T&T I Cyber-D&R I Assistant Manager I Incident Response & Handling | Bengaluru

Deloitte · Bengaluru, IN · India

T&T I Cyber-D&R I Assistant Manager I Incident Response & Handling | Bengaluru • Job requisition ID : 105561  • Location: Bengaluru • Entity: Deloitte Touche Tohmatsu India LLP    The team  Deloitte helps organizations prevent cyberattacks and protect valuable assets. We believe in being secure, vigilant, and resilient—not only by looking...

T&T I Cyber-D&R I Assistant Manager I Incident Response & Handling | Bengaluru
Job requisition ID : 105561 
Location: Bengaluru
Entity: Deloitte Touche Tohmatsu India LLP 

 

The team 

Deloitte helps organizations prevent cyberattacks and protect valuable assets. We believe in being secure, vigilant, and resilient—not only by looking at    how to prevent and respond to attacks, but at how to manage cyber risk in a way that allows you to unleash new opportunities. Embed cyber risk at the start of strategy development for more effective management of information and technology risks.  Learn more about Cybersecurity  

 

Your Work Profile :

The role requires strong skills in incident response to effectively minimize the impact of cyber risks. The individual will be responsible for overseeing security monitoring, managing security tools and operations, and ensuring security incidents are handled efficiently and reported to relevant stakeholders.  

This role primarily involves acting as a first responder and conducting in-depth incident response activities on behalf of a diverse range of clients across various sectors. Candidates must be capable of operating in complex security environments and working collaboratively with the SOC team to design, communicate, and execute incident response, containment, and remediation plans. They will support incident response analysts and incident management teams, while also evaluating tools, processes, and procedures for handling cyber intrusions—continuously identifying new and improved methods for detecting and responding to adversarial threats.  

• Detect, triage, investigate, and respond to security incidents across client environments in accordance with defined SLAs. 

• Analyze alerts and events from a wide range of data sources: Firewalls, IDS/IPS, Proxy, AD, EDR, DLP, etc.  

• Execute end-to-end incident response including detection, containment, eradication, recovery, and lessons learned.  

• Conduct root cause analysis and forensic investigations on affected systems.  

• Leverage tools such as EDR, SIEM, and SOAR to automate and accelerate response efforts.  

• Develop, improve, and document incident response processes and playbooks.  

• Deliver comprehensive incident reports to internal and external stakeholders, including executive briefings.  

• Monitor log sources/data sources health and coordinate with engineering to maintain optimal visibility.  

• Facilitate tabletop exercises, real-time simulations, and post-incident reviews.  

• Support threat hunting initiatives by analyzing network traffic, endpoint behavior, and threat intelligence.  

• Assist in malware analysis and reverse engineering efforts as needed.  

• Track incident response metrics and contribute to continuous improvement of detection and response capabilities.  

• Collaborate with cross-functional teams including SOC analysts, IT operations, and business stakeholders.  

Education: B.tech , B.E, BCA or any relevant qualification.

 

Key Skills required:  

 

Encuentra más ofertas como esta

Explora más ofertas activas de esta empresa o crea una cuenta en Insider Jobs para buscar, guardar y seguir oportunidades en todo el job board.