4+ Security Information and Event Management (SIEM) Jobs in Pune | Security Information and Event Management (SIEM) Job openings in Pune
Apply to 4+ Security Information and Event Management (SIEM) Jobs in Pune on CutShort.io. Explore the latest Security Information and Event Management (SIEM) Job opportunities across top companies like Google, Amazon & Adobe.
Job Description - Security Solutions Architect
Job Title
Security Solutions Architect / Senior Security Solutions Architect
Practice: Cloud Security & Reliability Engineering (CSR)
Location: India
Regional Coverage: EU/UK, Middle East & Africa (MEA), India, and APAC
Experience:
- Security Solutions Architect: 8–10 years
- Senior Security Solutions Architect: 10–12+ years
Role Overview
We are looking for an experienced Security Solutions Architect / Senior Security Solutions Architect to drive security solutioning across complex cloud, hybrid, and multi-cloud customer environments.
This is a customer-facing solution architecture role operating at the intersection of cloud security, cybersecurity transformation, compliance, pre-sales solutioning, and delivery readiness. The architect will work closely with customers, sales, practice leaders, OEM partners, and delivery teams to understand business and security challenges and translate them into technically robust, commercially viable, and executable security solutions.
The role requires someone who can go beyond product-led solutioning. The successful candidate should be able to understand a customer's existing security landscape, identify risks and capability gaps, define the target-state architecture, and build a clear transformation roadmap.
Given our coverage across EU/UK, MEA, India, and APAC, the architect must also be comfortable adapting security architectures to different regulatory, data sovereignty, industry, and operational requirements.
A strong foundation in Google Cloud Security is mandatory, complemented by hands-on knowledge of modern security platforms, particularly CNAPP/CSPM technologies such as Wiz. Experience across Microsoft security and other cybersecurity platforms will be an advantage.
Key Responsibilities
Security Solution Architecture & Consulting
- Own end-to-end security solution architecture for cloud, hybrid, and multi-cloud customer environments.
- Lead technical discovery and security assessment workshops to understand the customer's current environment, security posture, business objectives, risks, regulatory obligations, and operational challenges.
- Translate customer requirements into scalable, secure, resilient, and commercially viable solution architectures.
- Develop current-state and target-state security architectures, transformation roadmaps, and solution blueprints.
- Design security solutions across areas such as:
- Cloud Security and Cloud-Native Security
- CNAPP, CSPM, CWPP, and Cloud Security Posture Management
- Security Operations and SIEM/SOAR modernization
- Threat Detection and Response
- Identity and Access Management
- Data Security and Data Protection
- Network and Zero Trust Security
- Vulnerability and Exposure Management
- Security Automation and AI-driven Security Operations
- Cyber Resilience and Security Monitoring
Google Cloud Security
- Architect and demonstrate Google Cloud security capabilities across cloud-native and enterprise security use cases.
- Design solutions leveraging relevant Google Cloud security services and technologies for security posture management, threat detection, security operations, data protection, identity, and workload security.
- Translate Google Cloud security capabilities into business and security outcomes relevant to the customer's environment.
- Conduct customer demonstrations, technical workshops, architecture discussions, and proof-of-concept engagements.
- Maintain awareness of evolving Google Cloud security capabilities and incorporate them into solution offerings and reusable architectures.
CNAPP / CSPM & Wiz
- Architect and demonstrate CNAPP and CSPM solutions, with strong hands-on experience in Wiz.
- Design cloud security posture, workload protection, vulnerability management, attack-path analysis, and cloud risk management solutions.
- Position CNAPP capabilities as part of a broader cloud security operating model rather than as a standalone technology deployment.
- Integrate CNAPP capabilities into security operations, governance, compliance, and remediation workflows.
Security Operations & Transformation
- Support customers in modernizing traditional security operations toward cloud-native and AI-enabled security operations.
- Design architectures for SIEM/SOAR modernization, security data onboarding, threat detection, incident response, automation, and security analytics.
