T&T | Cyber: D&R | Assistant Manager | SOC - SIEM - Incident Response & Handling | Mumbai, Hyderabad
Deloitte
Deloitte
Join Deloitte's Cybersecurity team as an Assistant Manager in our Security Operations Center (SOC), focusing on SIEM and Incident Response. You will play a crucial role in safeguarding organizations by preventing cyberattacks and protecting critical assets. This position offers the opportunity to manage cyber risk effectively and enable new business opportunities.
Our Cyber practice helps clients be secure, vigilant, and resilient. We go beyond preventing and responding to attacks, embedding cyber risk management into the core of strategic development for enhanced information and technology risk oversight.
As an Assistant Manager, you will be responsible for reviewing and triaging security alerts, performing in-depth analysis, and guiding remediation efforts. You will act as a Security Incident Handler for high-impact incidents, conducting malware analysis and identifying Indicators of Compromise (IOCs).
Key duties include: - Analyzing security alerts and determining appropriate actions. - Developing and maintaining incident response processes and documentation. - Enhancing workflows for efficient incident response and mitigation. - Performing log analysis across various sources to differentiate threats from false alarms. - Utilizing frameworks like Cyber Kill Chain and MITRE ATT&CK for incident response and reporting.
We are seeking candidates with 4-6 years of experience in SOC Incident Response and Handling. A strong background in SIEM technologies such as LogRhythm, Splunk, Sentinel, or Chronicle is essential. Experience with EDR/XDR solutions like CrowdStrike, Cortex XDR, or Microsoft Defender is highly desirable.
Ideal candidates will possess: - In-depth knowledge of cybersecurity concepts, attack techniques, and threat vectors. - A solid understanding of network traffic analysis (TCP/IP, routing, switching). - Proficiency in incident handling, threat hunting, and SOC operations. - Familiarity with exploit and vulnerability analysis. - A Bachelor's or Master's degree in Computer Science, Information Security, or a related field. - Certifications such as CompTIA Security+, ECSA, GCFA, GCFE, or CISSP are a plus.
Deloitte
Information Technology & Services