T&T-Cyber-Defense & Resilience-SOC-DM-SOAR-Bengaluru

3 weeks ago


Bengaluru, India Deloitte Full time

Your potential, unleashed.

India’s impact on the global economy has increased at an exponential rate and Deloitte presents an opportunity to unleash and realise your potential amongst cutting edge leaders, and organisations shaping the future of the region, and indeed, the world beyond.

At Deloitte, your whole self to work, every day. Combine that with our drive to propel with purpose and you have the perfect playground to collaborate, innovate, grow, and make an impact that matters.

The team

Deloitte helps organizations prevent cyberattacks and protect valuable assets. We believe in being secure, vigilant, and resilient—not only by looking at how to prevent and respond to attacks, but at how to manage cyber risk in a way that allows you to unleash new opportunities. Embed cyber risk at the start of strategy development for more effective management of information and technology risks

Your work profile

As Deputy Manager in our Cyber Team you’ll build and nurture positive working relationships with teams and clients with the intention to exceed client expectations: -

The Cortex SOAR Engineer is responsible for implementing, maintaining, and optimizing Palo Alto Networks Cortex SOAR (Security Orchestration, Automation, and Response) platform within the MSSP Security Operations Center (SOC). The role involves designing automated workflows to enhance SOC operations, improving incident response times, and streamlining repetitive tasks. The Cortex SOAR Engineer will work closely with SOC analysts and security engineers to integrate various security tools, develop playbooks, and ensure the MSSP’s clients benefit from enhanced security automation.

Key Responsibilities:

Cortex SOAR Implementation and Management : Deploy, configure, and maintain Cortex SOAR platform within the MSSP SOC environment to support client security operations. Integrate the SOAR platform with other security tools (SIEM, EDR, threat intelligence platforms, firewalls) to enable automated incident response. Ensure Cortex SOAR is properly connected to client environments, including ingestion of logs, alerts, and telemetry data from various sources. Playbook Development and Automation: Develop and optimize automated playbooks and workflows to handle common security incidents (e.g., phishing, malware detection, alert triage, log analysis). Work closely with SOC analysts to identify repetitive tasks and manual processes that can be automated using SOAR. Design custom playbooks tailored to client-specific security needs and response requirements. Continuously improve and tune playbooks based on feedback from SOC analysts and changes in the threat landscape. Security Tool Integration: Collaborate with security engineering and DevOps teams to integrate a wide range of security tools into Cortex SOAR, including SIEMs (e.g., Splunk, QRadar), firewalls, intrusion detection systems (IDS/IPS), EDR solutions, and threat intelligence platforms. Ensure seamless data flow between Cortex SOAR and other tools to automate response actions (e.g., quarantining hosts, blocking IPs, updating firewall rules). Test and validate integrations to ensure they are functioning correctly and that automation workflows are effective. Incident Response Automation: Work closely with incident response teams to automate the investigation, triage, and remediation of security incidents. Implement real-time automated responses (e.g., isolating compromised devices, disabling accounts) based on pre-defined incident types and severity levels. Ensure Cortex SOAR is configured to provide alerts, reports, and updates on incident status, response actions, and resolution times. Monitor the effectiveness of automated responses and adjust playbooks and workflows as needed to improve incident response quality. Workflow Optimization and Customization: Analyze existing SOC workflows and identify opportunities to enhance efficiency through automation. Customize and create new playbooks to address evolving threats, new attack techniques, and changes in client environments. Work with clients and SOC teams to implement custom use cases and integrations specific to individual client security requirements. Monitoring and Reporting: Monitor the performance of Cortex SOAR playbooks and workflows to ensure they are executing correctly and improving SOC efficiency. Generate reports and dashboards on automated incident handling metrics (e.g., time saved, incidents resolved via automation). Provide regular updates to SOC management on the effectiveness of automation efforts and recommend improvements. Ensure detailed logging and reporting of all automated actions taken by the SOAR platform to meet compliance and audit requirements. Collaboration with SOC Teams: Collaborate with SOC analysts, threat intelligence, and incident response teams to refine and develop automation strategies. Provide training to SOC analysts and incident responders on how to leverage Cortex SOAR effectively in day-to-day operations. Act as the technical point of contact for troubleshooting issues related to Cortex SOAR integrations, playbooks, and platform performance. Platform Maintenance and Upgrades: Ensure that Cortex SOAR is regularly updated with the latest software versions, patches, and features. Perform regular health checks and maintenance of the platform, ensuring it remains fully functional and responsive. Collaborate with vendor support to troubleshoot issues and apply best practices for SOAR performance. Compliance and Security: Ensure that SOAR processes and automations align with industry regulations and compliance requirements (e.g., GDPR, HIPAA, PCI-DSS). Work closely with the compliance team to ensure that automated workflows meet the necessary audit and documentation standards. Implement security controls and access management within the SOAR platform to prevent unauthorized use and ensure data privacy.

