T&T | Cyber: D&R I Assistant Manager | Incident Response -SOC -SIEM | Bengaluru
Deloitte
Deloitte
Join Deloitte's Cyber team as an Assistant Manager in Bengaluru, focusing on Incident Response within our Security Operations Center (SOC). This role is crucial for protecting organizations from cyberattacks and ensuring resilience. You will contribute to building and maintaining strong client relationships while managing cyber risks effectively.
Our Cybersecurity practice empowers organizations to be secure, vigilant, and resilient. We go beyond traditional prevention and response, integrating cyber risk management into strategic development to unlock new opportunities.
As an Assistant Manager, you will be responsible for the initial triage and classification of security incidents, monitoring alerts from sources like Microsoft Sentinel SIEM, and investigating potential security breaches. You will escalate confirmed incidents to higher-level analysts, meticulously document incident details, and assist in containing and mitigating security threats. Responsibilities also include leveraging threat intelligence to enhance detection, generating security reports, and participating in post-incident reviews to refine SOC processes.
Maintaining up-to-date knowledge of the latest security trends, vulnerabilities, and attack vectors is essential. A mandatory requirement for this role is the willingness to work in a 24x7 rotational shift model, including night shifts, to ensure continuous security coverage.
This role requires 4 to 7 years of relevant experience in Cyber Security L2, with a strong understanding of cybersecurity principles and domains such as Endpoint, Network, Database, and Cloud Security. You should be proficient in technologies like IPS, WAF, Firewall, Deception, Cloud Security, AV, and EDR.
Key responsibilities include conducting senior-level log analysis, proactive monitoring, and responding to network and security incidents. The ability to implement and maintain extensive Security Operation Policies and procedures, particularly for AWS cloud environments, is important. You will also perform threat hunting and research using tools like Cortex, Shodan, and Sentinel, and identify Indicators of Compromise through malware analysis.
Candidates should be skilled in advanced security event detection and threat analysis for complex incidents. Experience with Sentinel, XSOAR, Qualys, and the MITRE Framework Attack Methodology is highly valued. An educational background with a B.E./B.Tech (Tier 1/2) or a Master’s degree in Information Security, Computer Science, or a related field is required. Preferred certifications include SC-200, AZ500, CompTIA Security+, and CEH.
Deloitte
Information Technology & Services