This position will be on-site reporting to our Bangalore office, M-F.
This team provides 24/7 support. This role requires shift flexibility, including the ability to rotate between days, mids, and nights
This MDR Engineer will be dedicated to onboarding and maintaining SIEM environments, in support of Optiv MSS clients.
The MDR Engineer, MSS works in Optiv Security’s 24x7x365 Security Operations Center as a member of the Managed Security Services (MSS) team. The employee will be responsible for creation of procedures, implementation of processes and solutions across internal and client environments. Experience with SIEM or MDR products is necessary. The Security Engineer will work closely with Senior Security Engineers, Senior Engineers, Solution Architects, other Security Engineers and clients to complete high profile, critical services to existing Managed Security Service clients.
How you’ll make an impact
Serve as a primary responder for Managed Security customer systems, taking ownership of client configuration issues and tracking through resolution.
Act as a point of escalation for junior level Engineers and provide guidance and mentoring.
Advise best practice on SIEM/MDR products to both technical and relatively non-technical personnel.
Provide remote consulting services via interactive client sessions to assist with implementation of multiple product vendors and technologies.
Implement and configure SIEM/MDR software and appliance-based products in large enterprise and Government environments.
Develop and maintain security content and reporting.
Perform knowledge transfers to clients regarding security and system configuration awareness.
What we’re looking for
3+ years professional experience working in a technical team environment.
2+ years professional experience maintaining SIEM or infrastructure systems in the Information Security field
College degree or equivalent training with experience working in a Security Operations Center, Managed Security, or client network environment.
Experience with LogRhythm SIEM is required. Prefer experience with additional SIEM/MDR security products such as: QRadar, Chronicle, Devo, Splunk, and infrastructure components such as proxies, firewalls, IDS/IPS, DLP, etc.
Understanding of network architecture and implementation is a must; ideal candidate will have worked with network security analysis.
Excellent time management, reporting, and communication skills.
Ability to participate in on-call support
Demonstrated experience and success in a Managed Service client environment
Ability to work greater than 40 hours per, week as needed
Experience working with Internal and client Ticketing and Knowledge Base Systems for Incident and Problem tracking as well as procedures. (i.e. Jira, Confluence, etc.).
Experience with various SIEM security products such as: Exabeam, Chronicle, Devo, LogRhythm, QRadar, Splunk, and infrastructure components such as proxies, firewalls, IDS/IPS, DLP etc.
General security knowledge (GIAC, CISSP, CCSE, CISA, HBSS, NSA, CEH, Cisco Security, Security +, or other security certifications).
An understanding of a wide array of server grade applications such as: DBMS, Exchange, DNS, SMTP, IIS, Apache, SharePoint, Active Directory, Identity Management, Patch Management, LDAP, SQL, and others.
Training and experience in one or more non-SIEM network security products to include: Enterprise endpoint security products, Network components such as Firewalls and Proxies to include Palo Alto / Checkpoint / Juniper / McAfee / Cisco / Blue Coat / Imperva or other similar network security products.
CCNA, CCDA, CCSA, CCIE, CISSP, CEH, or MCSE.
Professional experience working with networks and network architecture.
#LI-SK2
What you can expect from Optiv
A company committed to our inclusive value through our Employee Resource Groups
Work/life balance
Professional training resources
Creative problem-solving and the ability to tackle unique, complex projects
Volunteer Opportunities. “Optiv Chips In” encourages employees to volunteer and engage with their teams and communities.
The ability and technology necessary to productively work remotely/from home (where applicable)
EEO Statement
Optiv is an equal opportunity employer. All qualified applicants for employment will be considered without regard to race, color, religion, sex, gender identity or expression, sexual orientation, pregnancy, age 40 and over, marital status, genetic information, national origin, status as an individual with a disability, military or veteran status, or any other basis protected by federal, state, or local law.
Optiv respects your privacy. By providing your information through this page or applying for a job at Optiv, you acknowledge that Optiv will collect, use, and process your information, which may include personal information and sensitive personal information, in connection with Optiv’s selection and recruitment activities. For additional details on how Optiv uses and protects your personal information in the application process, click here to view our Applicant Privacy Notice. If you sign up to receive notifications of job postings, you may unsubscribe at any time.
Skills Required
- 3+ years of professional experience in a technical team environment
- 2+ years maintaining SIEM or infrastructure systems in information security
- College degree or equivalent training and experience in a Security Operations Center, managed security, or client network environment
- Experience with LogRhythm SIEM
- Understanding of network architecture and implementation
- Network security analysis experience
- Excellent time management, reporting, and communication skills
- Ability to participate in on-call support
- Managed service client environment experience
- Ability to work more than 40 hours per week as needed
- Experience with ticketing and knowledge base systems such as Jira and Confluence
- Experience with SIEM products including Exabeam, Chronicle, Devo, LogRhythm, QRadar, or Splunk
- Experience with proxies, firewalls, IDS/IPS, and DLP
- General security knowledge or relevant certifications such as GIAC, CISSP, CCSE, CISA, HBSS, NSA, CEH, Cisco Security, or Security+
- Understanding of server applications including DBMS, Exchange, DNS, SMTP, IIS, Apache, SharePoint, Active Directory, identity management, patch management, LDAP, and SQL
- Experience with enterprise endpoint security, firewalls, and proxies including Palo Alto, Check Point, Juniper, McAfee, Cisco, Blue Coat, or Imperva
- CCNA, CCDA, CCSA, CCIE, CISSP, CEH, or MCSE certification
- Professional experience working with networks and network architecture
- Ability to work on-site in Bangalore Monday through Friday with rotating day, mid, and night shifts
Optiv Compensation & Benefits Highlights
The following summarizes recurring compensation and benefits themes identified from responses generated by popular LLMs to common candidate questions about Optiv and has not been reviewed or approved by Optiv.
-
Retirement Support — Immediate vesting with a clear 401(k) match and a solid retirement setup are emphasized in official materials. This positions retirement benefits as a dependable part of the total package.
-
Leave & Time Off Breadth — A flexible, no‑accrual “Recharge” policy for eligible exempt roles and traditional PTO for non‑exempt roles are highlighted. Hybrid/remote flexibility also appears frequently across role descriptions.
-
Healthcare Strength — Comprehensive medical, dental, and vision options with FSA/HSA (including a company HSA contribution) are described. Company‑paid life, AD&D, and short‑/long‑term disability further strengthen core protections.
Optiv Insights
What We Do
Optiv is a security solutions integrator – “one-stop” trusted partner with a singular focus on cybersecurity. Our end-to-end cybersecurity capabilities span risk management and transformation, cyber digital transformation, threat management, security operations, identity and data management, and integration and innovation, helping organizations realize stronger, simpler and more cost-efficient cybersecurity programs that support business requirements and outcomes. At Optiv, we are modernizing cybersecurity to enable clients to innovate their consumption models, integrate infrastructure and technology to maximize value, achieve measurable outcomes, and realize complete solutions and business alignment.








