T&T | Cyber: D&R | Manager| Incident Response & Handling | Delhi
Deloitte
Deloitte
Join Deloitte's Cyber team in Delhi as a Manager specializing in Incident Response & Handling. This role is crucial in fortifying organizations against cyber threats. You will be instrumental in developing and implementing strategies to manage cyber risk, enabling new opportunities while ensuring robust protection of valuable assets. Embrace a proactive approach to cybersecurity, integrating risk management from the outset of strategic development.
Lead and execute comprehensive incident response activities, including triage, investigation, containment, eradication, and post-incident analysis. Conduct in-depth investigations using EDR, SIEM, and various log sources from Windows, Linux, cloud, network, and email telemetry. Identify and analyze diverse threats such as phishing, credential compromise, malware, privilege abuse, ransomware, and data exfiltration. Employ advanced threat hunting techniques using MITRE ATT&CK frameworks, SIEM/EDR queries, and tools like KQL, SPL, Sigma, and YARA. Perform digital forensics on endpoints, including memory analysis and malware reverse engineering. Utilize a suite of industry-leading tools including Splunk, Sentinel, CrowdStrike, and Ghidra.
A proven track record of at least 8-12 years in cybersecurity, with demonstrated technical expertise. Essential skills include deep exposure to Windows, Linux, Active Directory, DNS, networking, authentication, cloud, and identity security principles. Proficiency in scripting languages such as Python, PowerShell, Bash, KQL, SPL, SQL, or Regex is required. Preferred expertise encompasses malware reverse engineering, cloud forensics, detection engineering, purple teaming, and Active Directory/ADCS. A Bachelor's or Master's degree in Computer Science, Cybersecurity, Information Security, Engineering, or a related field is necessary.
Deloitte
IT Consulting