python, PowerShell, Bash) for automation.
Understanding of EDR/XDR, NDR, Email Security, IAM, and Security Controls integration.
Preferred Certifications
Elastic Certified Engineer, Microsoft SC-200, AZ-500, Splunk, QRadar, GCIH, GCIA, CEH, CISSP, or equivalent certifications.
Soft Skills
Strong analytical and troubleshooting skills, stakeholder communication, client-facing experience, documentation skills, mentoring capability, and ability to lead critical security incidents.

Work arrangement
No

Get JobBeeper Mobile App

Never miss a job opening! Get instant job alerts on your phone.

Subscribers see fresh openings within minutes. Download the JobBeeper App on Google Play to get real-time push notifications and apply before anyone else.

⚡ Instant Push Alerts 🎯 Tailored Filters 🚀 Direct Employer Links
GET IT ON Google Play

More openings worth a look

Recently tracked roles with full details and direct application links.

6 roles
Good roles move before most people even see them. Tell JobBeeper what you want and get fresh matches delivered in minutes.
Start your free trial →
⚡ Get fresh job alerts 📱 Get App