SIEM Engineer

TATA Consultancy Services Ltd

Noida, Uttar Pradesh, India

Type: Full-Time Arrangement: On-Site
4 - 15 Yrs900000 - 1800000(Annually)

Posted: 4 Aug 2026

Job Description

About the Company
TCS has been a great pioneer in feeding the fire of Young Techies like you. We are a global leader in the technology arena and there's nothing that can stop us from growing together.

About the Role
TCS Hiring for Google Chronicle SIEM Engineer

Responsibilities
Design, implement, and optimize Google Chronicle SIEM for scalable log ingestion, parsing, normalization, and enrichment. Create and update correlation rules and use cases. Develop and fine-tune detection rules, parsers, and correlation logic to improve threat detection accuracy. Integrate diverse log sources including firewalls, endpoint security, cloud services, IAM, network devices, etc. Build and maintain custom parsers and dashboards to enhance visibility into security events. Collaborate with threat hunting and detection engineering teams to identify and implement new detection logic. Design and implement automation workflows (SOAR-based or API-based) to reduce analyst workload and response time. Automate alert triage, enrichment, and response actions using scripts, playbooks, or orchestration tools. Integrate Google Chronicle with automation platforms (e.g., Cortex XSOAR, Splunk SOAR, Swimlane, or custom Python-based frameworks).

Qualifications
Experience Range: 4-15 years
Joining Location: PAN India
Interview Date: 8-Aug 2026 (Saturday)
Interview Mode: In-Person
Venue: Tata Consultancy Services Limited, C - 56, Phase-II, NOIDA, UTTAR PRADESH-201305.

Required Qualifications

  • Google Chronicle SIEM expertise
  • Scalable log ingestion, parsing, normalization & enrichment
  • Correlation rule & detection logic development
  • Custom parser & dashboard creation
  • SOAR platform integration (Cortex XSOAR, Splunk SOAR, Swimlane)
  • Python scripting for security automation
  • 4-15 years of SIEM/security engineering experience

Preferred Qualifications

  • Threat hunting collaboration
  • Cloud & endpoint security log integration
  • Firewall & network device log management
  • Detection engineering best practices
  • Incident response playbook development

Skills Required

Google ChronicleSIEM EngineeringLog IngestionParsing & NormalizationCorrelation RulesThreat DetectionSOAR AutomationCortex XSOARSplunk SOARPython ScriptingCloud SecurityNetwork SecurityEndpoint SecurityIAM IntegrationDashboard DevelopmentAlert TriagePlaybook DevelopmentSecurity Orchestration