T&T | Cyber: D&R I Assistant Manager | Incident Management -SOC -SIEM | Bengaluru

Deloitte

4–7 yrs Bengaluru Full Time Work from office
Deloitte logo
Posted : 1 week ago
Actively hiring

Job description

Join Deloitte's Cyber team as an Assistant Manager in Bengaluru, focusing on Incident Management. This role is pivotal in protecting organizations from cyber threats and ensuring resilience. You'll be at the forefront of preventing, detecting, and responding to cyberattacks, managing cyber risk to enable new opportunities. Your expertise will help embed robust cyber risk management strategies from the outset of development.

As a key member of our Cybersecurity practice, you will cultivate strong client relationships and deliver exceptional service. This position requires a proactive approach to safeguarding valuable assets and information.

Responsibilities

Your responsibilities will include performing initial incident triage and classification, closely monitoring security alerts from SIEM tools like Microsoft Sentinel, and investigating potential security incidents. You will escalate confirmed incidents to senior analysts and document all incident details meticulously.

Key duties involve assisting in threat containment and mitigation, leveraging threat intelligence to enhance detection, and generating security reports for stakeholders. Participating in post-incident reviews to identify process improvements and staying current with emerging security trends and vulnerabilities are also essential.

A mandatory requirement for this role is the willingness to work in a 24x7 rotational shift model, including night shifts.

Qualifications

This role requires 4 to 7 years of experience in Cyber Security L2, with a strong foundation in security domains such as Endpoint, Network, Database, and Cloud technologies. Proficiency in security tools like IPS, WAF, Firewall, AV, and EDR is crucial.

Candidates must be skilled in senior-level log analysis, proactive monitoring, and incident response for network and security events. Experience in implementing and maintaining security policies and procedures, especially within AWS cloud environments, is expected.

Proactive threat hunting using tools like Cortex, Shodan, and Sentinel, along with identifying Indicators of Compromise through static and dynamic analysis of malware, are key skills. Familiarity with Sentinel, XSOAR, Qualys, and the MITRE Framework Attack Methodology is required. An educational background including a B.E./B.Tech or a Master’s degree in Information Security, Computer Science, or a related field is necessary. Preferred certifications include SC-200, AZ500, CompTIA Security+, and CEH.

Essential Skills

Incident ManagementSecurity Operations Center (SOC)SIEMMicrosoft SentinelEndpoint SecurityNetwork SecurityDatabase SecurityCloud SecurityIPSWAFFirewallDeception TechnologyAntivirus (AV)Endpoint Detection and Response (EDR)Log AnalysisThreat IntelligenceIndicator of Compromise (IOC)Malware AnalysisThreat AnalysisXSOARQualysMITRE ATT&CK FrameworkAWS CloudCortexShodan

Good to Have

SC-200: Microsoft Security Operations AnalystAZ500CompTIA Security+CEH

Highlights

  • Actively hiring

More Details

RoleT&T | Cyber: D&R I Assistant Manager | Incident Management -SOC -SIEM | Bengaluru
IndustryCybersecurity
DepartmentInformation Technology, Security
Employment TypeFull Time, Work from office

About the Company

Deloitte logo

Deloitte

Cybersecurity