Administer, maintain, and optimize the Google Chronicle SIEM platform
Onboard and manage log sources from cloud, on‑prem, network, and application environments
Develop and fine‑tune Detection Rules (YARA‑L / UDM rules)
Conduct threat hunting activities and analyze large datasets using Google Chronicle search capabilities
Build custom parsers, dashboards, and investigative workbooks
Monitor SIEM platform performance, ingest pipelines, and data quality
Collaborate with SOC teams on incident detection, triage, and escalation
Integrate Chronicle with other GCP security services (SecOps, SCC, Event Threat Detection)
Implement automated workflows and playbooks (SOAR integrations if applicable)
Troubleshoot ingestion failures, parsing gaps, and connector issues
Prepare documentation for SIEM architecture, rule logic, and operational processes
Ensure alignment with security policies, regulatory compliance, and audit expectations
5+ years of experience in SOC engineering or SIEM administration
Hands‑on experience with Google Chronicle SecOps
Strong understanding of SIEM concepts, log management, and security analytics
Experience with UDM (Unified Data Model) and YARA‑L rule creation
Proficiency in log ingestion pipelines, data normalization, and enrichment
Good understanding of cybersecurity domains:
Incident response
Threat detection
Network & endpoint security
Cloud security (GCP preferred)
Strong analytical skills and experience with large‑scale data investigations
Ability to work with APIs for automation and integration
Equal employment opportunity information
KPMG India has a policy of providing equal opportunity for all applicants and employees regardless of their color, caste, religion, age, sex/gender, national origin, citizenship, sexual orientation, gender identity or expression, disability or other legally protected status. KPMG India values diversity and we request you to submit the details below to support us in our endeavor for diversity. Providing the below information is voluntary and refusal to submit such information will not be prejudicial to you.
Skills Required
- 5+ years of experience in SOC engineering or SIEM administration
- Hands-on experience with Google Chronicle SecOps
- Strong understanding of SIEM concepts, log management, and security analytics
- Experience with UDM (Unified Data Model) and YARA-L rule creation
- Proficiency in log ingestion pipelines, data normalization, and enrichment
- Good understanding of incident response, threat detection, network & endpoint security
- Cloud security knowledge (GCP preferred)
- Strong analytical skills and experience with large-scale data investigations
- Ability to work with APIs for automation and integration
What We Do
KPMG entities in India are established under the laws of India and are owned and managed (as the case may be) by established Indian professionals. Established in September 1993, the KPMG entities have rapidly built a significant competitive presence in the country. Today we operate from offices across 14 cities including in Ahmedabad, Bengaluru, Chandigarh, Chennai, Gurugram, Hyderabad, Jaipur, Kochi, Kolkata, Mumbai, Noida, Pune, Vadodara and Vijayawada. KPMG entities have a domestic client base of over 2700 companies. Our global approach to service delivery helps provide value-added services to clients. Our differentiation is derived from a rapid performance-based, industry-tailored and technology-enabled business advisory services delivered by some of the leading talented professionals in the country. KPMG professionals are grouped by industry focus and our clients are able to deal with industry professionals who speak their language. Our internal information technology and knowledge management systems enable the delivery of informed and timely business advice to clients.






