Hiring For Lead Cyber Response 8-15 years-Gurgaon

8 - 13 years

25 - 40 Lacs

Posted:10 hours ago| Platform: Naukri logo

Apply

Work Mode

Work from Office

Job Type

Full Time

Job Description


Your potential, unleashed.

Indias impact on the global economy has increased at an exponential rate and Deloitte presents an opportunity to unleash and realize your potential amongst cutting edge leaders, and organizations shaping the future of the region, and indeed, the world beyond.

At Deloitte, your whole self to work, every day. Combine that with our drive to propel with purpose and you have the perfect playground to collaborate, innovate, grow, and make an impact that matters.

The team

Deloitte helps organizations prevent cyberattacks and protect valuable assets. We believe in being secure, vigilant, and resilientnot only by looking at how to prevent and respond to attacks, but at how to manage cyber risk in a way that allows you to unleash new opportunities. Embed cyber risk at the start of strategy development for more effective management of information and technology risks.

Key Roles

In the Lead Cyber Senior Analyst, Cyber Response role, you will

  • Respond to cyber-security threats, vulnerabilities, events and incidents.
  • Provide day-to-day technical expertise, operational leadership, mentoring, and escalation for Cyber Security Analysts.
  • Respond to cyber-security threats, vulnerabilities, events, and incidents.
  • Act as technical lead during major security incidents.
  • Own and drive improvement in the teams capability, including operational maturity, detection strategies, mitigation strategies, and participating in purple teaming activities.
  • Maintain an up-to-date knowledge of cyber threats.
  • Drive continuous learning and knowledge sharing within the team.
  • Support internal stakeholders and projects as required.

What you’ll bring

  • Incident response methodologies and techniques

    : This involves understanding and experience with various methodologies and techniques used to respond to cyber-security incidents.
  • Non-Technical Skills

    : Thrive under pressure, work effectively in a CSOC/CIRT, and leverage your analytical, communication, time management, and stakeholder management skills.
  • Detection and mitigation strategies for a broad range of cyber threats

    : This encompasses methods for identifying and countering various cyber threats, including malware analysis and reverse engineering, Distributed Denial of Service (DDOS) attacks, hacking attempts, phishing schemes, lateral movement within networks, data exfiltration.
  • Common cloud platforms/technologies

    : This includes expertise in cloud Infrastructure as a Service (IaaS) and Software as a Service (SaaS) platforms, on Azure, AWS, and Google Cloud. Experience with AWS, Microsoft 365 (M365), and Azure is particularly valuable. Hands on knowledge and/or expertise in services such as AWS EKS and Azure AKS, along with associated tools and containers is highly valued..
  • Common enterprise technologies

    : This involves familiarity with technologies such as Windows, Linux, Active Directory, M365, Microsoft Entra ID, DNS, DHCP, web proxies, Mail Relays, and TCP/IP.
  • Operational usage of common analysis and response tooling

    : This involves utilizing tools such as Splunk, Crowdstrike, Microsoft 365 (M365), and Akamai for effective analysis and response.
  • Preferred Qualifications

    : This includes SANS GIAC certifications, AWS Certified Security, and SC-200 Security Operations Analyst Associate.


These topics are essential for a comprehensive understanding and effective management of cyber-security incidents and threats. If you need more details on any of these topics, feel free to ask!

ROLE NAME

Lead Cyber Security Analyst

WHAT IS THE PURPOSE OF MY ROLE?

This role is responsible for helping lead the cyber-security response function within Cyber Defence. The role is also responsible for driving the on-going maturity of the team, processes and frameworks and continuously improving the capability of the function.

The role requires outstanding technical skills, significant experience in incident detection and response and leadership skills.

Accountabilities

  • Provide day-to-day technical expertise, operational leadership, mentoring and escalation for Cyber Security Analysts
  • Where required, respond to cyber-security threats, vulnerabilities, events and incidents
  • Act as technical lead during major security incidents
  • Own and drive improvement in the team’s capability:
  • Operational maturity, including processes/methodologies, playbooks, automation, efficiency, quality, reporting
  • Detection strategies, including attack models, hunting, use cases, tuning, R&D
  • Mitigation strategies, including proactive planning, new controls, optimising existing controls
  • Participate and contributing to the planning and executing of purple teaming activities
  • Deliver cyber security incident and operational reporting and metrics
  • Ensure the team meets operational metrics
  • Maintain an up-to-date knowledge of cyber threats
  • Drive continuous learning and knowledge sharing within the team
  • Provide a basic consulting service for internal stakeholders and projects
  • Work in a ‘24x7 + rostered on-call’ environment
  • Other related activities as required by Management

COMMON NEXT CAREER MOVES:

Coming into this role:

Experience

Please include

From the below in the “Essential capabilities”

Essential capabilities

Excellent understanding and experience with:

  • Incident response methodologies and techniques
  • Detection and mitigation strategies for a broad range of cyber threats, including malware, DDOS, hacking, phishing, lateral movement and data exfiltration
  • Common cloud platforms/technologies including but not limited to cloud IaaS and SaaS platforms, such as Azure, AWS and Google cloud with AWS/M365/Azure experience highly desirable
  • Knowledge of Container Orchestration services such as AWS EKS, Azure AKS along with associated tools (e.g., Docker, Kubernetes)
  • Malware analysis and reverse engineering, including dynamic and static analysis
  • Common enterprise technologies, such as Windows, Linux, Active Directory, M365, Microsoft Entra ID, DNS, DHCP, web proxies, SMTP, TCP/IP
  • Operational usage of common analysis and response tooling, including Splunk, Crowdstrike, M365, Akamai, etc
  • Knowledge of security orchestration and automation tools and techniques
  • Vulnerability assessments and penetration testing, including network, infrastructure and application exploitation
  • The Lockheed Martin Cyber Kill Chain™ or similar methodologies

