1

Sentinel Siem Jobs in Indiana (NOW HIRING)

CSSP Analyst, Senior P42- P45

Indianapolis, IN · On-site

$87K - $113K/yr

... level SIEM analysis (Azure Sentinel, ArcSight, Splunk) • Experience with threat hunting and event correlation • Incident response and digital forensics experience • Knowledge of malware ...

Architect, Security Products

Carmel, IN · Remote

$61.50 - $79.50/hr

Experience with SIEM integrations (Syslog, Splunk, Sentinel, QRadar), NAC/identity, IDS use cases (Dragos, Claroty, Nozomi Networks, etc.) and zero trust concepts. * Certifications (nice to have)

CSSP Analyst, Senior

Indianapolis, IN · On-site

$91K - $120K/yr

Expert-level SIEM analysis (Azure Sentinel, ArcSight, Splunk) * Experience with threat hunting and event correlation * Incident response and digital forensics experience * Knowledge of malware ...

Architect, Security Products

Carmel, IN · On-site

$61.50 - $79.50/hr

Experience with SIEM integrations (Syslog, Splunk, Sentinel, QRadar), NAC/identity, IDS use cases (Dragos, Claroty, Nozomi Networks, etc.) and zero trust concepts. * Certifications (nice to have)

Manager, Cyber Security

Indianapolis, IN · Hybrid

$150K - $165K/yr

Proficiency with SIEM platforms (e.g., Splunk, Microsoft Sentinel, QRadar) * Experience with vulnerability management tools (e.g., Tenable, Qualys, Rapid7) * Working knowledge of cloud security in ...

Manager, Cyber Security

Indianapolis, IN · On-site

$150K - $165K/yr

Proficiency with SIEM platforms (e.g., Splunk, Microsoft Sentinel, QRadar) * Experience with vulnerability management tools (e.g., Tenable, Qualys, Rapid7) * Working knowledge of cloud security in ...

Experience with SIEM integrations (Syslog, Splunk, Sentinel, QRadar), NAC/identity, IDS use cases (Dragos, Claroty, Nozomi Networks, etc.) and zero trust concepts. * Experience supporting M&A / ...

next page

Showing results 1-20

Sentinel Siem information

What is a Sentinel SIEM?

Sentinel SIEM refers to Microsoft Sentinel, a cloud-native security information and event management (SIEM) solution. It helps organizations detect, investigate, and respond to security threats across their entire enterprise by collecting and analyzing data from various sources. Sentinel SIEM provides advanced threat detection, automated response, and comprehensive visibility into security events, making it easier for security teams to protect their environments. Its integration with Microsoft Azure and other platforms enables scalable and intelligent security operations.

What are some common challenges faced by professionals working with Microsoft Sentinel SIEM, and how can they be addressed?

Professionals working with Microsoft Sentinel SIEM often encounter challenges such as keeping up with evolving security threats, managing a high volume of alerts, and customizing detection rules to fit their organization's needs. Addressing these issues typically involves ongoing tuning of analytic rules, leveraging automation features like playbooks to reduce manual workload, and regularly collaborating with IT and security teams to ensure that the SIEM is aligned with current business risks. Continuous training and staying updated with Microsoft's documentation and community forums can also help professionals effectively manage and optimize Sentinel deployments.

What are the key skills and qualifications needed to thrive as a Sentinel SIEM specialist?

To thrive as a Sentinel SIEM Specialist, you need a solid understanding of cybersecurity principles, threat analysis, and experience with security incident and event management, often supported by a degree in information security or related certifications like Microsoft Certified: Security Operations Analyst Associate. Proficiency with Microsoft Sentinel, Kusto Query Language (KQL), and familiarity with security orchestration and automation tools are typically required. Strong analytical thinking, attention to detail, and effective communication are essential soft skills for interpreting data and coordinating responses. These skills are crucial for quickly detecting, investigating, and mitigating security threats to protect organizational assets.

What is the difference between Sentinel Siem vs Splunk Security Analyst?

AspectSentinel SiemSplunk Security Analyst
CertificationsMicrosoft Certified: Security, Compliance, and Identity Fundamentals, Azure Security EngineerSplunk Certified User, Splunk Core Certified Power User
Work EnvironmentCloud-based SIEM platform, integrated with Azure servicesOn-premises or cloud, data analysis and security monitoring
Industry UsagePrimarily used in organizations leveraging Microsoft Azure and cloud securityUsed across various industries for security data analysis and monitoring

Sentinel Siem focuses on cloud-native security monitoring within Microsoft Azure environments, while Splunk Security Analyst specializes in analyzing security data across diverse platforms. Both roles require knowledge of security principles and data analysis, but Sentinel Siem emphasizes Azure integration, whereas Splunk offers broader data handling capabilities.

