Responsibilities: Logging and Auditing: Monitor and audit cloud infrastructure using Azure Sentinel.
Automated Workflows: Develop and maintain automated workflows for security operations.
Threat Intelligence: Integrate threat intelligence feeds into Sentinel analytics and SOAR.
Incident Response: Develop incident response use cases and remediation recommendations.
Log Integration: Integrate security logs into Azure Log Analytics Workspace.
Collaboration: Work collaboratively with team members and stakeholders to ensure effective communication and project success.
Documentation: Maintain comprehensive documentation related to Azure Sentinel configurations and processes.
Technical Knowledge:
Expertise in Azure Sentinel, Defender, and other Microsoft security tools.
Proficiency in scripting languages such as Python or PowerShell.
Strong knowledge of Azure security services and governance.
Creation of Sentinel Playbooks & dashboards for platform monitoring.
Ingesting of various types of Syslog data, Network devices via Api's etc. along with appropriate DCRs.
Experience with device onboarding, developing SIEM content and using KQL (Kusto Query Language).
Develop and maintain relevant custom scripts/connectors for various device integration.
Familiarity in working & Creation of new SOC Run Books.
Experience in other SIEM tools like ArcSight/Qradar/Splunk.
Certifications such as Microsoft Certified: Azure Security Engineer Associate or similar.
What you'll love about working here
You can shape your career with us. We offer a range of career paths and internal opportunities within Capgemini group. You will also get personalized career guidance from our leaders.
You will get comprehensive wellness benefits including health checks, telemedicine, insurance with top-ups, elder care, partner coverage or new parent support via flexible work.
At Capgemini, you can work on cutting-edge projects in tech and engineering with industry leaders or create solutions to overcome societal and environmental challenges.
Job Classification
Industry: IT Services & ConsultingFunctional Area / Department: IT & Information SecurityRole Category: IT SecurityRole: Cyber SecurityEmployement Type: Full time