Your potential, unleashed.
India s impact on the global economy has increased at an exponential rate and Deloitte presents an opportunity to unleash and realise your potential amongst cutting edge leaders, and organisations shaping the future of the region, and indeed, the world beyond.
At Deloitte, your whole self to work, every day. Combine that with our drive to propel with purpose and you have the perfect playground to collaborate, innovate, grow, and make an impact that matters.
The team
Deloitte helps organizations prevent cyberattacks and protect valuable assets. We believe in being secure, vigilant, and resilient not only by looking at how to prevent and respond to attacks, but at how to manage cyber risk in a way that allows you to unleash new opportunities. Embed cyber risk at the start of strategy development for more effective management of information and technology risks
Your work profile
As Assistant Manager
in our Cyber
Team you ll build and nurture positive working relationships with teams and clients with the intention to exceed client expectations: -
We are looking for an experienced Security Operations L3 Engineer to provide advanced-level support in monitoring, detecting, and responding to cybersecurity incidents. The L3 engineer will act as a senior escalation point, performing detailed threat analysis, handling complex incidents, and providing guidance to junior SOC team members. The ideal candidate will have deep expertise in incident response, threat hunting, and security monitoring tools, along with the ability to lead investigations and contribute to process improvements.
Technology :
QRadar , Demisto/XSOAR , Qualys, MITRE Framework Attack Methodology
Skills & Knowledge
Sound Cyber Security Principles and well versed in security domains of Endpoint , Network, Database, Cloud Security technologies like IPS, WAF, Firewall, Deception, Cloud Security, AV, EDR, .
Conduct senior level log analysis, proactive monitoring, mitigation & response to network & security incidents. Triage security events and carry out incident response steps.
Implement & Maintain Extensive Security Operation Policies and procedures documentation including AWS cloud
Proactively Hunt & research potential malicious activity using tool like Cortex, Shodan, Qrdar etc.
Identify Indicator of Compromise through static & dynamic analysis of commodity and 0-day malware
Perform advanced security event detection and threat analysis for complex and/or escalated security events
Operational Abilities
Lead a team of L1 and L2 engineers in shift. Work balancing of tickets across the shifts. Ensure shift handover. Manage the Quality audits of the L1 and L2 offense analysis. Support the Project Manager with escalations and timely RCA of incidents.
Training of L1 and L2 resources on latest attack vectors and log analysis. Work with the SIEM Engineering team to fine tune the use cases and content on the SIEM platform. Bring down the false positives to a manageable level.
Manage the work pressure on the project and keep the team alert and manage their work life balance.
Ensure timely preparation of daily/weekly/monthly reports.
Desired qualifications
- Bachelor s degree in Computer Science, Cybersecurity, or related field, or equivalent experience.
- 5+ years of experience in security operations, with at least 2 years in an L3 or senior-level role.
- Strong hands-on experience in security monitoring, incident response, and threat hunting.
- Proficiency with SIEM tools (QRadar, Splunk, ArcSight, etc.), EDR solutions, and other security monitoring tools.
- Expertise in network security, malware analysis, intrusion detection, and digital forensics.
- Experience working with frameworks such as MITRE ATT&CK, NIST, and SANS Incident Response.
Preferred Certifications
- Bachelors or Masters in a technical discipline Computer SciencebComputer Engineering / any equivalent bachelor s or Masters in Information Security Domain.
- Minimum of 5 years of relevant experience in SOC, out of which at least 2 years in CDR tool (File upload solution) like OPSWAT, Trendmicro.
- Advanced Certification in CDR tool.
- Certification in CEH / CCNA.
Location and way of working
- Base location: Nagpur
- Professional is required to work from office