SME - Security Investigations, SIEM
India
Job Description
SME - Security Investigations, SIEM
Greater Noida, Uttar Pradesh

Job Summary

Job Summary : Role Overview The SIEM Onboarding Engineer operates as a mid-level technical specialist responsible for the end-to-end data ingestion lifecycle across our core security analytics platforms, specifically focusing on Splunk, Microsoft Sentinel, and Google SecOps (Chronicle) . You will act as the critical link between infrastructure teams and the Security Operations Center (SOC), ensuring that security logs from cloud environments, operating systems, networks, and custom business applications are seamlessly collected, normalized, and optimized for threat detection.

Job Description : Professional Skills\\\\r\\\\n• Ability to independently trace and resolve broken data flows across hybrid networks and firewalled zones.\\\\r\\\\n• Skill in collaborating directly with DevOps, Cloud, and IT infrastructure teams to enforce corporate security logging policies.\\\\r\\\\n• A meticulous, detail-oriented approach to evaluating data schemas and ensuring long-term data quality.\\\\r\\\\n

Key Responsibilities

Job Responsibilities : Key Responsibilities • Deploy and manage SIEM infrastructure, agents, heavy forwarders, log collectors, and API integrations to onboard diverse log sources. • Build and maintain custom data parsers and regular expressions (Regex) to map log fields into standard schemas (e.g., Splunk CIM, Sentinel ASIM, or Google SecOps UDM). • Configure data filtering, masking, and routing rules to optimize SIEM indexing volume, manage licensing costs, and prevent pipeline drops.

Skill Requirements

Skill Requirement : Technical Qualifications • Experience: 3 to 5 years of dedicated experience in security engineering, log management, or SIEM administration. • Multi-SIEM Competency: Hands-on engineering and administrative experience with at least two of the following: Splunk Enterprise/Cloud, Microsoft Sentinel, or Google SecOps (Chronicle). • Deep familiarity with Syslog-ng/Rsyslog, Windows Event Forwarding (WEF), HTTP Event Collectors (HEC), and REST API log extraction. • Strong proficiency in writing complex Regular Expressions (Regex) and automation scripts (Python, PowerShell, or Bash) to manipulate unstructured log data. • Solid understanding of enterprise environments, including Linux/Windows OS, network architecture (firewalls, proxies), and cloud logs (AWS CloudTrail, Azure Activity, GCP Audit).

Other Requirements

Other Requirement : Technical Qualifications • Experience: 3 to 5 years of dedicated experience in security engineering, log management, or SIEM administration. • Multi-SIEM Competency: Hands-on engineering and administrative experience with at least two of the following: Splunk Enterprise/Cloud, Microsoft Sentinel, or Google SecOps (Chronicle). • Deep familiarity with Syslog-ng/Rsyslog, Windows Event Forwarding (WEF), HTTP Event Collectors (HEC), and REST API log extraction. • Strong proficiency in writing complex Regular Expressions (Regex) and automation scripts (Python, PowerShell, or Bash) to manipulate unstructured log data. • Solid understanding of enterprise environments, including Linux/Windows OS, network architecture (firewalls, proxies), and cloud logs (AWS CloudTrail, Azure Activity, GCP Audit).

Information at a Glance

Why HCLTech?

At HCLTech, you'll supercharge your potential. You'll find your career. And you'll find your spark. All at a place that knows that helping its customers stay on top starts by putting its people first.

HCLTech is a global technology company, home to more than 226,300 people across 60 countries, delivering industry-leading capabilities centered around digital, engineering, cloud and AI, powered by a broad portfolio of technology services and products. We work with clients across all major verticals, providing industry solutions for Financial Services, Manufacturing, Life Sciences and Healthcare, Technology and Services, Telecom and Media, Retail and CPG, and Public Services. Consolidated revenues as of 12 months ending December 2025 totaled $14.5 billion.

23 Benefits At HCLTech, we believe in empowering our employees with comprehensive benefits that support their professional growth and enhance their well-being. When you sign up for a career with us, you gain access to: https://rmkcdn.successfactors.com/147eb21f/a701dca9-f32d-4fc9-9447-6.svg Industry-benchmarked compensation https://rmkcdn.successfactors.com/147eb21f/b0c54381-ddcc-4a33-9b35-9.svg Best-in-class healthcare benefits https://rmkcdn.successfactors.com/147eb21f/b73027be-7aae-4d36-a090-4.svg Personal time off https://rmkcdn.successfactors.com/147eb21f/d5b4fdfd-2e99-4e26-9878-9.svg Maternity and paternity benefits https://rmkcdn.successfactors.com/147eb21f/3d42b0fc-4652-435a-9ece-c.svg Access to skills / higher education programs/resources https://rmkcdn.successfactors.com/147eb21f/aeddeaf2-9e25-4584-ad11-d.svg Discounts on products and services via Benefit Box https://rmkcdn.successfactors.com/147eb21f/a9609a3b-2700-4b3c-9d90-a.svg Participate in CSR programs and live life with a purpose https://rmkcdn.successfactors.com/147eb21f/c6e33851-710f-4634-bd69-f.svg Opportunities to grow and advance your career Note: The benefits listed above vary depending on the nature of your employment and the country where you work. Some benefits may be available in some countries but not in all.