Live opening · Posted 19 days ago

SIEM & Detection Engineer - Wazuh | Azure | SOC

ZySec AI · Hyderabad, Telangana, India (On-site)
Linkedin No
You are 19 days behind. JobBeeper subscribers saw this role while it was still new.

At a glance

The key details from the original listing.

Posted 19 days ago
CompanyZySec AI
LocationHyderabad, Telangana, India (On-site)
Work modeNo
SourceLinkedin
Listed19 days ago

Your early-applicant advantage

Live timing from JobBeeper.

Live data
9 min from Linkedin publishing this role to us finding it
6 min median time from a role going live to a subscriber being told
6 hours subscribers had this role before this page existed
72,736 roles found in the last 24 hours — the newest are not on this site yet
Start your free trial →

About the role

Description supplied by the original job listing.

Role Description
Wazuh / SIEM administration and engineering
Log source onboarding & integration across Windows, Linux, Azure, Kubernetes, firewalls, WAF, EDR/XDR, VPN, DNS, applications and databases
Detection engineering – rules, decoders, parsers, correlation and security use cases
SIEM alert tuning and false-positive reduction
Detection development aligned with MITRE ATT&CK
Azure and Kubernetes security monitoring
SIEM integration with SOAR, EDR, Threat Intelligence and ticketing platforms
Threat hunting and proactive detection improvement
SIEM troubleshooting, log-ingestion health and data-quality management
Supporting SOC analysts with investigation and incident response
Building and maintaining dashboards, KPIs, runbooks and detection documentation
Qualifications
4–6 years of hands-on experience in SIEM Esp Wazuh, SOC, cybersecurity engineering, or security monitoring.
Experience working in an MSSP/SOC environment, supporting multiple customers, tenants, or security monitoring environments.
Strong hands-on experience with Wazuh or equivalent SIEM platforms.
Experience with multi-tenant SIEM operations, customer-specific log onboarding, detection use cases, alert tuning, and monitoring requirements.
Experience onboarding and integrating logs from Windows, Linux, Azure, Kubernetes, firewalls, WAF, EDR/XDR, VPN, IAM/Entra ID, DNS, applications, and databases.
Strong understanding of SIEM architecture, log collection, parsing, normalization, correlation, detection rules, and alerting.
Experience developing, maintaining, and tuning SIEM use cases and detection rules.
Good understanding of MITRE ATT&CK, threat detection, threat hunting, and common attack techniques.
Good knowledge of Microsoft Azure and Azure security/logging services.
Hands-on understanding of Kubernetes and container environments.
Strong knowledge of Windows, Linux, networking, and security technologies.
Experience integrating SIEM with SOAR, EDR/XDR, Threat Intelligence, ticketing, and other security platforms.
Ability to troubleshoot log ingestion, agents, collectors, parsers, indexing, storage, and SIEM performance.
Strong analytical, troubleshooting, documentation, and communication skills.
Ability to work with SOC L1/L2 analysts, customers, DevOps, infrastructure, and security teams.

Work arrangement
No

Get JobBeeper Mobile App

Never miss a job opening! Get instant job alerts on your phone.

Subscribers see fresh openings within minutes. Download the JobBeeper App on Google Play to get real-time push notifications and apply before anyone else.

⚡ Instant Push Alerts 🎯 Tailored Filters 🚀 Direct Employer Links
GET IT ON Google Play

More openings worth a look

Recently tracked roles with full details and direct application links.

6 roles
Good roles move before most people even see them. Tell JobBeeper what you want and get fresh matches delivered in minutes.
Start your free trial →
⚡ Get fresh job alerts 📱 Get App