- Understand existing customer security ecosystems and define integration approaches across cloud platforms, security tools, identity systems, network infrastructure, and enterprise applications.
- Identify opportunities to simplify fragmented security architectures and improve security effectiveness through platform consolidation and automation.
Compliance & Regulatory Architecture
- Translate regulatory and compliance obligations into practical security architecture and technical controls.
- Design solutions considering relevant frameworks and regulatory requirements, including:
- GDPR and data protection requirements across EU/UK
- Data residency, sovereignty, and localization requirements
- Security and regulatory frameworks applicable across UAE and KSA
- India DPDP Act and relevant sector-specific requirements
- RBI and IRDAI requirements for regulated Indian financial services organizations
- Relevant APAC regulatory and cybersecurity frameworks
- Industry standards such as ISO 27001, PCI DSS, and other applicable security frameworks
- Work with customers in regulated industries including BFSI, government/public sector, healthcare, and other compliance-sensitive environments.
The architect is not expected to act as a legal or compliance auditor but must be capable of translating applicable regulatory and security requirements into appropriate architectural controls and solution designs.
Pre-Sales, SOW & Commercial Solutioning
- Own the technical solutioning lifecycle from initial discovery through proposal, technical closure, and handover to delivery.
- Develop end-to-end Statements of Work (SOWs), including:
- Scope
- Technical solution and architecture
- Deliverables
- Implementation approach
- Effort estimation
- Assumptions and dependencies
- Exclusions
- Acceptance criteria
- Build commercial solutions using standard pricing and estimation frameworks while balancing customer competitiveness, delivery feasibility, risk, and target margins.
- Contribute to RFP/RFI responses, proposals, presentations, solution workshops, and executive-level customer discussions.
- Present and defend proposed architectures with customer CISOs, security leaders, cloud teams, enterprise architects, compliance stakeholders, and technical teams.
- Clearly articulate solution value, differentiation, risks, trade-offs, and expected security outcomes.
Delivery Readiness & Governance
- Validate solution feasibility with delivery and engineering teams before customer commitment.
- Ensure that proposed scope, architecture, effort, timelines, and assumptions are aligned with delivery capabilities.
- Lead structured sales-to-delivery handovers and remain engaged during critical transition stages.
- Minimize delivery rework and commercial leakage by ensuring that customer commitments are clearly documented and technically validated.
Practice Development
- Build reusable security solution architectures, reference designs, SOW templates, pricing models, discovery frameworks, and accelerators.
- Develop repeatable solution patterns for common industry and regulatory scenarios.
- Contribute to the evolution of the CSRE security services portfolio and go-to-market offerings.
- Work with technology partners and OEMs to develop joint solutions, demonstrations, and market propositions.
- Support internal sales and technical teams through enablement sessions and solution playbooks.
- Mentor junior architects and security engineers, particularly at the Senior Security Solutions Architect level.
Must-Have Skills & Experience
- 8–12+ years of relevant experience across cybersecurity, cloud security, security architecture, consulting, or security solutioning.
- Strong hands-on experience with Google Cloud Security, with the ability to architect, demonstrate, and position security capabilities in customer environments.
- Strong hands-on experience with CNAPP/CSPM technologies, preferably Wiz.
- Strong understanding of cloud security architecture across IaaS, PaaS, containers, Kubernetes, cloud-native services, and hybrid environments.
- Experience designing security solutions for complex enterprise environments.
- Strong understanding of modern security architecture concepts across Security Operations, SIEM/SOAR, IAM, data security, network security, vulnerability management, and cloud workload protection.
- Experience designing solutions for regulated industries such as BFSI, government/public sector, or healthcare.
- Working knowledge of security, privacy, compliance, and data sovereignty requirements across relevant geographies.
- Demonstrated experience in customer-facing technical discovery, architecture workshops, and solution presentations.
- Experience independently developing SOWs, technical proposals, effort estimates, and commercial solutions.
- Ability to communicate complex security concepts clearly to technical, business, and executive stakeholders.
- Strong stakeholder management and presentation skills.
