Job Title: T&T | Cyber: D&R | Manager| Incident Response & Handling | Delhi

T&T | Cyber: D&R | Manager| Incident Response & Handling | Delhi
• Job requisition ID : 113839
• Location: Delhi
• Entity: Deloitte Touche Tohmatsu India LLP
The Team
Deloitte helps organizations prevent cyberattacks and protect valuable assets. We believe in being secure, vigilant, and resilient—not only by looking at how to prevent and respond to attacks, but at how to manage cyber risk in a way that allows you to unleash new opportunities. Embed cyber risk at the start of strategy development for more effective management of information and technology risks. Learn more about Cybersecurity
Your Work Profile
- Incident Response: Triage, investigation, containment, eradication, recovery, RCA and post-incident reviews.
- Investigation: EDR, SIEM, Windows/Linux logs, Sysmon, identity, cloud, network and email telemetry.
- Threats: Phishing, credential compromise, malware, persistence, privilege abuse, lateral movement, ransomware and data exfiltration.
- Threat Hunting: MITRE ATT&CK, threat hunting, SIEM/EDR queries, KQL/SPL, Sigma and YARA.
- Forensics: Windows/Linux forensics, memory forensics, malware analysis and endpoint artefacts.
- Tools: Splunk / Sentinel / QRadar, CrowdStrike / Defender / SentinelOne, Velociraptor, KAPE, Volatility, Wireshark, Ghidra, etc.
Key Skills Required
- Exposure with Windows, Linux, AD, DNS, networking, authentication, cloud and identity security.
- Understanding of scripting languagaes Python, PowerShell, Bash, KQL, SPL, SQL or Regex.
- Preferred skill- Malware reverse engineering, cloud forensics, detection engineering, purple teaming and AD/ADCS.
- Alteast 8-12 years, depending on demonstrated technical capability.
- Bachelor’s/Master’s in CS, Cybersecurity, Information Security, Engineering or related field.
