Deloitte is seeking an Analyst, Cyber Engineering to support 24x7 cybersecurity operations and help protect enterprise systems, infrastructure, and data. In this role, you will monitor security events, investigate incidents, and work with cross-functional teams to support timely escalation and remediation. The ideal candidate brings hands-on experience in security monitoring, incident analysis, and evolving threat landscapes, including rotational weekend support as needed.
Work you'll do
As an Analyst, Cyber Engineering on the Cyber Operations team, you will be responsible for:
- Monitor and analyze security events from multiple sources, including data loss prevention, intrusion detection systems, intrusion prevention systems, endpoint detection and response tools, firewalls, and system security logs using Splunk security information and event management platforms
- Investigate and respond to cybersecurity incidents by analyzing event data, validating potential security breaches, and recommending mitigation and prevention actions
- Identify existing and emerging security exposures that may impact Deloitte infrastructure, systems, or data, and support the documentation of risk-mitigation controls
- Perform analysis of malware, phishing, spoofing, denial-of-service and distributed denial-of-service activity, SQL injection attempts, ransomware incidents, and other threat activity
- Conduct forensic analysis of suspect systems using appropriate tools and techniques and escalate issues to Tier 3 teams for resolution when needed
- Stay current on security threats, attack techniques, and technology trends through ongoing monitoring of threat intelligence sources, blogs, articles, and reports
The team
Deloitte’s Cyber Operations team helps protect the organization’s systems, data, and users through continuous monitoring, incident response, and threat analysis. The team works across security technologies and internal stakeholders to identify threats, investigate events, and support timely remediation. This is a collaborative environment focused on strengthening Deloitte’s security posture in a fast-paced, 24x7 operations setting.
Location: Hyderabad
Shift Timings: 11 AM to 8 PM
Qualifications
Required:
- Bachelor’s degree in Computer Science, Business Administration, Information Technology, Cybersecurity, or equivalent professional experience
- Experience in security incident response, security operations center operations, system operations, or threat intelligence
- Experience monitoring and investigating alerts from security information and event management, endpoint detection and response, firewall, or log management platforms
- Experience using one or more cybersecurity tools such as Splunk, CrowdStrike, Cofense Triage, ThreatConnect, or ServiceNow
- Knowledge of malware analysis, phishing, spoofing, denial-of-service and distributed denial-of-service activity, SQL injection, ransomware, and security event investigation
- Ability to work 11 AM to 8 PM and support rotational weekend coverage for 24x7 cybersecurity operations
Preferred:
- Certifications such as Certified Ethical Hacker (CEH), CompTIA Security+, Splunk, or other cybersecurity certifications
- Experience with vulnerability management, security intelligence, or automation and scripting in a cybersecurity environment
- Experience working in a 24x7 cybersecurity operations environment or a professional services environment