Job Title:  T&T I Cyber- D&R I Splunk Engineer I Deputy Manager I Bengaluru

Job requisition ID ::  96177
Date:  Jan 16, 2026
Location:  Bengaluru
Designation:  Deputy Manager
Entity:  Deloitte South Asia LLP
  • Design, deploy, configure, and maintain SIEM solutions (e.g., Splunk, IBM QRadar, ArcSight, LogRhythm, Azure Sentinel)
  • Onboard and normalize log sources from servers, network devices, cloud platforms, applications, and security tools
  • Develop and fine-tune correlation rules, alerts, dashboards, and reports
  • Perform SIEM performance tuning and optimization to reduce false positives
  • Support SOC teams in incident detection, analysis, and response
  • Integrate SIEM with SOAR, EDR, IAM, cloud security, and threat intelligence feeds
  • Conduct use-case development aligned with MITRE ATT&CK framework
  • Ensure compliance with security standards and regulations (ISO 27001, SOC 2, PCI-DSS, HIPAA, etc.)
  • Troubleshoot SIEM ingestion, parsing, and data quality issues
  • Automate repetitive tasks using scripting (Python, PowerShell, Bash)
  • Participate in security audits, threat hunting, and continuous improvement initiatives
  • Document SIEM architecture, procedures, and operational runbooks

Required Skills & Qualifications

  • 5–8 years of experience in cybersecurity with strong focus on SIEM engineering
  • Hands-on expertise with at least one major SIEM platform
  • Strong understanding of:
  • Log management and event correlation
  • Network security (Firewalls, IDS/IPS, VPNs)
  • Operating systems (Linux, Windows)
  • Cloud platforms (AWS, Azure, GCP)
  • Experience with regex, log parsing, and data normalization
  • Knowledge of threat intelligence and attack techniques (MITRE ATT&CK)
  • Scripting experience (Python, PowerShell, Shell)
  • Familiarity with SOC operations and incident response workflows

Preferred Qualifications

  • SIEM certifications (Splunk Certified Architect, QRadar Admin, Azure Sentinel, etc.)
  • Security certifications (CEH, GCED, GCIH, CISSP)
  • Experience with SOAR platforms and automation
  • Exposure to DevSecOps and CI/CD security integrations

Soft Skills

  • Strong analytical and problem-solving skills
  • Excellent communication and documentation abilities
  • Ability to work independently and in cross-functional teams
  • Proactive mindset with attention to detail

Educational Qualifications

  • Bachelor’s or Master’s degree in Computer Science, Cybersecurity, or Information Technology.