Upload Button Icon Add office photos
Premium Employer

i

This company page is being actively managed by Deloitte Team. If you also belong to the team, you can get access from here

Deloitte Verified Tick

Compare button icon Compare button icon Compare
3.8

based on 16.8k Reviews

Proud winner of ABECA 2024 - AmbitionBox Employee Choice Awards

zig zag pattern zig zag pattern
filter salaries All Filters

235 Deloitte Jobs

SOC SIEM

2-7 years

Mumbai, Hyderabad / Secunderabad

7 vacancies

SOC SIEM

Deloitte

posted 21hr ago

Job Role Insights

Flexible timing

Job Description

Consultant 2-4years - Mumbai


Job description


  • 24x7 (rotating shifts) monitoring of SOC SIEM (Preferred IBM QRadar SIEM) .
  • Candidate should be knowledgeable to leverage SOAR for SOC incident monitoring.
  • Triage, analyze & respond to SIEM incidents/events to articulate the analysis with clear response guidance to other teams via tools like ticketing systems, emails etc.
  • Optimizes threat detection products for data security information and event management (SIEM), advanced email protection, endpoint detection and response (EDR), antivirus, intrusion detection systems, firewalls, proxies, and other industry standard security technologies
  • Works closely with Level 2 & Level 3 team towards the continuous improvement of the service
  • Should have expertise on TCP/IP network traffic and event log analysis.
  • Having strong perseverance to keep the Incident response actions focused & progressed.
  • Ability to effectively communicate (orally & written) complex technical issues to a diverse set of audience that include technical, non-technical & executive level staff
  • Experience working in a Threat Intel team or Threat Hunting team would be a bonus

Deputy Manager 6-10 years - Mumbai


Job description


  • Minimum of 6-10 years experience manage large Security Operation Centers projects
  • Responsible for adherence of SLA for all tickets and deliverables in the project
  • Advise and tracks remediation of issues found during an incident or vulnerability that is required to conclude a security investigation
  • Responsible for the validation and analysis of investigations within Security Operations Center (SOC) done by L1/L2
  • Good understanding of SOC concepts and log review from various sources such as IBM QRadar SIEM, Palo Alto and SOAR
  • Responsible for completing the documentation of the investigation; determine the validity and priority of the activity and Carry out Level 3 triage of incoming issues and escalate to L4 if needed
  • Creation of SOPs and run book and maintain it.
  • Provide communication and escalation support to L1/L2 throughout the incident per the SOC guidelines.
  • Ensure that all security events and incidents (internal / external) are logged into ServiceNow and regularly updated and closed within the set SLAs
  • Strong technical understanding of network fundamentals and common Internet protocols, specifically DNS, HTTP, HTTPS / TLS, and SMTP
  • Knowledgeable in the fundamentals of firewall, IDS/IPS, EPP/EDR, FIM, WAF, VPN, and other security protective/detective controls.
  • Knowledge of email security threats and security controls, including experience analyzing email headers Experience analyzing network traffic using tools such as Wireshark, to investigate either security issues or complex operational issues
  • Familiarity with core concepts of security incident response, e.g., the typical phases of response, vulnerabilities vs threats vs actors, Indicators of Compromise (IoCs), etc.
  • Must be able to map security incidents with MITRE ATT&CK framework or the cyber kill chain
  • Consulting for creation of threat-based use cases will be an added advantage
  • Would be playing the role of a shift lead for L1/L2 teams

