Job Title:  T&T | Cyber: D&R | XSOAR | Assistant Manager I Hyderabad

Job requisition ID ::  103450
Date:  Apr 24, 2026
Location:  Hyderabad
Designation:  Assistant Manager
Entity:  Deloitte Touche Tohmatsu India LLP

T&T | Cyber: D&R | XSOAR | Assistant Manager I Hyderabad
Job requisition ID : 103450 
Location: Hyderabad
Entity: Deloitte Touche Tohmatsu India LLP 

 

The team  

 

Deloitte helps organizations prevent cyberattacks and protect valuable assets. We believe in being secure, vigilant, and resilient—not only by looking at how to prevent and respond to attacks, but at how to manage cyber risk in a way that allows you to unleash new opportunities. Embed cyber risk at the start of strategy development for more effective management of information and technology risks. Learn more about Cybersecurity  

 

Your work profile

 

  • Develop, maintain, and enhance automated playbooks in SOAR platforms to streamline and improve incident response workflows.
  • Proactive SIEM Content Management Specialist to join our security operations team. The ideal candida
  • Will be responsible for designing, implementing, and managing custom SIEM content that supports the organization's security monitoring and threat detection capabilities.
  • Ensuring that our SIEM system is optimized to detect, analyze, and respond to potential security threats effectively and efficiently. 

 

Key skills required  

 

  • 4-7 years of experience into Develop, maintain, and enhance automated playbooks in SOAR platforms to streamline and improve incident response workflows.
  • Deep understanding of security concepts, including incident response, threat intelligence, network security, and vulnerability management.
  • Utilize SOAR platforms to automate security processes and response activities.

  • Collaborate with security analysts and incident responders to design playbooks that automate and orchestrate the detection, triage, investigation, and remediation of security incidents.

  • Integrate playbooks with a variety of security tools such as SIEMs, firewalls, threat intelligence platforms, endpoint protection tools, and ticketing systems to improve the efficiency of the security operations center

  • Test playbooks to ensure they are working as expected, troubleshoot issues, and optimize them for performance and scalability.

  • Document playbook logic, workflows, and integrations to ensure that they are understandable and maintainable by other team members.

  • Work closely with security engineers, analysts, and IT teams to align playbook development with security operations needs and organizational goals.

  • Provide technical expertise in the configuration and optimization of SOAR tools.

  • Assist in the evaluation and selection of SOAR technologies based on organizational needs.

  • Document and maintain standard operating procedures for SOAR processes and playbooks.

  • Experience with Cortex XSOAR (preferred) or other security orchestration platforms.

  • Ability to troubleshoot issues, perform root cause analysis, and continuously optimize automation processes.

  • Knowledge of scripting and automation (Python, JavaScript, PowerShell, etc.) for building playbooks and integrations.
  • Bachelor’s degree in Cybersecurity, Information Technology, or related field.

T