368,657open jobs
9,442companies
50,883added this week
Browse all
Location
In office
Seniority
Staff
Overview
Company
Impact
Profile match
Zensar Technologies provides digital engineering and information technology services. Its practices cover experience design, cloud, data and application modernisation. The company serves banking, manufacturing, retail and healthcare clients.

Senior SOC Platform Engineer

(CrowdStrike Next-Gen SIEM, SOAR & EDR - Microsoft Sentinel Secondary)

Position Summary

We are seeking a highly skilled Senior SOC Platform Engineer with strong expertise in CrowdStrike Falcon Next-Generation SIEM, Falcon Fusion SOAR, Falcon EDR, Python automation, threat hunting, and detection engineering. This role is responsible for engineering, optimizing, and scaling SOC platform capabilities that enable advanced threat detection, incident response, security analytics, and SOC transformation initiatives.

The successful candidate will act as a technical lead for security platform engineering, supporting customer onboarding, SIEM/SOAR content development, automation initiatives, threat intelligence integration, and SOC maturity programs. Microsoft Sentinel experience is required as a secondary platform.

Job Description
  • Design, deploy, manage, and optimize CrowdStrike Falcon Next-Gen SIEM environments.
  • Configure detections, correlation rules, dashboards, reports, and alerting logic.
  • Engineer Falcon Fusion SOAR workflows for automated incident response.
  • Manage Falcon EDR policies, detections, investigations, and response actions.
  • Develop Python-based automation for SOC operations and threat-hunting activities.
  • Integrate third-party security telemetry and threat intelligence feeds.
  • Build MITRE ATT&CK aligned detection content.
  • Conduct proactive threat hunting using Falcon, Defender, and Notebook-based analytics.
  • Support Microsoft Sentinel analytics, playbooks, data connectors, and KQL content development.
  • Maintain platform documentation, SOPs, runbooks, and architecture standards.
Key Responsibilities
  • Lead engineering efforts for Falcon SIEM, SOAR, and EDR platforms.
  • Develop and tune detection use cases and correlation logic.
  • Create reusable automation and onboarding frameworks.
  • Support SOC operations through enrichment and orchestration.
  • Ensure telemetry quality, data normalization, and coverage optimization.
  • Participate in threat hunting and purple-team exercises.
  • Mentor analysts and platform engineers.
  • Support client onboarding and SOC transformation programs.
  • Drive continuous improvement and operational excellence.
Required Qualifications
  • 5-10+ years of experience in Security Operations, SIEM, SOAR, EDR, or Security Engineering.
  • Hands-on experience with CrowdStrike Falcon Next-Gen SIEM.
  • Experience with Falcon Fusion SOAR and Falcon EDR.
  • Strong knowledge of threat detection, incident response, and threat hunting.
  • Proficiency in Python, REST APIs, PowerShell, and automation frameworks.
  • Working knowledge of Microsoft Sentinel, KQL, Azure Logic Apps, and Microsoft Defender.
  • Experience with cloud platforms including Azure, AWS, and GCP.
  • Strong communication and stakeholder management skills.
Preferred Skills
  • Splunk Enterprise Security
  • Microsoft Security Copilot
  • ServiceNow Security Operations
  • Palo Alto Cortex XSOAR
  • Infrastructure as Code (Terraform, ARM, Bicep)
  • CI/CD and DevSecOps concepts
Preferred Certifications
  • CrowdStrike Certified Falcon Administrator (CCFA)
  • CrowdStrike Certified Falcon Responder (CCFR)
  • CrowdStrike Certified Falcon Hunter (CCFH)
  • Microsoft SC-200
  • Microsoft AZ-500
  • CISSP
  • CISM
  • GCIH
Experience Level

Senior Individual Contributor / Lead SOC Platform Engineer

Key Responsibilities

  • Lead engineering efforts for Falcon SIEM, SOAR, and EDR platforms.
  • Develop and tune detection use cases and correlation logic.
  • Create reusable automation and onboarding frameworks.
  • Support SOC operations through enrichment and orchestration.
  • Ensure telemetry quality, data normalization, and coverage optimization.
  • Participate in threat hunting and purple-team exercises.
  • Mentor analysts and platform engineers.
  • Support client onboarding and SOC transformation programs.
  • Drive continuous improvement and operational excellence.