Good to Have
- Microsoft Azure and Microsoft Security experience, including exposure to technologies such as Defender, Sentinel, and Entra.
- Experience with Google Security Operations or SIEM/SOAR modernization programs.
- Experience with additional cloud and cybersecurity platforms across AWS, Azure, and multi-cloud environments.
- Exposure to AI-driven security operations, security automation, and emerging AI security technologies.
- Experience working with customers across EU/UK, MEA, India, or APAC.
- Experience working with large enterprise and regulated customers.
- Consulting, system integration, professional services, or managed security services background.
- Relevant cloud and cybersecurity certifications from Google Cloud, Wiz, Microsoft, AWS, or recognized security certification bodies.
What Success Looks Like
The successful architect will be able to:
- Independently lead complex customer security solutioning from discovery to technical closure.
- Build architectures that are secure, compliant, commercially competitive, and executable by delivery teams.
- Demonstrate and position Google Cloud Security and Wiz capabilities confidently in real customer scenarios.
- Convert complex customer security and regulatory challenges into clear solution architectures and transformation roadmaps.
- Produce high-quality SOWs with accurate scope, assumptions, effort, and commercial structure.
- Build trust with customer CISOs, security teams, enterprise architects, compliance stakeholders, and internal delivery teams.
- Create reusable security solution patterns that improve solutioning speed, quality, and consistency across regions.
Experience Level
Security Solutions Architect | 8–10 Years
Expected to independently lead discovery, architecture, solution design, demonstrations, SOW development, and technical solutioning for mid-size to large security engagements.
Senior Security Solutions Architect | 10–12+ Years
Expected to lead complex, strategic, multi-technology, multi-country, and compliance-intensive security engagements. Should be capable of engaging senior customer stakeholders, shaping security transformation programs, handling complex commercial and architectural decisions, mentoring other architects, and contributing to the development of the security practice and its go-to-market strategy.
Job Summary: We are seeking a proactive and technically skilled information security (SOC) Engineer/Analyst to monitor, detect, and respond to cybersecurity threats in real-time. The ideal candidate will have strong analytical skills, be detail-oriented, and possess a sound understanding of threat landscapes, SIEM tools, and incident response. The ideal candidate will possess a strong foundational understanding of cybersecurity governance, robust technical skills in security operations, and a commitment to staying abreast of the evolving threat landscape and internal security requirements.
Key Responsibilities
- Monitor security events and alerts from SIEM and other security tools.
- Perform initial triage and investigation of potential threats or anomalous behavior.
- Escalate incidents according to severity and defined procedures.
- Document incidents, provide root cause analysis, and maintain detailed logs.
- Analyze threat intelligence feeds and correlate with internal data.
- Assist in threat hunting and vulnerability management activities.
- Support continuous improvement of SOC processes and playbooks.
- Collaborate with other IT and Security teams for incident resolution.
- Assist in developing and tuning SIEM rules, queries, and dashboards for threat detection.
- Contribute to vulnerability management and secure configuration of internal systems and cloud environments.
- Support the testing and execution of recovery plans for security systems and data.
- Document incident findings, remediation steps, and contribute to post-incident reviews.
Required Skills & Qualifications:
- Bachelor’s degree in Computer Science, Cybersecurity, or related field.
- 2–5 years of experience in a SOC environment or similar security operations role.
- Familiarity with SIEM tools (e.g., Splunk, QRadar, Sentinel).
- Understanding of TCP/IP, firewalls, IDS/IPS, and common attack vectors.
- Knowledge of malware, phishing, ransomware, and social engineering tactics.
- Hands-on experience with endpoint protection, network monitoring, and forensic tools.
- Excellent communication and documentation skills.
- Preferred Certifications:
- CompTIA Security+ or CySA+
- Vendor-specific SIEM certifications.
Job Title: L2 SIEM Administrator - LogRhythm
Location:
Pune – Customer Site (Magarpatta)
Job Summary:
We are seeking an experienced and proactive L2 SIEM Administrator with expertise in LogRhythm to manage, maintain, and optimize our Security Information and Event Management (SIEM) infrastructure.
