onsite
Cyber Security Analyst - SIEM & Threat Hunting - KPMG
Security Engineer
Cyber Security Analyst focused on SIEM monitoring, threat hunting, and incident response using Azure Sentinel, Splunk, and Python scripting to detect, analyze, and remediate security events across enterprise environments.
About the role
Key Responsibilities
- Actively monitor, analyze, and triage SIEM alerts using correlation rules across Azure Sentinel, Splunk, RSA, and LogRhythm platforms.
- Conduct malware and phishing email analysis, providing actionable insights for content fine‑tuning and use‑case enablement.
- Perform proactive threat hunting on network flow, user behavior, and threat intelligence feeds to identify advanced threats.
- Raise and manage incidents in Pastebin, following established playbooks and incident response procedures.
- Collaborate with cross‑functional teams to refine detection rules and improve overall security posture.
Requirements
- Strong knowledge of cyber security fundamentals, threat hunting, and incident response.
- Hands‑on experience with SIEM solutions: Azure Sentinel, Splunk, RSA, LogRhythm.
- Proficient in Python scripting for automation and data analysis.
- Familiarity with Windows Active Directory, operating systems, and server environments.
- Excellent analytical, communication, and problem‑solving skills.