Desired qualifications

Education: Bachelor’s degree in Information Security, Computer Science, or related field. Experience: 4+ years of experience in cybersecurity, with at least 2 years working with SOAR platforms, preferably Palo Alto Cortex SOAR. Strong background in SOC operations, incident response, or security engineering. Experience working in a Managed Security Service Provider (MSSP) environment is preferred. Proven track record of developing, deploying, and managing security automation workflows and playbooks. Certifications: Palo Alto Networks Certified Security Automation Engineer (PCSAE) or equivalent. Certified Information Systems Security Professional (CISSP), Certified Ethical Hacker (CEH), or other relevant certifications are a plus.

Location and way of working

Base location: Mumbai/Gurgaon Professional is required to work from office

Your role as a Deputy Manager

We expect our people to embrace and live our purpose by challenging themselves to identify issues that are most important for our clients, our people, and for society.

In addition to living our purpose, Senior Executive across our organization must strive to be:

Inspiring - Leading with integrity to build inclusion and motivation Committed to creating purpose - Creating a sense of vision and purpose Agile - Achieving high-quality results through collaboration and Team unity Skilled at building diverse capability - Developing diverse capabilities for the future Persuasive / Influencing - Persuading and influencing stakeholders Collaborating - Partnering to build new solutions Delivering value - Showing commercial acumen Committed to expanding business - Leveraging new business opportunities Analytical Acumen - Leveraging data to recommend impactful approach and solutions through the power of analysis and visualization Effective communication – Must be well abled to have well-structured and well-articulated conversations to achieve win-win possibilities Engagement Management / Delivery Excellence - Effectively managing engagement(s) to ensure timely and proactive execution as well as course correction for

the success of engagement(s)

Managing change - Responding to changing environment with resilience Managing Quality & Risk - Delivering high quality results and mitigating risks with utmost integrity and precision Strategic Thinking & Problem Solving - Applying strategic mindset to solve business issues and complex problems Tech Savvy - Leveraging ethical technology practices to deliver high impact for clients and for Deloitte Empathetic leadership and inclusivity - creating a safe and thriving environment where everyone's valued for who they are, use empathy to understand others to adapt our behaviours and attitudes to become more inclusive.

How you’ll grow

Connect for impact

Our exceptional team of professionals across the globe are solving some of the world’s most complex business problems, as well as directly supporting our communities, the planet, and each other. Know more in our and our .

Empower to lead

You can be a leader irrespective of your career level. Our colleagues are characterised by their ability to inspire, support, and provide opportunities for people to deliver their best and grow both as professionals and human beings. Know more about

Inclusion for all

At Deloitte, people are valued and respected for who they are and are trusted to add value to their clients, teams and communities in a way that reflects their own unique capabilities. At Deloitte, we believe in the unique skills, attitude and potential each and every one of us brings to the table to make an impact that matters.

Drive your career

At Deloitte, you are encouraged to take ownership of your career. We recognise there is no one size fits all career path, and global, cross-business mobility and up / re-skilling are all within the range of possibilities to shape a unique and fulfilling career. Know more about

Everyone’s welcome… entrust your happiness to us

Our workspaces and initiatives are geared towards your 360-degree happiness. This includes specific needs you may have in terms of accessibility, flexibility, safety and security, and caregiving. Here’s a glimpse of things that are in store for you.

Interview tips

We want job seekers exploring opportunities at Deloitte to feel prepared, confident and comfortable. To help you with your interview, we suggest that you do your research, know some background about the organisation and the business area you’re applying to.