Required Qualifications

  • 5-10+ years of experience in Security Operations, SIEM, SOAR, EDR, or Security Engineering.
  • Hands-on experience with CrowdStrike Falcon Next-Gen SIEM.
  • Experience with Falcon Fusion SOAR and Falcon EDR.
  • Strong knowledge of threat detection, incident response, and threat hunting.
  • Proficiency in Python, REST APIs, PowerShell, and automation frameworks.
  • Working knowledge of Microsoft Sentinel, KQL, Azure Logic Apps, and Microsoft Defender.
  • Experience with cloud platforms including Azure, AWS, and GCP.
  • Strong communication and stakeholder management skills.
Free account
Stop reading job ads. Get the ones that fit.
One free account turns this page into a shortlist built around your stack, your level and your pay.
Match on every job. Stack, seniority, pay and location, scored against your profile.
368,657 open roles. Read straight off company career pages, refreshed every day.
Unlimited applications. Every one you send is tracked in one place, on-site or on a company board.
3 tailored CVs a month. Rewritten for the exact job you are applying to. Included free.
Create a free account
Free forever. No card. Under a minute.

Your match

How well do you fit this role?
Two answers are enough for a real match. No account needed.
Check my fit
Answers stay in this browser until you create an account.

Recommended for you based on this role

Similar stack
Same company
In your city
$173k – $314k per year • In office • Full-Time • 12+ years exp • Bachelor's Degree • San Francisco
Apex
JavaScript
Node JS
Python
SQL
TypeScript
Apex
Lightning Web Components
AI/ML
Agentforce
AI Agents
Claude
Claude Code
Copilot
Cursor
LLM
RAG
DevOps
AWS
Azure
CI/CD
Docker
GCP
GitHub
Grafana
gRPC
Kubernetes
New Relic
Prometheus
Splunk
Marketing
Salesforce
QA
Cypress
JMeter
k6
Locust
Playwright
Postman
Rest-Assured
Selenium
Apply
$150k – $180k per year • In office • Full-Time • PhD • New York
Python
AI/ML
Anthropic
Anthropic SDK
Computer Vision
Fine-tuning
LangChain
LlamaIndex
LLM
OpenAI
OpenAI SDK
RAG
DevOps
AWS
Azure
GCP
Apply
$38k – $91k per year (Estimated) • Remote • Full-Time • 8+ years exp • PhD • Guadalajara
PowerShell
Python
Databases
Amazon Aurora
DynamoDB
AI/ML
Amazon SageMaker
AWS Bedrock
AWS Bedrock AgentCore
Ray
DevOps
Amazon CloudWatch
Amazon EC2
Amazon ECS
Amazon EKS
Amazon EventBridge
Amazon S3
AWS
AWS Lambda
AWS Step Functions
Azure
CI/CD
Datadog
FinOps
GCP
Git
GitLab
GitLab CI
IAM
Jenkins
JFrog Artifactory
Kubernetes
New Relic
Service Mesh
Splunk
Terraform
Cybersecurity
HIPAA
ISO 27001
PCI DSS
SOC 2
Apply
Senior AI Architect 2 hours ago
$131k – $136k per year • In office • Full-Time • 4+ years exp • Master's Degree • New York
Python
Databases
Databricks
AI/ML
Anthropic
Computer Vision
EU AI Act
LLMOps
OpenAI
DevOps
AWS
Azure
GCP
Terraform
Cybersecurity
GDPR
Apply
Remote/Hybrid • Full-Time • 3+ years exp • Bachelor's Degree • Riga
PowerShell
Python
DevOps
AWS
Azure
Azure AKS
Azure DevOps
Bicep
CI/CD
Configuration Management
Docker
FinOps
GCP
Git
GitLab
Jenkins
Kubernetes
Terraform
Apply
Stencil with React 1 day ago
In office • Hyderabad
JavaScript
Frontend
Less
React.js
Redux
Sass
Web Components
DevOps
Bitbucket
Jenkins
Apply
$32k – $69k per year (Estimated) • In office • Bachelor's Degree • Bengaluru
DevOps
CI/CD
QA
BrowserStack
LambdaTest
Apply
$11k – $39k per year (Estimated) • In office • 3+ years exp • Hyderabad
COBOL
COBOL
CICS
JCL
VSAM
Databases
Db2
IMS
Apply
In office
DevOps
Azure
Azure DevOps
Analytics
Power BI
Management
Confluence
Jira
Apply
In office
Databases
Databricks
Delta Lake
DevOps
Azure
Apply
See all jobs
This is one of many
368,657 more open roles from verified company boards, updated every day.