Consultant 2-5 years - Hyderabad


Job description


  • 3-5 years of experience in 24x7 (rotating shifts) monitoring at a Security Operations centre
  • Hands-on experience in security tools such as IBM QRadar, FireEye Anti-APT solution
  • Review and triage information security alerts worked by L1, provide analysis, determine and track remediation, and escalate as appropriate
  • Desirable to have experience of SOC Monitoring and tirage using SOAR • Knowledge on XDR can be an added advantage
  • Knowledge of security concepts such as cyber-attacks and techniques, threat vectors, risk management, incident management etc.
  • Fundamental understanding of network traffic analysis including TCP/IP, routing, switching, protocols, etc.
  • Reviews the most recent SIEM alerts to see their relevance and urgency. Carries out triage to ensure that a genuine security incident is occurring. Oversees and configures security monitoring tools • Inform L3 team of proactive and reactive actions to minimize false positives
  • Maintain, manage, improve and update security incident process and protocol documentation (Run Book) • Strong understanding of Windows event log analysis
  • Acts as Security Incident Handler for high-impact cyber security incidents and advanced attacks in accordance with Cyber Kill Chain methodology and incident response process.
  • Conducts malware analysis and identification of Indicators of Compromise (IOCs) to evaluate incident scope and associated impact.
  • Enhances workflow and processes driving incident response and mitigation efforts • Practical understanding of exploits, vulnerabilities, computer network intrusions, adversary tactics, exfiltration techniques and common knowledge
  • Demonstrate proficiency in the Incident Response Process as well as the performance of threat hunting and SOC operations.
  • Log analysis across disparate log sources, prioritize and differentiate between potential intrusion attempts and false alarms
  • Sound understanding of different attack frameworks like Kill Chain & MITRE & ability to utilize them for incident response & reporting.

Assistant Manager 4-6 years- Hyderabad


Job description


  • 3-6 years of experience in 24x7 (rotating shifts) monitoring at a Security Operations centre
  • Hands-on experience in security tools such as IBM QRadar, FireEye Anti-APT solution
  • Review and triage information security alerts worked by L1, provide analysis, determine and track remediation, and escalate as appropriate
  • Desirable to have experience of SOC Monitoring and tirage using SOAR • Knowledge on XDR can be an added advantage
  • Knowledge of security concepts such as cyber-attacks and techniques, threat vectors, risk management, incident management etc.
  • Fundamental understanding of network traffic analysis including TCP/IP, routing, switching, protocols, etc.
  • Reviews the most recent SIEM alerts to see their relevance and urgency. Carries out triage to ensure that a genuine security incident is occurring. Oversees and configures security monitoring tools • Inform L3 team of proactive and reactive actions to minimize false positives
  • Maintain, manage, improve and update security incident process and protocol documentation (Run Book) • Strong understanding of Windows event log analysis
  • Acts as Security Incident Handler for high-impact cyber security incidents and advanced attacks in accordance with Cyber Kill Chain methodology and incident response process.
  • Conducts malware analysis and identification of Indicators of Compromise (IOCs) to evaluate incident scope and associated impact.
  • Enhances workflow and processes driving incident response and mitigation efforts • Practical understanding of exploits, vulnerabilities, computer network intrusions, adversary tactics, exfiltration techniques and common knowledge
  • Demonstrate proficiency in the Incident Response Process as well as the performance of threat hunting and SOC operations.
  • Log analysis across disparate log sources, prioritize and differentiate between potential intrusion attempts and false alarms
  • Sound understanding of different attack frameworks like Kill Chain & MITRE & ability to utilize them for incident response & reporting.
  • Must be creating Bi-weekly/ Governance reports around the SOC operations for the Senior Management





Employment Type: Full Time, Permanent

Read full job description

Deloitte Interview Questions & Tips

Prepare for Deloitte roles with real interview advice

Top Deloitte Interview Questions

Q1. How would you pass an entry for travel expenses incurred and paid by employee and was reimbursed? How would the end to end flow happens
View answers (8)
Q2. Suppose there is a room in the office and X people enter room throughout the day, Y people leave throughout the day [continuously people are ... read more
View answers (11)
Q3. Reverse of a number Write a program to generate the reverse of a given number N. Print the corresponding reverse number. Note : If a number ... read more
View answers (2)
View all 1.5k questions

What people at Deloitte are saying

What Deloitte employees are saying about work life

based on 16.8k employees
79%
90%
63%
92%
Flexible timing
Monday to Friday
No travel
Day Shift
View more insights

