- Responsible for adherence of SLA for all tickets and deliverables in the project.
- Advise and tracks remediation of issues found during an incident or vulnerability that is required to conclude a security investigation
- Responsible for the validation and analysis of investigations within Security Operations Center (SOC) done by L1s
- Good understanding of SOC concepts and log analysis from various sources such as SIEM, AV, EDR, XDR and SOAR
- Responsible for completing the documentation of the investigation; determine the validity and priority of the activity and Carry out Level 2 triage of incoming issues and escalate to L3 if needed.
- Creation of SOPs and run book and maintain it.
- Provide communication and escalation support to L1 throughout the incident as per the SOC guidelines.
- Ensure that all security events and incidents (internal / external) are logged and regularly updated and closed within the set SLAs
- Strong technical understanding of network fundamentals like OSI, TCP/IP and common Internet protocols, specifically DNS, HTTP, HTTPS / TLS, DHCP and SMTP.
- Knowledgeable in the fundamentals of firewall, IDS/IPS, EPP/EDR, Proxy, WAF, VPN, and other security protective/detective controls.
- Knowledge of email security threats and security controls, including experience analyzing email headers.
- Familiar with malware analysis and phishing analysis using tools like knowbe4/phisher, anyrun, joesandbox, etc. to investigate the threats much deeper and with good clarity.
- Familiarity with core concepts of security incident response, e.g., the typical phases of response, vulnerabilities vs threats vs actors, Indicators of Compromise (IoCs), Indicators of Attackers (IOA), etc.
- Must be able to map security incidents with MITRE ATT&CK framework or the cyber kill chain.
- Consulting for creation of threat-based and AI driven attack based use cases will be an added advantage.
- Must have good knowledge in latest malware attacks and trends.
- Would be playing the role of a shift lead for L1 teams.
- Must be creating Bi-weekly, Monthly and Governance reports around the SOC operations for the Senior Management.
- Base location: Delhi
- Professional is required to work from office
- Inspiring - Leading with integrity to build inclusion and motivation
- Committed to creating purpose - Creating a sense of vision and purpose
- Agile - Achieving high-quality results through collaboration and Team unity
- Skilled at building diverse capability - Developing diverse capabilities for the future
- Persuasive / Influencing - Persuading and influencing stakeholders
- Collaborating - Partnering to build new solutions
- Delivering value - Showing commercial acumen
- Committed to expanding business - Leveraging new business opportunities
- Analytical Acumen - Leveraging data to recommend impactful approach and solutions through the power of analysis and visualization
- Effective communication – Must be well abled to have well-structured and well-articulated conversations to achieve win-win possibilities
- Engagement Management / Delivery Excellence - Effectively managing engagement(s) to ensure timely and proactive execution as well as course correction for the success of engagement(s)
- Managing change - Responding to changing environment with resilience
- Managing Quality & Risk - Delivering high quality results and mitigating risks with utmost integrity and precision
- Strategic Thinking & Problem Solving - Applying strategic mindset to solve business issues and complex problems
- Tech Savvy - Leveraging ethical technology practices to deliver high impact for clients and for Deloitte
- Empathetic leadership and inclusivity - creating a safe and thriving environment where everyone's valued for who they are, use empathy to understand others to adapt our behaviours and attitudes to become more inclusive.
*Caution against fraudulent job offers*: We would like to advise career aspirants to exercise caution against fraudulent job offers or unscrupulous practices.
At Deloitte, ethics and integrity are fundamental and not negotiable. We do not charge any fee or seek any deposits, advance, or money from any career aspirant in relation to our recruitment process. We have not authorized any party or person to collect any money from career aspirants in any form whatsoever for promises of getting jobs in Deloitte or for being considered against roles in Deloitte. We follow a professional recruitment process, provide a fair opportunity to eligible applicants and consider candidates only on merit. No one other than an authorized official of Deloitte is permitted to offer or confirm any job offer from Deloitte. We advise career aspirants to exercise caution.
In this regard, you may refer to a more detailed advisory given on our website at: https://www2.deloitte.com/in/en/careers/advisory-for-career-aspirants.html?icid=wn_