Join Deloitte Cyber and help organizations navigate the evolving cybersecurity landscape with greater confidence and resilience. As part of our Cyber practice, you will support clients in transforming security operations through advanced detection, automation, and response capabilities. In this role, you will contribute to the implementation and optimization of Palo Alto Networks XSIAM solutions to help clients improve visibility, strengthen incident response, and manage cyber threats at scale.
Work you'll do
As a Consultant on the Cyber team, you will be responsible for supporting the design, implementation, and optimization of XSIAM solutions that enhance security operations and incident response capabilities.
- Support the implementation and optimization of Palo Alto Networks XSIAM, including detection rules, use cases, and automation workflows.
- Integrate log and telemetry sources into the platform, including validation of parsing, normalization, and data quality.
- Assist in developing automated response workflows to support incident containment, investigation, and remediation.
- Support client engagements by helping document security operations use cases, threat detection strategies, and platform capabilities.
- Create technical documentation, runbooks, and configuration materials, and contribute to knowledge transfer activities.
The team
Cyber Defense & Resilience teams assist clients in defending against advanced threats by transforming security operations, and by monitoring technology, data analytics, and threat intelligence. They help manage and protect dynamic attack surfaces and provide rapid crisis and cyber incident response, thereby ensuring that clients can be ready for, respond to, and recover from business disruptions. Examples of work include Operational Resilience, Crisis & Incident Response, and Security Operations Center Transformation.
Location: Bangalore, Hyderabad, Pune, Chennai
Shift Timings: General
Qualifications
Required:
- 3-6 years of experience in security operations, security information and event management (SIEM), security orchestration, automation, and response (SOAR), or incident response
- Experience with Palo Alto Networks XSIAM and Cortex XDR or Cortex XSOAR
- Experience creating detection rules, integrations, and automated response workflows
- Experience integrating log and telemetry sources and validating data normalization and platform ingestion
- Experience creating technical documentation, runbooks, and knowledge transfer materials
- Bachelor’s degree in Computer Science, Information Technology, Cybersecurity, Engineering, or equivalent experience
Preferred:
- Palo Alto Networks Certified Cybersecurity Associate, CompTIA Security+, or GIAC Certified Incident Handler certification
- Experience supporting client-facing technical discussions and recommendations
- Experience working with cross-functional teams on security operations initiatives