T&T | Cyber: D&R I Consultant I SOC Ops | Mumbai

Deloitte

3–5 yrs Mumbai Full Time Work from office
Deloitte logo
Posted : 1 week ago
Actively hiring

Job description

Join Deloitte's Cyber team as a D&R I Consultant, focusing on Security Operations in Mumbai. This role is crucial for helping organizations prevent cyberattacks and protect their valuable assets. You will be part of a team that embeds cyber risk management into strategy development, enabling more effective handling of information and technology risks. Explore how we manage cyber resilience and unleash new opportunities through robust security practices.

Responsibilities

Investigate security alerts escalated by SOC L1 using SIEM, EDR, XDR, UEBA, NDR, Email Security, and other advanced platforms. Conduct in-depth analysis of security events to pinpoint scope, impact, and root cause. Validate true positives and eliminate false positives through meticulous log analysis. Classify incidents based on their severity and potential business impact.

Execute containment, eradication, and recovery activities according to established incident response procedures. Escalate complex incidents to L3 or dedicated Incident Response teams as necessary. Analyze indicators of compromise (IOCs), including IPs, URLs, domains, file hashes, and email artifacts. Correlate events across multiple security technologies to detect sophisticated cyber attacks.

Identify malicious behavior patterns using the MITRE ATT&CK framework and Cyber Kill Chain methodologies. Investigate various threats such as phishing, malware, ransomware, insider threats, privilege misuse, and suspicious authentication activities. Perform detailed endpoint investigations utilizing EDR/XDR platforms.

Qualifications

We seek a professional with 3-5 years of experience in the cybersecurity domain, ideally with relevant OEM certifications. A strong understanding of SOC operations and SIEM technologies like QRadar, Splunk, Sentinel, or Chronicle is essential. Proficiency in EDR/XDR solutions such as CrowdStrike, Cortex XDR, or Microsoft Defender is required.

Familiarity with SOAR platforms, Windows and Linux security, Active Directory, Network Security, Firewalls, DNS, and Proxy configurations is expected. Candidates should possess a Bachelor's or Master's degree in Computer Science, Information Security, or a closely related field.

Essential Skills

SIEMEDRXDRUEBANDREmail SecurityLog AnalysisIncident ResponseIndicators of Compromise (IOCs)MITRE ATT&CKCyber Kill ChainPhishing AnalysisMalware AnalysisRansomware AnalysisInsider Threat AnalysisPrivilege Misuse AnalysisAuthentication AnalysisEndpoint InvestigationQRadarSplunkSentinelChronicleCrowdStrikeCortex XDRMicrosoft DefenderSOAR PlatformsWindows SecurityLinux SecurityActive DirectoryNetwork SecurityFirewallsDNSProxy

Good to Have

OEM Certifications

Highlights

  • Actively hiring

More Details

RoleT&T | Cyber: D&R I Consultant I SOC Ops | Mumbai
IndustryCybersecurity, Information Technology & Services
DepartmentOperations
Employment TypeFull Time, Work from office

About the Company

Deloitte logo

Deloitte

Cybersecurity