T&T | Cyber: D&R | Manager | Security Information and Event Management (SIEM) | Delhi

Deloitte

8+ yrs New Delhi Full Time Work from office
Deloitte logo
Posted : today
Actively hiring

Job description

Join our dynamic team at Deloitte Touche Tohmatsu India LLP as a Manager specializing in Security Information and Event Management (SIEM). This role is crucial for protecting organizations from cyber threats, ensuring vigilance, and maintaining resilience. You will embed cyber risk management into the core of strategy development, enabling effective management of information and technology risks.

Deloitte empowers organizations to not only prevent cyberattacks but also to protect critical assets. We foster a secure, vigilant, and resilient environment by proactively addressing potential threats and responding effectively. Explore the forefront of Cybersecurity with us.

Responsibilities

As a SIEM Manager, you will continuously monitor security alerts from various sources like SIEM/SOAR platforms and Microsoft Defender for Endpoints. Your responsibilities include performing initial incident triage, investigating potential security incidents, and escalating confirmed events to the SOC L2 Analysts or Incident Response Team. You will meticulously document all incident details, actions, and resolutions within the incident management system, while also assisting in containing and mitigating identified security threats.

Furthermore, you will leverage threat intelligence feeds to enhance detection capabilities and generate insightful security reports and metrics for stakeholders. Participating in post-incident reviews to identify process improvements is key. You will stay abreast of the latest security trends, vulnerabilities, and attack vectors. A mandatory willingness to work in a 24x7 rotational shift model, including night shifts, is required. This role demands a strong understanding of Cyber Security principles and domains such as Endpoint, Network, Database, and Cloud Security technologies, including IPS, WAF, Firewalls, Deception, Cloud Security, AV, EDR, and Microsoft Defender.

You will conduct comprehensive log analysis, proactive monitoring, and incident mitigation and response for network and security events. Triage security events and execute incident response steps effectively. The role also involves implementing and maintaining extensive Security Operation Policies and procedures, including those for AWS cloud environments. Proactive threat hunting and research using tools like Cortex, Shodan, Qradar, and Microsoft Defender are integral. You will identify Indicators of Compromise through static and dynamic analysis of malware, and perform advanced security event detection and threat analysis for complex escalated events. Familiarity with Google SecOps/Chronicle, Microsoft Sentinel, Demisto/XSOAR, and the MITRE Framework Attack Methodology is essential.

Qualifications

We are seeking a seasoned professional with a Bachelor of Engineering (B.E.) or Bachelor of Technology (B.Tech.) from a Tier 1/2 institution, or a Master's degree in Computer Science, Information Technology, or a related field. A minimum of 8 years of relevant experience in the Cyber domain is required. Candidates possessing SC 200 certification, along with Security+ or CEH, or other relevant security certifications, are strongly encouraged to apply.

This Managerial position is based in Delhi, India, and requires a comprehensive understanding of cybersecurity principles and practices. The ideal candidate will demonstrate proficiency in SIEM/SOAR technologies, incident response methodologies, and threat analysis. Your expertise will be vital in safeguarding our clients' digital assets and ensuring robust security posture.

Essential Skills

SIEMSOARMicrosoft Defender for EndpointsIncident ResponseThreat IntelligenceEndpoint SecurityNetwork SecurityDatabase SecurityCloud SecurityIPSWAFFirewallDeception TechnologyAVEDRLog AnalysisThreat HuntingMalware AnalysisGoogle SecOpsChronicleMicrosoft SentinelDemistoXSOARMITRE FrameworkSC 200Security+CEH

Highlights

  • Actively hiring

More Details

RoleT&T | Cyber: D&R | Manager | Security Information and Event Management (SIEM) | Delhi
IndustryCybersecurity, Information Technology & Services
DepartmentSecurity Information and Event Management, Incident Response, Cyber Security
Employment TypeFull Time, Work from office

About the Company

Deloitte logo

Deloitte

Cybersecurity

T&T | Cyber: D&R | Manager | Security Information and Event Management (SIEM) | Delhi at Deloitte | SkillMX | SkillMX