T&T | Cyber: D&R | Assistant Manager I Security Information and Event Management (SIEM) I Bangalore

Deloitte

5+ yrs Bengaluru Full Time Work from office
Deloitte logo
Posted : yesterday
Actively hiring

Job description

Join a leading cybersecurity team dedicated to protecting organizations from cyber threats. We focus on building resilient systems that prevent attacks and secure valuable assets. Our approach integrates cyber risk management into strategic development, enabling effective management of information and technology risks. Explore opportunities within our Cybersecurity division and contribute to a secure digital future.

Responsibilities

Monitor security alerts and events using SIEM, performing initial triage and classification of incidents. Investigate potential security breaches, escalating confirmed incidents to the appropriate teams. Document incident details and actions taken, assisting in threat containment and mitigation. Utilize threat intelligence to enhance detection capabilities and generate security reports. Participate in post-incident reviews to refine SOC processes and suggest new use cases for improved threat detection. Correlate data from diverse sources to identify and respond to security events, escalating critical incidents as needed. Engage in threat hunting and communicate findings to stakeholders, staying abreast of the latest security trends and vulnerabilities.

Qualifications

A Bachelor's degree in Computer Science, Information Technology, or a related field is required. Candidates must possess a minimum of 5 years of relevant experience in cybersecurity, with a strong foundation in networking and security fundamentals. Proficiency in cybersecurity principles and domains like endpoint, network, database, and cloud security is essential. Experience with security technologies such as IPS, WAF, Firewalls, and EDR is crucial. The role demands expertise in senior-level log analysis, incident response, and security policy implementation, including AWS cloud. Familiarity with threat hunting tools like Cortex and Shodan, and frameworks like MITRE, is expected. Holding certifications such as Security+, ECSA, GCFA, GCFE, or any SIEM certification is a requirement. This position mandates working from the office in a 24x7 rotational shift model.

Essential Skills

Cyber Security PrinciplesEndpoint SecurityNetwork SecurityDatabase SecurityCloud SecurityIPSWAFFirewallDeception TechnologyAVEDRLog AnalysisIncident ResponseSecurity OperationsAWS CloudThreat HuntingCortexShodanQradarIndicator of Compromise (IOC)Malware AnalysisDemisto/XSOARQualysMITRE FrameworkSecurity+ECSAGCFAGCFESIEM Certification

Highlights

  • Actively hiring

More Details

RoleT&T | Cyber: D&R | Assistant Manager I Security Information and Event Management (SIEM) I Bangalore
IndustryInformation Technology & Services
DepartmentCybersecurity, Operations
Employment TypeFull Time, Work from office

About the Company

Deloitte logo

Deloitte

Information Technology & Services