What are popular job titles related to Sentinel Siem jobs in Indiana? For Sentinel Siem jobs in Indiana, the most frequently searched job titles are:
What job categories do people searching Sentinel Siem jobs in Indiana look for? The top searched job categories for Sentinel Siem jobs in Indiana are:
What cities in Indiana are hiring for Sentinel Siem jobs? Cities in Indiana with the most Sentinel Siem job openings:

Azure, Windows & Linux System Engineer

Belcan

Elkhart, IN • On-site

Contractor

Medical, Dental, Vision, Life, Retirement

Re-posted 12 hours ago


Job description


Job Title: Azure, Windows & Linux System Engineer
Location: Elkhart, IN
Zip Code: 46514
Start Date: Right Away
Keywords: #ElkhartJobs; #SystemEngineerjobs;
Job Description:
The Azure, Windows & Linux System Engineer will leverage automation (Ansible, PowerShell, Bash) to execute large-scale deployments across Windows, Linux, and operational technology (OT) environments. They will configure Azure components, including Log Analytics Workspaces, resource groups, RBAC, and
service principals, and manage Sentinel data ingestion through Azure Monitor Agent (AMA), Data
Collection Rules (DCRs), and syslog/CEF forwarders.
Position Objectives:
* Design, implement, and configure MDR/SIEM/EDR solutions using Microsoft Sentinel and
Microsoft Defender for Endpoint.
* Lead large-scale rollout of endpoint agents across Azure, Windows, Linux, and OT
environments.
* Develop and maintain Ansible playbooks to automate deployments and configuration at
scale.
* Create and optimize PowerShell and Bash scripts to streamline onboarding, validation, and
troubleshooting processes.
* Provision and manage Azure resources, including Log Analytics Workspaces, resource
groups, RBAC roles, and service principals.
* Configure and maintain Sentinel data ingestion pipelines using Azure Monitor Agent (AMA)
and Data Collection Rules (DCRs).
* Implement and maintain syslog/CEF forwarding from network and security devices.
* Integrate logs from platforms such as Check Point and Extreme Networks into the SIEM.
* Deploy and onboard Microsoft Defender for Endpoint across Windows and Linux systems.
* Validate telemetry flow and ensure endpoints are correctly reporting to the SIEM.
* Troubleshoot Windows Server (2019/2022/2025) and Active Directory issues, including
GPOs, service accounts, and RBAC permissions.
* Perform Linux system administration tasks on Rocky Linux and Ubuntu (package
management, system services, firewall configuration).
* Ensure all implementations align with organizational security standards and PCI
compliance requirements.
* Maintain awareness of PCI-scoped environments during deployment and data ingestion
activities.
* Work cross-functionally with security, infrastructure, and operations teams to ensure
successful deployments.
* Create and maintain technical documentation, runbooks, and operational procedures.
* Conduct testing and validation of data pipelines, detections, and endpoint coverage.
* Continuously improve deployment processes and system performance through automation
and best practices
Qualifications:
* Ansible playbook development for at-scale Windows/Linux/OT rollout
* Azure administration - Log Analytics Workspaces, resource groups, RBAC, service
principals
* Sentinel data ingestion - AMA, DCRs, syslog/CEF forwarders
* Microsoft Defender for Endpoint deployment on Windows and Linux servers
* Rocky Linux and Ubuntu administration competence for troubleshooting package
management, systems, firewalls on the Linux side; GPO, services, and AD account/RBAC
* Windows Server 2019/2022/2025 and Active Directory competence for troubleshooting
GPO, service accounts, and AD RBAC for the DC/server agent rollout
* Check Point and Extreme Networks basic knowledge (for the syslog server)
* PowerShell and Bash scripting
* PCI scope awareness
Internal Responsibilities:
* Adheres to all company policies and procedures including, but not limited to those identified within the Standards of Business Conduct and the Employee Handbook, as may be amended from time to time. Adheres to all applicable laws and regulations and the company's governance/compliance program.
* Becomes knowledgeable of internal control responsibilities through training and instruction. Responsible and accountable for internal control performance within their area of responsibility. Participates in the internal controls self-assessment process.
* Ensures concerns with internal control design or performance and process changes that impact internal control execution are communicated to management.
* Possesses a full and complete understanding of the internal control requirements within their area of ownership/responsibility. Responsible and accountable for internal control implementation and performance within their area of ownership/responsibility. Ensures proper internal control change management protocol is followed.
Benefits:
* Medical / Health Benefits with multiple plan options, Flexible Spending Accounts, Dental and Vision
* 401k
* On the job training / cross-training
* Life Insurance, disability insurance
* Voluntary life insurance for family members available.
* Accident and critical illness insurance optional.
* Scheduled performance reviews
If you are interested in this role, please apply via the apply now link provided. Our overriding goal is to provide quality staffing solutions that help people, organizations, and communities succeed. Belcan is a leading provider of qualified personnel to many of the world's most respected enterprises. We offer excellent opportunities for contract, temporary, temp-to-hire, and direct assignments. We are the employer of choice for thousands worldwide. For more information, please visit our website at Belcan.com
EOE/F/M/D/V

Belcan logo

About Belcan

Sourced by ZipRecruiter

Belcan is a leading provider of qualified personnel to many of the world's most respected enterprises. We offer excellent opportunities for contract/temporary, temp-to-hire, and direct assignments in the engineering, IT, and professional fields. We are the employer of choice for thousands worldwide. Our overriding goal is to provide quality staffing solutions that help people, organizations, and communities succeed.

Industry

It services

Company size

5,001 - 10,000 Employees

Headquarters location

Cincinnati, OH, US

Year founded

1958