*Caution against fraudulent job offers*: We would like to advise career aspirants to exercise caution against fraudulent job offers or unscrupulous practices.

At Deloitte, ethics and integrity are fundamental and not negotiable. We do not charge any fee or seek any deposits, advance, or money from any career aspirant in relation to our recruitment process. We have not authorized any party or person to collect any money from career aspirants in any form whatsoever for promises of getting jobs in Deloitte or for being considered against roles in Deloitte. We follow a professional recruitment process, provide a fair opportunity to eligible applicants and consider candidates only on merit. No one other than an authorized official of Deloitte is permitted to offer or confirm any job offer from Deloitte. We advise career aspirants to exercise caution.

In this regard, you may refer to a more detailed advisory given on our website at: 



  • Bengaluru, India Deloitte Full time

    Your potential, unleashed. India’s impact on the global economy has increased at an exponential rate and Deloitte presents an opportunity to unleash and realize your potential amongst cutting edge leaders, and organizations shaping the future of the region, and indeed, the world beyond. At Deloitte, your whole self to work, every day. Combine that...


  • Bengaluru, India Deloitte Full time

    Your potential, unleashed. India’s impact on the global economy has increased at an exponential rate and Deloitte presents an opportunity to unleash and realize your potential amongst cutting edge leaders, and organizations shaping the future of the region, and indeed, the world beyond. At Deloitte, your whole self to work, every day. Combine that with...


  • Bengaluru, India Deloitte Full time

    Job Description Preferred Knowledge   The role requires efficient incident response and digital forensics skills to minimise the impact of cyber risks. The individual will oversee Security monitoring, Security tools Operations, Security incidents, ensure incidents are managed effectively and reported to stakeholders. This role primarily consists of...


  • Bengaluru, India Deloitte Full time

    Job Description Preferred Knowledge   The role requires efficient incident response and digital forensics skills to minimise the impact of cyber risks. The individual will oversee Security monitoring, Security tools Operations, Security incidents, ensure incidents are managed effectively and reported to stakeholders. This role primarily consists of...


  • Bengaluru, India Deloitte Full time

    JD: Preferred Knowledge Demonstrates proven expertise and success managing project workstreams in a security, controls, or information security management environment. Should have the following skills: • Excellent communication and presentation skills • Analytical and problem-solving skills • Proven ability to implement, manage and optimize SIEM...


  • Bengaluru, India Deloitte Full time

    Your potential, unleashed. India’s impact on the global economy has increased at an exponential rate and Deloitte presents an opportunity to unleash and realise your potential amongst cutting edge leaders, and organisations shaping the future of the region, and indeed, the world beyond. At Deloitte, your whole self to work, every day. Combine that...

  • IT Automation Engineer

    2 months ago


    Bengaluru, India Sampoorna Consultants Pvt. Ltd Full time

    DUTIES & RESPONSIBILITIES :- Improves efficiency, reduces errors, and removes tedium by designing, developing, and maintaining automations- Works alongside SMEs in the Security Operations Center (SOC) and Incident Response (IR) teams to translate their manual and/or semi-automated processes into fully automated workflows- Responsible for analyzing, building,...


  • Bengaluru, India Deloitte Full time

    What impact will you make? Every day, your work will make an impact that matters, while you thrive in a dynamic culture of inclusion, collaboration and high performance. As the undisputed leader in professional services, Deloitte is where you’ll find unrivaled opportunities to succeed and realize your full potential Deloitte is where you’ll find...


  • Bengaluru, Karnataka, India Société Générale Assurances Full time

    Cyber Security Senior Analyst - SOC Cyber DefenseAbout the RoleSociété Générale Assurances is seeking a highly skilled Cyber Security Senior Analyst to join our team. As a key member of our Cyber Defense team, you will be responsible for conducting cyber security investigations, defining and maintaining security operational processes, and responding to...

  • Cyber Defense Analyst

    2 weeks ago


    Bengaluru, Karnataka, India News Corp Full time

    {"Job Title": "Cyber Defense Analyst", "Job Description": "Cyber Defense Analyst Job SummaryNews Corp is seeking a highly motivated and skilled Cyber Defense Analyst to join our team. As a Cyber Defense Analyst, you will play a critical role in identifying and mitigating potential security threats to our organization.Key Responsibilities:• Monitor and...

