Job Description
Summary
Join Deloitte India as a Deputy Manager in SIEM SOC Operations and Incident Response based in Mumbai and accelerate your career in cybersecurity and threat detection. If you have 5-9 years of experience managing Security Information and Event Management (SIEM) tools like Splunk, QRadar, XSIAM, and expertise in SOC operations, incident response, and cloud security monitoring, this role offers an exciting opportunity to work with industry leaders in a fast-paced, collaborative environment. At Deloitte Touche Tohmatsu India LLP, you’ll leverage your skills in cybersecurity analytics, threat detection, and mitigation while contributing to protecting some of the world’s most complex infrastructures.
Job Details at a Glance
| Job Title | Deputy Manager – SIEM SOC Operations & Incident Response |
|---|---|
| Company | Deloitte Touche Tohmatsu India LLP |
| Location | Mumbai – I-Think, Maharashtra |
| Experience Required | 5 to 9 years in Cybersecurity, SIEM, SOC, Incident Response |
| Key Tools & Technologies | Splunk, QRadar, XSIAM, Firewall, IDS/IPS, EPP/EDR |
| Shift | Day Shift / Rotational (as per project requirements) |
| Job Requisition ID | 81466 |
| Date Posted | September 7, 2025 |
Key Responsibilities
- Lead and manage SIEM operations and Incident Response activities within the Security Operations Center (SOC)
- Design, develop, and maintain advanced security use cases, correlation rules, alerts, and automated playbooks to enhance threat detection capabilities
- Analyze complex security incidents and provide actionable insights to contain and mitigate cyber threats effectively
- Collaborate with cross-functional teams including SOC analysts, threat intelligence, network, and application teams to address emerging threats
- Perform network traffic analysis with deep understanding of TCP/IP, routing, switching, and protocols
- Monitor and tune SIEM platforms such as Splunk, QRadar, and XSIAM for optimal detection and reduced false positives
- Implement cybersecurity frameworks including MITRE ATT&CK, NIST Incident Response, and Cyber Kill Chain
- Integrate diverse log sources from enterprise cloud environments (AWS, Azure, G Suite, O365) into SIEM for comprehensive threat monitoring
- Document and maintain SOC processes, standard operating procedures (SOPs), and incident reports
- Participate in incident response lifecycle including detection, containment, eradication, and recovery
Required Skills & Expertise
- 5 to 9 years of proven experience in SIEM tool administration and SOC operations
- Expertise with SIEM platforms like Splunk, QRadar, or XSIAM
- Strong understanding of network security fundamentals including firewall, IDS/IPS, EPP/EDR, FIM, WAF, VPN, PIM
- Excellent analytical and problem-solving skills to dissect security incidents and develop mitigation strategies
- Familiarity with cybersecurity frameworks: MITRE ATT&CK, NIST Incident Response, Cyber Kill Chain
- Hands-on experience with cloud infrastructure security monitoring for AWS, Microsoft Azure, G Suite, Office 365
- Effective communication and collaboration skills to work seamlessly with diverse teams and stakeholders
Qualifications
- Bachelor’s degree in Computer Science, Cybersecurity, Information Technology, or related field
- Relevant certifications in cybersecurity or SIEM tools are a plus (e.g., Certified SOC Analyst (CSA), Splunk Certified Power User, CISSP)
Why Work at Deloitte India?
- Thrive in a collaborative, inclusive workplace committed to your growth and well-being
- Work alongside world-class cybersecurity professionals on cutting-edge threat detection and response projects
- Access to continuous learning and leadership development opportunities, including Deloitte University
- Be part of a global organization making a real impact on clients and communities
How You’ll Grow
At Deloitte, leadership development and continuous learning are core to your career growth. You will be empowered to take on challenging roles, hone your cybersecurity expertise, and develop your leadership skills through formal programs and hands-on experience.
Apply Now
Ready to join Deloitte India as a Deputy Manager – SIEM SOC Operations and Incident Response and make an impact in cybersecurity?
Take the next step in your cybersecurity career with Deloitte and be part of a future-focused, innovative team.