T&T | Cyber: D&R | Manager | Security Information and Event Management (SIEM) | Delhi (Delhi, IN)

Deloitte

8+ yrs New Delhi Full Time Work from office
Deloitte logo
Posted : today
Actively hiring

Job description

Join Deloitte Touche Tohmatsu India LLP as a Manager in our Cyber team, focusing on Security Information and Event Management (SIEM). This role is based in Delhi and is crucial for enhancing our capabilities in preventing cyberattacks and protecting valuable organizational assets. You will be part of a team that champions a secure, vigilant, and resilient approach to cyber risk management, integrating security considerations from the outset of strategic development.

Deloitte empowers organizations to navigate the evolving cyber landscape, ensuring robust protection and enabling new opportunities through effective information and technology risk management. We are seeking dedicated professionals to contribute to our mission of building a stronger cybersecurity posture for our clients.

Responsibilities

Your responsibilities will involve vigilant monitoring of security alerts and events from diverse sources, including SIEM/SOAR platforms and Microsoft Defender for Endpoints. You will conduct initial incident triage and classification, thoroughly investigate alerts to identify potential security incidents, and escalate confirmed incidents to appropriate teams. Accurate documentation of incident details, actions, and resolutions in the incident management system is essential. You will also assist in threat containment and mitigation, leverage threat intelligence feeds for enhanced detection, and generate comprehensive security reports for stakeholders.

Further duties include participating in post-incident reviews to refine SOC processes, staying abreast of the latest security trends and vulnerabilities, and proactively hunting for malicious activity using advanced tools. You will perform sophisticated security event detection and threat analysis for complex incidents, and contribute to the implementation and maintenance of extensive security operation policies and procedures, including those for AWS cloud environments. A critical aspect of this role is the willingness to work in a 24x7 rotational shift model, including night shifts.

Qualifications

We are looking for candidates with a strong foundation in Cyber Security principles, well-versed in security domains such as Endpoint, Network, Database, and Cloud Security technologies including IPS, WAF, Firewall, Deception, AV, EDR, and Microsoft Defender. A minimum of 8 years of relevant experience in Cyber is required. Essential qualifications include a B.E/B.Tech (Tier 1/2) or Master's degree in Computer Science, Information Technology, or a related field. Relevant certifications like SC 200, Security+, or CEH are highly valued.

Essential Skills

SIEMSOARMicrosoft Defender for EndpointsIncident ResponseThreat IntelligenceEndpoint SecurityNetwork SecurityDatabase SecurityCloud SecurityIPSWAFFirewallDeception TechnologyAntivirus (AV)Endpoint Detection and Response (EDR)Microsoft DefenderLog AnalysisProactive MonitoringMitigationResponseSecurity Event TriageAWS CloudThreat HuntingCortexShodanQradarIndicator of Compromise (IoC) IdentificationMalware AnalysisGoogle SecOps/ChronicleMicrosoft SentinelDemisto/XSOARMITRE FrameworkSC 200 CertificationSecurity+CEH

Highlights

  • Actively hiring

More Details

RoleT&T | Cyber: D&R | Manager | Security Information and Event Management (SIEM) | Delhi (Delhi, IN)
IndustryCybersecurity, Information Technology & Services, Management Consulting
DepartmentOperations
Employment TypeFull Time, Work from office

About the Company

Deloitte logo

Deloitte

Cybersecurity

T&T | Cyber: D&R | Manager | Security Information and Event Management (SIEM) | Delhi (Delhi, IN) at Deloitte | SkillMX | SkillMX