Job Description
Summary
Join Deloitte Touche Tohmatsu India LLP as an Assistant Manager – Cyber Defense & Response (Incident Responder / SOC Triaging) in Bengaluru (Koramangala).
In this role, you’ll be at the forefront of Deloitte’s Cyber Detection & Response (D&R) team, helping global enterprises strengthen their Security Operations Center (SOC) and manage complex cyber incidents and threats.
As part of the Technology & Transformation (T&T) Cyber practice, you’ll lead incident response operations, triage advanced alerts, mitigate high-impact attacks, and improve the overall security resilience of client ecosystems.
If you’re passionate about cyber threat hunting, security incident management, and SOC operations, this opportunity is built for you.
Job Details at a Glance
| Job Title | Assistant Manager – Cyber Security (Incident Response & SOC Operations) |
|---|---|
| Entity | Deloitte Touche Tohmatsu India LLP |
| Business Area | T&T – Cyber: Detect & Respond |
| Job Requisition ID | 88790 |
| Location | Bengaluru (Koramangala, Ecospace) |
| Experience Required | 4–6 years |
| Education | B.E / B.Tech (Tier 1 or 2), Computer Science / IT / Cyber Security |
| Shift | 24×7 rotational shifts |
| Certifications Preferred | Security+, ECSA, GCFA, GCFE, CISSP, or SIEM certifications |
| Tools & Technologies | SIEM tools, Python, PowerShell, IDS/IPS, Network Forensics |
| Work Mode | Onsite (client deputation mandatory) |
| Posted Date | October 7, 2025 |
About Deloitte Cyber Defense & Response Team
Deloitte’s Cyber Defense and Response (D&R) team protects organizations from ever-evolving cyber threats.
We combine cutting-edge technology, global threat intelligence, and expert analysis to ensure clients remain secure, vigilant, and resilient.
You’ll be part of a world-class Security Operations Center (SOC) focused on proactive monitoring, threat detection, and rapid response across enterprise networks.
Key Responsibilities
Incident Response & Analysis
- Lead incident triage and response for high and medium-severity cybersecurity events.
- Perform root cause analysis to identify attack vectors and compromised assets.
- Develop and execute containment, eradication, and recovery strategies for incidents.
- Correlate alerts from multiple data sources to detect and validate potential threats.
- Review SOC Level-1 (L1) alerts and guide improvements in triaging processes.
Threat Detection & Prevention
- Provide SIEM fine-tuning recommendations to minimize false positives.
- Develop new SIEM use cases and detection rules for enhanced threat visibility.
- Analyze logs, packets, and network traffic to uncover anomalies and patterns.
Documentation & Reporting
- Maintain detailed incident records, investigation logs, and post-incident reports.
- Prepare executive summaries and communicate technical findings to stakeholders.
- Participate in post-incident reviews and audits to strengthen incident-handling processes.
Leadership & Collaboration
- Mentor and guide L1 SOC analysts on effective triaging and incident handling.
- Collaborate with L3 analysts, cyber threat intelligence, and forensic teams for advanced investigations.
- Ensure adherence to Deloitte’s SOPs, security policies, and risk management frameworks.
Required Skills & Competencies
Technical Expertise
- Deep understanding of networking, cybersecurity fundamentals, and threat vectors.
- Hands-on experience with SIEM platforms (e.g., Splunk, QRadar, ArcSight, Azure Sentinel).
- Proficient in log analysis, packet capture, malware investigation, and threat triage.
- Scripting and automation skills using Python, PowerShell, or Bash.
- Familiarity with frameworks like MITRE ATT&CK, NIST, and CIS Controls.
Professional Skills
- Strong analytical and problem-solving abilities.
- Excellent documentation and communication skills for stakeholder engagement.
- Proven ability to manage and prioritize multiple incidents in a fast-paced 24×7 environment.
Preferred Certifications
- Security+ / ECSA / GCFA / GCFE / CISSP / SIEM Certification
(One or more of the above strongly preferred.)
Educational Qualifications
- Bachelor’s degree (B.E / B.Tech) in Computer Science, IT, Cyber Security, or related fields.
- Advanced degrees or specialized cybersecurity training preferred.
Location & Work Mode
- Base Location: Koramangala, Bengaluru (client deputation mandatory).
- Mode of Work: Onsite – required to operate from office in a 24×7 environment.
Your Role as an Assistant Manager
As an Assistant Manager – Incident Response, you’ll be a key contributor to Deloitte’s cybersecurity resilience initiatives, ensuring proactive defense and rapid mitigation of security threats.
You’ll lead investigations, influence security posture improvements, and help clients achieve robust cyber maturity through actionable insights.
You are expected to:
- Lead with integrity, inclusion, and collaboration.
- Exhibit strategic problem-solving and agile execution under pressure.
- Mentor teams, manage delivery excellence, and drive measurable outcomes.
Why Join Deloitte?
At Deloitte, we empower professionals to grow through continuous learning, innovation, and purpose-driven work.
You’ll gain:
- Global exposure to cybersecurity operations and enterprise defense systems.
- Access to leading technologies and advanced threat management tools.
- A collaborative, inclusive culture that values skill, empathy, and innovation.
- Opportunities for career advancement through leadership and technical training.
How You’ll Grow
- Develop advanced expertise in cyber incident response and threat intelligence.
- Collaborate on global cybersecurity engagements across multiple industries.
- Access Deloitte University and structured career paths in cyber leadership.
Inclusion & Culture
Deloitte fosters a workplace where everyone belongs.
We’re committed to diversity, equality, wellbeing, and professional growth, ensuring that every team member thrives — personally and professionally.
Apply Now
Ready to lead the fight against cyber threats?
Join Deloitte’s elite Cyber Incident Response team in Bengaluru and make an impact that matters.