Essential non-technical skills:

  • Demonstrated ability to stay calm and lead under pressure
  • Experience working in a CSOC / CIRT performing level 2 and/or level 3 support
  • Experience in a complex enterprise environment
  • Demonstrated willingness to engage in self-learning or security research outside of standard business hours
  • Strong analytical, problem solving and lateral thinking skills
  • Good verbal and written communication skills
  • Good time management and prioritisation skills
  • Good consulting and stakeholder management
  • Good coaching, leadership and soft skills
  • Demonstrated ability to influence without direct authority

Qualification Requirements

Tertiary qualifications preferably in technology and cyber-security subjects.

Preferably:

  • SANS GIAC Certified Incident Handler (GCIH) or similar
  • SANS GIAC Certified Forensic Analyst (GCFA) or similar
  • SANS GIAC Reverse Engineering Malware (GREM) or similar
  • SANS GIAC Exploit Researcher & Advanced Penetration Tester (GXPN) or Offensive Security Certified Expert (OSCE) or similar
  • AWS Certified Security – Specialty
  • SC-200 Security Operations Analyst Associate

Desirable:

  • Certified Kubernetes Security Specialist

Common next career moves (please list and include roles in T&EO outside of Security if applicable):
Manager of Cyber Response

Manager of Cyber Detection and Hunting

Manager of Cyber Threat Intelligence

A TYPICAL DAY FOR ME INVOLVES:

Please include

  • Provide day-to-day technical expertise, operational leadership, mentoring and escalation for Cyber Security Analysts
  • Respond to cyber-security threats, vulnerabilities, events and incidents
  • Act as technical lead during major security incidents
  • Own and drive improvement in the team’s capability:
  • Operational maturity, including processes/methodologies, playbooks, automation, efficiency, quality, reporting
  • Detection strategies, including attack models, hunting, use cases, tuning, R&D
  • Mitigation strategies, including proactive planning, new controls, optimising existing controls
  • Participate and contributing to the planning and executing of purple teaming activities
  • Deliver cyber security incident and operational reporting and metrics

How you’ll grow

Connect for impact

Our exceptional team of professionals across the globe are solving some of the world’s most complex business problems, as well as directly supporting our communities, the planet, and each other. Know more in our Global Impact Report and our India Impact Report.

Empower to lead

You can be a leader irrespective of your career level. Our colleagues are characterised by their ability to inspire, support, and provide opportunities for people to deliver their best and grow both as professionals and human beings. Know more about Deloitte and our One Young World partnership.

Inclusion for all

At Deloitte, people are valued and respected for who they are and are trusted to add value to their clients, teams and communities in a way that reflects their own unique capabilities. Know more about everyday steps that you can take to be more inclusive. At Deloitte, we believe in the unique skills, attitude and potential each and every one of us brings to the table to make an impact that matters.

Drive your career

At Deloitte, you are encouraged to take ownership of your career. We recognise there is no one size fits all career path, and global, cross-business mobility and up / re-skilling are all within the range of possibilities to shape a unique and fulfilling career. Know more about Life at Deloitte.

Everyone’s welcome entrust your happiness to us

Our workspaces and initiatives are geared towards your 360-degree happiness. This includes specific needs you may have in terms of accessibility, flexibility, safety and security, and caregiving. Here’s a glimpse of things that are in store for you.

Interview tips

We want job seekers exploring opportunities at Deloitte to feel prepared, confident and comfortable. To help you with your interview, we suggest that you do your research, know some background about the organisation and the business area you’re applying to. Check out recruiting tips from Deloitte professionals.

*Caution against fraudulent job offers*: We would like to advise career aspirants to exercise caution against fraudulent job offers or unscrupulous practices.

At Deloitte, ethics and integrity are fundamental and not negotiable. We do not charge any fee or seek any deposits, advance, or money from any career aspirant in relation to our recruitment process. We have not authorized any party or person to collect any money from career aspirants in any form whatsoever for promises of getting jobs in Deloitte or for being considered against roles in Deloitte. We follow a professional recruitment process, provide a fair opportunity to eligible applicants and consider candidates only on merit. No one other than an authorized official of Deloitte is permitted to offer or confirm any job offer from Deloitte. We advise career aspirants to exercise caution.

In this regard, you may refer to a more detailed advisory given on our website at: https://www2.deloitte.com/in/en/careers/advisory-for-career-aspirants.html?icid=wn_

Mock Interview

Practice Video Interview with JobPe AI

Start Job-Specific Interview
cta

Start Your Job Search Today

Browse through a variety of job opportunities tailored to your skills and preferences. Filter by location, experience, salary, and more to find your perfect fit.

Job Application AI Bot

Job Application AI Bot

Apply to 20+ Portals in one click

Download Now

Download the Mobile App

Instantly access job listings, apply easily, and track applications.

coding practice

Enhance Your Skills

Practice coding challenges to boost your skills

Start Practicing Now

RecommendedJobs for You