Cyber-D&R-SOC,SIEM Engineering

5 - 10 years

25 - 30 Lacs

Posted:14 hours ago| Platform: Naukri logo

Apply

Work Mode

Work from Office

Job Type

Full Time

Job Description

Jun 14, 2025
Location: Mumbai - I-Think
Designation: Assistant Manager
Entity: Deloitte Touche Tohmatsu India LLP

Your potential, unleashed.

India s impact on the global economy has increased at an exponential rate and Deloitte presents an opportunity to unleash and realise your potential amongst cutting edge leaders, and organisations shaping the future of the region, and indeed, the world beyond.
At Deloitte, your whole self to work, every day. Combine that with our drive to propel with purpose and you have the perfect playground to collaborate, innovate, grow, and make an impact that matters.

The team

Deloitte helps organizations prevent cyberattacks and protect valuable assets. We believe in being secure, vigilant, and resilient not only by looking at how to prevent and respond to attacks, but at how to manage cyber risk in a way that allows you to unleash new opportunities. Embed cyber risk at the start of strategy development for more effective management of information and technology risks

Your work profile

As

Assistant Manager

in our

Cyber

Team you ll build and nurture positive working relationships with teams and clients with the intention to exceed client expectations: -
We are looking for an experienced Security Operations L3 Engineer to provide advanced-level support in monitoring, detecting, and responding to cybersecurity incidents. The L3 engineer will act as a senior escalation point, performing detailed threat analysis, handling complex incidents, and providing guidance to junior SOC team members. The ideal candidate will have deep expertise in incident response, threat hunting, and security monitoring tools, along with the ability to lead investigations and contribute to process improvements.

Technology :

QRadar , Demisto/XSOAR , Qualys, MITRE Framework Attack Methodology

Skills & Knowledge

Sound Cyber Security Principles and well versed in security domains of Endpoint , Network, Database, Cloud Security technologies like IPS, WAF, Firewall, Deception, Cloud Security, AV, EDR, .
Conduct senior level log analysis, proactive monitoring, mitigation & response to network & security incidents. Triage security events and carry out incident response steps.
Implement & Maintain Extensive Security Operation Policies and procedures documentation including AWS cloud
Proactively Hunt & research potential malicious activity using tool like Cortex, Shodan, Qrdar etc.
Identify Indicator of Compromise through static & dynamic analysis of commodity and 0-day malware
Perform advanced security event detection and threat analysis for complex and/or escalated security events

Operational Abilities

Lead a team of L1 and L2 engineers in shift. Work balancing of tickets across the shifts. Ensure shift handover. Manage the Quality audits of the L1 and L2 offense analysis. Support the Project Manager with escalations and timely RCA of incidents.
Training of L1 and L2 resources on latest attack vectors and log analysis. Work with the SIEM Engineering team to fine tune the use cases and content on the SIEM platform. Bring down the false positives to a manageable level.
Manage the work pressure on the project and keep the team alert and manage their work life balance.
Ensure timely preparation of daily/weekly/monthly reports.

Desired qualifications

  • Bachelor s degree in Computer Science, Cybersecurity, or related field, or equivalent experience.
  • 5+ years of experience in security operations, with at least 2 years in an L3 or senior-level role.
  • Strong hands-on experience in security monitoring, incident response, and threat hunting.
  • Proficiency with SIEM tools (QRadar, Splunk, ArcSight, etc.), EDR solutions, and other security monitoring tools.
  • Expertise in network security, malware analysis, intrusion detection, and digital forensics.
  • Experience working with frameworks such as MITRE ATT&CK, NIST, and SANS Incident Response.

Preferred Certifications

  • Bachelors or Masters in a technical discipline Computer SciencebComputer Engineering / any equivalent bachelor s or Masters in Information Security Domain.
  • Minimum of 5 years of relevant experience in SOC, out of which at least 2 years in CDR tool (File upload solution) like OPSWAT, Trendmicro.
  • Advanced Certification in CDR tool.
  • Certification in CEH / CCNA.

Location and way of working

  • Base location: Nagpur
  • Professional is required to work from office

Mock Interview

Practice Video Interview with JobPe AI

Start Job-Specific Interview
cta

Start Your Job Search Today

Browse through a variety of job opportunities tailored to your skills and preferences. Filter by location, experience, salary, and more to find your perfect fit.

Job Application AI Bot

Job Application AI Bot

Apply to 20+ Portals in one click

Download Now

Download the Mobile App

Instantly access job listings, apply easily, and track applications.

coding practice

Enhance Your Skills

Practice coding challenges to boost your skills

Start Practicing Now

RecommendedJobs for You