Job Title: Director | Incident Response & Handling | Mumbai | Cyber Defense & Resilience

Director | Incident Response & Handling | Mumbai | Cyber Defense & Resilience
• Job requisition ID : 110972
• Location: Mumbai
• Entity: Deloitte Touche Tohmatsu India LLP
The team
Deloitte helps organizations prevent cyberattacks and protect valuable assets. We believe in being secure, vigilant, and resilient—not only by looking at how to prevent and respond to attacks, but at how to manage cyber risk in a way that allows you to unleash new opportunities. Embed cyber risk at the start of strategy development for more effective management of information and technology risks: Learn more about Cyber | Deloitte
Your work profile
- SOC Delivery Leadership
- Oversee 24x7x365 SOC operations across multiple client environments
- Lead teams of security analysts, engineers, and architects in delivering high-quality monitoring, detection, and incident response services.
- Ensure compliance with SLAs, regulatory requirements, and internal quality standards.
- Drive SOC transformation initiatives including Next-Gen SIEM, XDR, AI/ML analytics, and automation
- Experience in integration of FICO module with other modules
- Technical Strategy & Innovation Serve as a subject matter expert (SME) on SOC architecture, SIEM platforms (e.g., Splunk, Sentinel, CrowdStrike), and threat detection engineering
- Guide the integration of advanced threat intelligence, detection use cases, and content development
- Lead technical workshops and briefings with client stakeholders and internal teams
- Business Growth & Client Engagement
- Identify and pursue new business opportunities within existing and prospective clients.
- Lead proposal development, pricing strategies, and solution packaging for SOC-related services
- Team Development & Leadership
- Mentor and coach senior managers and technical leads
- Foster a culture of excellence, collaboration, and continuous learning
Key Skills Required:
- Education: Bachelor’s or Master’s degree in Cyber Security, Information Technology, or related field
- 12+ years of experience in cybersecurity, with at least 5 years in SOC leadership roles
- Strong understanding of SIEM, EDR, XDR, threat intelligence, and incident response
- Certifications such as CISSP, CISM, or equivalent preferred
- Experience in business development, client management, and strategic planning.
- Experience with cloud-native security platforms and hybrid environments.
- Ability to lead cross-functional teams in a matrixed organization