Deloitte Benefits

Submitted by Company
Learning and Development
Employee insurance
Flexibility Code
Corporate culture
Sick leave benefit
Submitted by Employees
Work From Home
Health Insurance
Cafeteria
Soft Skill Training
Gymnasium
Job Training +6 more
View more benefits

Compare Deloitte with

Accenture

3.9
Compare

PwC

3.4
Compare

Ernst & Young

3.5
Compare

Cognizant

3.8
Compare

TCS

3.7
Compare

IBM

4.1
Compare

Amazon

4.1
Compare

Google

4.4
Compare

Capgemini

3.8
Compare

Infosys

3.7
Compare

Microsoft Corporation

4.1
Compare

Wipro

3.7
Compare

JPMorgan Chase & Co.

4.1
Compare

Nagarro

4.0
Compare

Genpact

3.9
Compare

Barclays

3.9
Compare

Morgan Stanley

3.7
Compare

KPMG India

3.5
Compare

HCLTech

3.5
Compare

Oracle

3.7
Compare

Similar Jobs for you

Administrator at Deloitte

New Delhi, Hyderabad / Secunderabad + 1

3-8 Yrs

₹ 8-18 LPA

Practitioner at Accenture Solutions Pvt Ltd

Bangalore / Bengaluru

2-4 Yrs

₹ 4-8 LPA

Security Engineer at Accenture Solutions Pvt Ltd

Chennai

3-8 Yrs

₹ 5-10 LPA

Security Operations Specialist at Nokia Solutions and Networks India (P)Ltd

Gurgaon / Gurugram

4-9 Yrs

₹ 6-11 LPA

Consultant at Deloitte Shared Services India Pvt. Ltd

New Delhi

4-7 Yrs

₹ 6-9 LPA

Network Security Consultant at IBM India Pvt. Limited

Mumbai

6-11 Yrs

₹ 8-13 LPA

Technical Lead at Infosys Limited

Ahmedabad

8-10 Yrs

₹ 10-12 LPA

EDI Consultant at Infosys Limited

Bangalore / Bengaluru

2-7 Yrs

₹ 4-9 LPA

Siem Engineer at Deloitte

Bangalore / Bengaluru

5-10 Yrs

₹ 11-21 LPA

Siem Engineer at Deloitte

Bangalore / Bengaluru

5-10 Yrs

₹ 11-21 LPA

Deloitte Mumbai Office Locations

View all
Mumbai Office
Deloitte Touche Tohmatsu India Private Limited, 12, Dr Annie Besant Rd,Opp. Shiv Sagar Estate, Worli Mumbai
Maharashtra 400018
Mumbai Office
Deloitte, 27 - 32 Floor, Tower 3, Indiabulls Finance Center, Elphinstone Mill compound,Senapati Bapat Road,Elphinstone Road Mumbai
Maharashtra 400013

SOC SIEM

2-7 Yrs

Mumbai, Hyderabad / Secunderabad

2d ago·via naukri.com

Web Application Firewall (WAF) Engineer

8-12 Yrs

Bangalore / Bengaluru

2d ago·via naukri.com

Senior Consultant

6-11 Yrs

Pune

2d ago·via naukri.com

Senior Executive

3-8 Yrs

Mumbai

2d ago·via naukri.com

Assistant Manager

5-6 Yrs

New Delhi

2d ago·via naukri.com

Consultant

2-7 Yrs

Bangalore / Bengaluru

2d ago·via naukri.com

T&T-ET&P-Consultant-SAP MM

3-6 Yrs

Bangalore / Bengaluru

2d ago·via naukri.com

Analyst

2-6 Yrs

Bangalore / Bengaluru

2d ago·via naukri.com

Senior Consultant

1-6 Yrs

New Delhi

2d ago·via naukri.com

Strategy, Risk & Transaction - TSI - M&A Tech - DM

2-5 Yrs

New Delhi

2d ago·via naukri.com
write
Share an Interview