  • SoC Developer

    2 months ago


    Bengaluru, India Sampoorna Consultants Pvt. Ltd Full time

    DUTIES & RESPONSIBILITIES :- Improves efficiency, reduces errors, and removes tedium by designing, developing, and maintaining automations- Works alongside SMEs in the Security Operations Center (SOC) and Incident Response (IR) teams to translate their manual and/or semi-automated processes into fully automated workflows- Responsible for analyzing, building,...


  • Bengaluru, Karnataka, India 5100 Kyndryl Solutions Private Limited Full time

    About the RoleWe are seeking a highly skilled Cybersecurity Defense Specialist to join our team at 5100 Kyndryl Solutions Private Limited. As a key member of our Security & Resiliency practice, you will play a critical role in protecting our clients' infrastructure from cyber threats.Key ResponsibilitiesDesign and implement threat monitoring and detection...


  • Bengaluru, Karnataka, India Granicus Full time

    About the RoleGranicus is seeking a highly skilled Cyber Defense Specialist to join our team. As a key member of our Cyber Defense program, you will be responsible for providing expertise to protect the confidentiality, integrity, and availability of our organization. You will work closely with other technology teams to build a secure environment and help...


  • Bengaluru, India Société Générale Assurances Full time

    Cyber security Senior Analyst ( SOC Cyber defense ) - L2 Permanent contract|Bangalore|Innovation / Project / Organization Cyber security Senior Analyst ( SOC Cyber defense ) - L2 Bangalore, India Permanent contract Innovation / Project / Organization Responsibilities RESG/GTS is the entity in charge of the entire IT infrastructure...


  • Bengaluru, India News Corp Full time

    Job Description : Job Title: Lead Analyst, Cyber Defense Job Location: Bengaluru, Karnataka Work Arrangement: Hybrid (3 days per week in office) Shifts: Rotational shifts About News Corp News Corp is a global diversified media and information services company focused on creating and distributing authoritative and engaging content to...


  • Bengaluru, Karnataka, India News Corp Full time

    Job Title: Lead Cyber Defense AnalystJob Summary:We are seeking a highly skilled Lead Cyber Defense Analyst to join our team at News Corp. As a key member of our Security Operations Center (SOC), you will be responsible for monitoring and responding to security incidents, as well as developing and implementing security protocols to protect our organization's...


  • Bengaluru, Karnataka, India 5100 Kyndryl Solutions Private Limited Full time

    About UsKyndryl is a leading provider of IT infrastructure services, and our Security & Resiliency practice is one of our most critical areas of focus. We're committed to helping our clients protect their digital assets and stay ahead of emerging threats.The RoleWe're seeking a highly skilled Cybersecurity Defense Specialist to join our team. As a key member...


  • Bengaluru, Karnataka, India Capgemini Full time

    Finance & Accounting Operations Specialist - Proficiency in Proficient||Finance management - Experience >= Eleven to Eighteen Years||Finance management - How Recent in Less than 3 Years||Finance management - Proficiency in Proficient|Job Description: - Need better tracking of Finance and Operations as its dynamic place where we have additions and exits...


  • Bengaluru, Karnataka, India Quickstep Computer Centre Full time

    We are hiring Part Time & full Time Python Trainer for R T Nagar Bengaluru location. Good Communication skills and and deep knowledge on Python, Java, Data Science & Data Analytics. Please do call on: - 9743034376 WhatsApp on : - 9739204786 **Job Types**: Full-time, Part-time **Salary**: ₹18,000.00 - ₹20,000.00 per month Schedule: - Day...


  • Bengaluru, Karnataka, India L&T Semiconductor Technologies Full time

    Job DescriptionWe are seeking a highly skilled Lead Analog and Mixed Signal Verification Engineer to join our team at L&T Semiconductor Technologies.About the RoleThis is a critical leadership position responsible for overseeing the analog and mixed-signal verification efforts for our System-on-Chip (SOC) designs. The successful candidate will be responsible...