SIEM Engineer

TATA Consultancy Services Ltd

Chennai, Tamil Nadu, India

Type: Full-Time Arrangement: On-Site
4 - 15 Yrs1200000 - 3500000(Annually)

Posted: 4 Aug 2026

Job Description

TCS is hiring for a Google Chronicle SIEM Engineer role. Responsibilities include designing, implementing, and optimizing Google Chronicle SIEM for scalable log ingestion, parsing, normalization, and enrichment. Create and update correlation rules and use cases. Develop and fine-tune detection rules, parsers, and correlation logic to improve threat detection accuracy. Integrate diverse log sources including firewalls, endpoint security, cloud services, IAM, and network devices. Build and maintain custom parsers and dashboards to enhance visibility into security events. Collaborate with threat hunting and detection engineering teams to identify and implement new detection logic. Design and implement automation workflows (SOAR-based or API-based) to reduce analyst workload and response time. Automate alert triage, enrichment, and response actions using scripts, playbooks, or orchestration tools. Integrate Google Chronicle with automation platforms such as Cortex XSOAR, Splunk SOAR, Swimlane, or custom Python-based frameworks. Experience required: 4-15 years. Joining location: PAN India.

Required Qualifications

  • Google Chronicle SIEM expertise
  • Scalable log ingestion, parsing, normalization & enrichment
  • Correlation rule development
  • Detection rule tuning
  • Diverse log source integration (firewalls, endpoints, cloud, IAM, network)
  • Custom parser & dashboard development
  • SOAR/Automation workflow design
  • Python scripting
  • Cortex XSOAR/Splunk SOAR integration
  • 4-15 years of SIEM/security engineering experience

Preferred Qualifications

  • Threat hunting collaboration
  • Advanced orchestration & playbook development
  • Cloud security log integration
  • High-volume log environment optimization
  • Swimlane platform experience
  • API-based security automation

Skills Required

Google Chronicle SIEMLog Ingestion & ParsingCorrelation RulesDetection EngineeringSOAR AutomationPython ScriptingCortex XSOARSplunk SOARCloud Security IntegrationEndpoint & Network LoggingIAM IntegrationSecurity DashboardingThreat Hunting CollaborationAPI-Based OrchestrationLog NormalizationEnrichment LogicIncident Response Automation