T&T | Cyber: D&R I Assistant Manager | Incident Management -SOC -SIEM | Bengaluru
Deloitte
Deloitte
Join Deloitte's Cyber team as an Assistant Manager in Bengaluru, focusing on Incident Management. This role is pivotal in protecting organizations from cyber threats and ensuring resilience. You'll be at the forefront of preventing, detecting, and responding to cyberattacks, managing cyber risk to enable new opportunities. Your expertise will help embed robust cyber risk management strategies from the outset of development.
As a key member of our Cybersecurity practice, you will cultivate strong client relationships and deliver exceptional service. This position requires a proactive approach to safeguarding valuable assets and information.
Your responsibilities will include performing initial incident triage and classification, closely monitoring security alerts from SIEM tools like Microsoft Sentinel, and investigating potential security incidents. You will escalate confirmed incidents to senior analysts and document all incident details meticulously.
Key duties involve assisting in threat containment and mitigation, leveraging threat intelligence to enhance detection, and generating security reports for stakeholders. Participating in post-incident reviews to identify process improvements and staying current with emerging security trends and vulnerabilities are also essential.
A mandatory requirement for this role is the willingness to work in a 24x7 rotational shift model, including night shifts.
This role requires 4 to 7 years of experience in Cyber Security L2, with a strong foundation in security domains such as Endpoint, Network, Database, and Cloud technologies. Proficiency in security tools like IPS, WAF, Firewall, AV, and EDR is crucial.
Candidates must be skilled in senior-level log analysis, proactive monitoring, and incident response for network and security events. Experience in implementing and maintaining security policies and procedures, especially within AWS cloud environments, is expected.
Proactive threat hunting using tools like Cortex, Shodan, and Sentinel, along with identifying Indicators of Compromise through static and dynamic analysis of malware, are key skills. Familiarity with Sentinel, XSOAR, Qualys, and the MITRE Framework Attack Methodology is required. An educational background including a B.E./B.Tech or a Master’s degree in Information Security, Computer Science, or a related field is necessary. Preferred certifications include SC-200, AZ500, CompTIA Security+, and CEH.
Deloitte
Cybersecurity