T&T | Cyber: D&R | Deputy Manager | SOC - SIEM - Incident Response & Handling | Mumbai

Deloitte

6–10 yrs Mumbai Full Time Work from office
Deloitte logo
Posted : yesterday
Actively hiring

Job description

Join a leading cybersecurity team focused on preventing and responding to cyberattacks, safeguarding valuable assets, and building resilience. We embed cyber risk management into strategy development to effectively manage information and technology risks.

This role involves managing cyber threats by analyzing escalations, leading incident response efforts, and developing advanced defense strategies. You will play a crucial part in maintaining a secure environment for our clients.

Responsibilities

As a Deputy Manager in our SOC, you will handle escalated L1/L2 incidents, spearhead critical incident response including containment and recovery, and coordinate remediation across various technical teams. Develop advanced response playbooks, conduct in-depth analysis of logs and forensic data, and perform malware analysis and threat hunting.

You will also be responsible for developing SIEM use cases, performing root-cause analysis, and recommending security enhancements. Build automation scripts, refine operational procedures, and mentor junior analysts. Effectively communicate findings, risks, and recommendations to stakeholders, while staying updated on the latest threats and security best practices.

Qualifications

We are seeking a Deputy Manager with 6-10 years of experience in incident response and SIEM technologies. A strong grasp of incident-response frameworks like NIST and SANS, coupled with deep knowledge of networking, OS, cloud, and endpoint security is essential.

Proficiency in SIEM, SOAR, EDR/XDR, threat intelligence, and forensic tools is required. Expertise in advanced incident investigation, digital forensics, and malware analysis is crucial. Candidates should have a strong understanding of attacker tactics and MITRE ATT&CK framework, with experience in threat hunting and detection engineering.

Working knowledge of scripting languages such as Python, PowerShell, or Bash is necessary. A Bachelor’s or Master’s degree in Computer Science, Information Security, or a related field is expected. Relevant certifications like CISSP, CISM, or CEH are highly preferred. This role requires you to work from the office in Mumbai.

Essential Skills

SIEMIncident ResponseLog AnalysisNetwork SecurityEndpoint SecurityThreat HuntingMalware AnalysisDigital ForensicsPythonPowerShellBashMITRE ATT&CKNISTSANS

Good to Have

LogRhythmSplunkSentinelChronicleSOARUEBAEDR/XDRThreat IntelligenceNetwork MonitoringForensic ToolsReverse EngineeringISO 27001CISSPCISMITILPMPCISACEH

Highlights

  • Actively hiring

More Details

RoleT&T | Cyber: D&R | Deputy Manager | SOC - SIEM - Incident Response & Handling | Mumbai
IndustryCybersecurity, Information Technology & Services
DepartmentInformation Security Analyst, Security Operations Center (SOC) Analyst, Incident Responder
Employment TypeFull Time, Work from office

About the Company

Deloitte logo

Deloitte

Cybersecurity

T&T | Cyber: D&R | Deputy Manager | SOC - SIEM - Incident Response & Handling | Mumbai at Deloitte | SkillMX | SkillMX