The ideal candidate will develop use case frameworks, implement SIEM rules, and ensure efficient log management and threat detection.
Key Responsibilities:
LogRhythm Administration:
Manage and maintain the LogRhythm SIEM platform for optimal performance.
Develop, implement, and fine-tune use case frameworks and detection rules to enhance threat detection.
Incident Analysis:
Investigate security alerts and logs to identify and respond to threats.
Escalate unresolved issues to higher-level teams or external stakeholders.
Log Management:
Onboard and configure log sources, ensuring accurate data ingestion and normalization.
Validate log integrity across network and endpoint sources.
Optimization and Troubleshooting:
Resolve technical issues and optimize system performance.
Monitor and maintain dashboards and reporting tools for actionable insights.
Qualifications:
Proven expertise with LogRhythm, including creating and managing use case frameworks and detection rules.
3+ years of experience in SIEM administration.
Strong understanding of security logs, event correlation, and incident analysis.
Familiarity with scripting (Python, PowerShell) and security frameworks (e.g., MITRE ATT&CK).
Relevant certifications (e.g., LogRhythm Certified Professional (LRCP)) are a plus.
Credit cards haven't changed much for over half a century so our team of seasoned
bankers, technologists, and designers set out to redefine the credit card for you - the
consumer. The result is OneCard - a credit card reimagined for the mobile
generation. OneCard is India's best metal credit card built with full-stack tech. It is
backed by the principles of simplicity, transparency, and giving back control to the
user.
The Engineering Challenge
“Re-imaging credit and payments from First Principles”
Payments is an interesting engineering challenge in itself with requirements of low
latency, transactional guarantees, security, and high scalability. When we add credit
and engagement into the mix, the challenge becomes even more interesting with
underwriting and recommendation algorithms working on large data sets. We have
eliminated the current call center, sales agent, and SMS-based processes with a
mobile app that puts the customers in complete control. To stay agile, the entire
stack is built on the cloud with modern technologies.
Check out our apps here:
OneCard (Best credit card app) : www.getonecard.app
OneScore (5 million downloads): http://www.onescore.app" target="_blank">www.onescore.app
Security Compliance Lead
Opportunity:
Opportunity to build GRC practice grounds up for new Age Fintech startup, lead and
implement PCI-DSS, ISO-27001, RBI compliances
What you will do:
● Be SME for all applicable regulations, guidelines and industry best practices
to manage risk and ensure compliance.
● Be the single point of contact for all external entities related to Security and
Compliance communications.
● Owner for all security documentation such as policies, standards, and
procedures.
● Owner for driving security controls across all organisation functions.
● Build continuous assessment practice which is superset of all required
regulatory compliance.
● Manages and supports Information Security Risk Management Life-cycle for
the organization.
● Provide adequate security and compliance against specific standards such as
NIST 800-53, NIST 800-171, ISO 27001, SOX, PCI, HIPAA and other
regulatory requirements.
● Identifies and formally documents deviations from published standards,
estimates risk level, recommends appropriate mitigation countermeasures in
operational and non-operational situations.
● Identify potential areas of IT compliance vulnerability and risk; guide the
accountable stakeholders to develop/implement corrective action plans for
resolution, and provide general guidance on how to avoid or deal with similar
situations in the future. Risks should be identified, assessed and monitored on
an ongoing firm-wide and individual entity basis
Experience Range:
4-8 years of experience in Cybersecurity & Risk Compliance Domain in areas
including and limited to: System Security, Network Security , SOC, Risk &
Compliance Management
Technical Expertise:
● Auditing experience in ISO-27001, SOX, NIST, PCI-DSS
● Experience with AWS Security and Compliance.
● Prior experience in the Banking and Financial domain is nice to have.
● Proven experience in Endpoint Security, Network Security, SIEM,SOC
Advanced security tools – SOAR platform, Vulnerability Management, SIEM
● Experience building Threat Modeling practice
● Strong communication skills


