T&T | Cyber: D&R | Senior Analyst | SOC - SIEM - Incident Response & Handling| Mumbai, Hyderabad (Mumbai, IN)
Deloitte
Deloitte
Join our dynamic Cyber Defense & Response team as a Senior Analyst. You will be instrumental in safeguarding organizations against cyber threats by operating within our Security Operations Center (SOC). This role focuses on advanced security monitoring, incident investigation, and effective response strategies.
We believe in proactive cyber defense, ensuring our clients are secure, vigilant, and resilient. You'll contribute to a mission of embedding cyber risk management into the core of strategic development, enabling businesses to seize new opportunities with confidence.
Investigate and analyze escalated security alerts using a suite of advanced tools including SIEM, EDR, XDR, UEBA, and NDR platforms.
Conduct in-depth analysis of security events to accurately determine their scope, impact, and root cause, while meticulously validating true positives and eliminating false positives.
Classify security incidents based on severity and business impact, then execute containment, eradication, and recovery actions according to established incident response procedures.
Correlate security events across various technologies to identify sophisticated attack patterns and analyze Indicators of Compromise (IOCs) such as IPs, URLs, and file hashes.
Identify malicious activities using frameworks like MITRE ATT&CK and the Cyber Kill Chain, investigating threats including phishing, malware, ransomware, insider threats, and suspicious authentication attempts.
We are seeking candidates with 1-3 years of experience in SOC monitoring, security operations, or incident triage within cybersecurity.
Proficiency in SIEM technologies (LogRhythm, Splunk, Sentinel, Chronicle) and EDR/XDR solutions (CrowdStrike, Cortex XDR, Microsoft Defender) is essential.
Demonstrated ability to triage, analyze, and respond to SIEM events, leveraging threat intelligence data for effective threat detection and analysis.
Expertise in TCP/IP network traffic and event log analysis, coupled with strong communication skills to convey complex technical issues to diverse audiences.
Possession of at least one of the following certifications is required: CompTIA Security+, CEH, ECSA, or a relevant OEM certification. A Bachelor's or Master's degree in Computer Science, Information Security, or a related field is necessary. This role requires on-site presence in Mumbai or Hyderabad.
Deloitte
Information Technology & Services