Deloitte Touche Tohmatsu Limited, commonly referred to as Deloitte, is an international professional services network headquartered in London, England.
Deloitte Released Job Openings
- Qualification: Any Graduate
- Experience : 05-10+years
- Department: Accounting / Auditing
- Role: D&R: Cyber Security -SOC operations
- Job Location: Thane
Interested applicants please mail your resumes at shwedas@deloitte.com/ mthakkar.ext@deloitte.com.
contact: Shweta Das
Talent Acquisition | Risk Advisory
Mumbai- IThink, Lodha Amara IThink Tower,
Kolshet Road,Sandoz Baug, Thane West, Maharashtra 400607
Job description:
Desired skills and experience:
Roles ::
- CTM (Cyber Threat Management)
- Incident Response
- Malware Analysis
- EDR Admin ( Endpoint Detection Response)
- Threat Hunter
- SOC Lead
Responsibilities/ KRAs ::
CTM (Analyst/Con/AM):-
- Good Experience in SOC monitoring though Splunk, QRadar, Sentinel SIEM
- Knowledge of SOAR technologies, working with playbooks (Cortex, Phantom, Demisto)
- Working experience and knowledge of ITSM tools for incident management.
Incident Response (AM/DM/M/AD):-
- Log analysis, malware analysis (static and dynamic)
- Experience on EDR tools for Incident response and threat hunting (Crowdstrike, Cortex XDR, MS Defender, Sentinel One)
- Responsible for Incident and Breach communications, assessments, and reports and customer facing, to include leadership and executive management for the purpose of enabling Senior Management to make decisions in a crisis.
- Certifications like GCFA, GNFA, GCIH, OSCP, GPEN are desirable
EDR SME (AM/DM/M):-
- Experience on EDR tools (Crowdstrike, Cortex XDR, MS Defender, Sentinel One)
- Lead and oversee deployment, operation, and maintenance of the global EDR platform
- Provide support response to other security teams in respect to the EDR platform
- Identify adjustments and modifications for configuration
- Identify new opportunities for tools to incorporate into the EDR platform
- Splunk experience is mandatory
Threat Hunter (AM/DM/M):-
- Candidate having experience with Forensics & Incident Response will also be considered.
- Knowledge on SIEM tools like Splunk and Sentinel Knowledge on EDR tools like Defender ATP, CrowdStrike and Carbon Black Tools like Sysmon, PowerShell, Proxy, E-mail Security Cyber Network Operations/Penetration Test Methodologies and tools like Metasploit, Kali Linux, Cobalt Strike, Atomic red team etc.
- Certifications like GCFA, GNFA, GCIH, OSCP, GPEN are desirable
SOC Lead (DM/M/AD):-
- Familiarity and experience in implementation of or two SIEM products (QRadar, SA, Splunk, Arcsight etc).
- Install / configure / build / finetune the SIEM tools to setup an effective information security support / operations.
- Establish KPI, review & manage security logs and provide reports based on KPI and metrics.
- Ability to develop solution architecture design and implementation for security projects
- Good verbal and written communication skill, excellent interpersonal skills.
More Job Updates Join What’s App Group – Click Here
Join Telegram Group – Click Here