…

T&T Cyber D&R I Sr_ Analyst SOC SIEM Mumbai Nagpur

Deloitte India (South Asia) · Consulting & Professional Services

  • Mumbai, India
  • On-site
  • Posted yesterday
  • Apply by 29 Oct
  • Cybersecurity

About the job

T&T | Cyber : D&R I Sr. Analyst | SOC SIEM | Mumbai - Nagpur

Job requisition ID : 112373
Location : Mumbai
Entity : Deloitte Touche Tohmatsu India LLP

The team

Deloitte helps organizations prevent cyberattacks and protect valuable assets. We believe in being secure, vigilant, and resilient—not only by looking at how to prevent and respond to attacks, but at how to manage cyber risk in a way that allows you to unleash new opportunities. Embed cyber risk at the start of strategy development for more effective management of information and technology risks: Learn more about  Cyber | Deloitte

Your work profile

Monitor security alerts and events from various sources, including QRadar SIEM.
Perform initial triage and classification of incidents.
Investigate alerts to identify potential security incidents.
Escalate confirmed incidents to SOC L2 Analysts and/or Incident Response Team.
Document incident details, actions taken, and resolution steps in the incident management system.
Assist in the containment and mitigation of security threats.
Utilize threat intelligence feeds and tools to enhance detection capabilities.
Generate and deliver security reports and metrics to stakeholders.
Participate in post-incident reviews to identify gaps and improvements in the SOC processes.
Stay updated with the latest security trends, vulnerabilities, and attack vectors.
Willingness to work in a 24x7 rotational shift model, including night shifts, is mandatory.

Key Skills Required

2-4 Years of relevant experience in Cyber.
Experience in security domains of Endpoint , Network, Database, Cloud Security technologies like IPS, WAF, Firewall, Deception, Cloud Security, AV, EDR, .
Conduct senior level log analysis, proactive monitoring, mitigation & response to network & security incidents. Triage security events and carry out incident response steps.
Implement & Maintain Extensive Security Operation Policies and procedures documentation including AWS cloud
Proactively Hunt & research potential malicious activity using tool like Cortex, Shodan, Qrdar etc.
Identify Indicator of Compromise through static & dynamic analysis of commodity and 0-day malware
Perform advanced security event detection and threat analysis for complex and/or escalated security events.
QRadar, Demisto/XSOAR , Qualys, MITRE Framework Attack Methodology.
Education B.E / B.Tech (Tier 1/2) in Computer Science, Information Technology or related fields
CISSP, CEH, CISM, or other relevant security certifications.
Candidate shall be willing to work from Nagpur location.