T&T | Cyber: D&R I Assistant Manager | Incident Response -SOC -SIEM | Bengaluru

Deloitte

4–7 yrs Bengaluru Full Time Hybrid (office + remote)
Deloitte logo
Posted : today
Actively hiring

Job description

Join Deloitte's Cyber team as an Assistant Manager in Bengaluru, focusing on Incident Response within our Security Operations Center (SOC). This role is crucial for protecting organizations from cyberattacks and ensuring resilience. You will contribute to building and maintaining strong client relationships while managing cyber risks effectively.

Our Cybersecurity practice empowers organizations to be secure, vigilant, and resilient. We go beyond traditional prevention and response, integrating cyber risk management into strategic development to unlock new opportunities.

Responsibilities

As an Assistant Manager, you will be responsible for the initial triage and classification of security incidents, monitoring alerts from sources like Microsoft Sentinel SIEM, and investigating potential security breaches. You will escalate confirmed incidents to higher-level analysts, meticulously document incident details, and assist in containing and mitigating security threats. Responsibilities also include leveraging threat intelligence to enhance detection, generating security reports, and participating in post-incident reviews to refine SOC processes.

Maintaining up-to-date knowledge of the latest security trends, vulnerabilities, and attack vectors is essential. A mandatory requirement for this role is the willingness to work in a 24x7 rotational shift model, including night shifts, to ensure continuous security coverage.

Qualifications

This role requires 4 to 7 years of relevant experience in Cyber Security L2, with a strong understanding of cybersecurity principles and domains such as Endpoint, Network, Database, and Cloud Security. You should be proficient in technologies like IPS, WAF, Firewall, Deception, Cloud Security, AV, and EDR.

Key responsibilities include conducting senior-level log analysis, proactive monitoring, and responding to network and security incidents. The ability to implement and maintain extensive Security Operation Policies and procedures, particularly for AWS cloud environments, is important. You will also perform threat hunting and research using tools like Cortex, Shodan, and Sentinel, and identify Indicators of Compromise through malware analysis.

Candidates should be skilled in advanced security event detection and threat analysis for complex incidents. Experience with Sentinel, XSOAR, Qualys, and the MITRE Framework Attack Methodology is highly valued. An educational background with a B.E./B.Tech (Tier 1/2) or a Master’s degree in Information Security, Computer Science, or a related field is required. Preferred certifications include SC-200, AZ500, CompTIA Security+, and CEH.

Essential Skills

Incident ResponseSOCSIEMMicrosoft SentinelCybersecurityEndpoint SecurityNetwork SecurityDatabase SecurityCloud SecurityIPSWAFFirewallDeception TechnologyAVEDRLog AnalysisSecurity OperationsAWS CloudThreat HuntingCortexShodanIndicator of Compromise (IOC)Malware AnalysisThreat AnalysisXSOARQualysMITRE ATT&CK Framework

Good to Have

SC-200: Microsoft Security Operations AnalystAZ500CompTIA Security+CEH

Highlights

  • Actively hiring

More Details

RoleT&T | Cyber: D&R I Assistant Manager | Incident Response -SOC -SIEM | Bengaluru
IndustryInformation Technology & Services, Cybersecurity
DepartmentInformation Security Analyst, Incident Response Analyst, Security Operations Center (SOC) Analyst
Employment TypeFull Time, Hybrid (office + remote)

About the Company

Deloitte logo

Deloitte

Information Technology & Services

T&T | Cyber: D&R I Assistant Manager | Incident Response -SOC -SIEM | Bengaluru at Deloitte | SkillMX | SkillMX