T&T | Cyber: D&R I Assistant Manager | SOC - SIEM | Mumbai
Deloitte
Deloitte
Join our dynamic cybersecurity team as an Assistant Manager focused on Security Operations Center (SOC) and SIEM technologies. This role is pivotal in protecting organizations from cyber threats and ensuring resilience.
We are looking for skilled professionals to enhance our capabilities in preventing, detecting, and responding to cyberattacks. You will play a crucial role in managing cyber risk and enabling new opportunities through robust security strategies.
Your primary focus will be reviewing and triaging security alerts, performing in-depth analysis, and managing remediation efforts. You will act as a key Incident Handler for high-impact cyber security incidents, utilizing frameworks like the Cyber Kill Chain and MITRE ATT&CK.
Responsibilities include conducting malware analysis, identifying Indicators of Compromise (IOCs), and enhancing incident response workflows. You will also be responsible for maintaining and updating security incident process documentation (Run Books) and performing log analysis across various sources to differentiate between genuine threats and false alarms.
We require candidates with 4-6 years of experience in SOC incident response and handling, with expertise in SIEM technologies such as LogRhythm, Splunk, Sentinel, or Chronicle. Experience with EDR/XDR solutions like CrowdStrike, Cortex XDR, or Microsoft Defender is essential.
Fundamental knowledge of cybersecurity concepts, network traffic analysis (TCP/IP, routing, switching), and Windows event log analysis is expected. A Bachelor’s or Master’s degree in Computer Science, Information Security, or a related field is required. Relevant certifications like CompTIA Security+, ECSA, GCFA, GCFE, or CISSP are advantageous. This is an onsite position based in Mumbai.
Deloitte
Cybersecurity