As an experienced Senior Consultant at Deloitte Consulting, you will be responsible for individually delivering high quality work products within due timelines. Need-basis you will be mentoring and/or directing junior team members/liaising with onsite/offshore teams to understand the functional requirements.
Work you'll do
As a Senior Consultant on the Endpoint Security Operate team, you will be responsible for leading endpoint security service delivery, driving operational maturity, and supporting strategic improvements across client environments.
- Own the endpoint security service for CrowdStrike, including service strategy, operating model, implementation roadmap, and capability development.
- Drive implementation and transformation initiatives such as sensor rollouts, migration from legacy tools, operating model redesign, and module adoption.
- Engage with stakeholders to align endpoint security priorities with enterprise risk, compliance requirements, business needs, and funding decisions.
- Oversee governance, vendor management, service performance, and strategic improvements across automation, threat hunting, exposure reduction, and reporting.
- Lead resource planning, quality assurance, team capability development, and continuous improvement to help ensure the service remains scalable, compliant, and measurable.
The team
Deloitte’s Endpoint Security Operate teams manage clients’ endpoint security environments either as a fully managed service or in partnership with client teams. We deliver specialized talent, leading endpoint protection and detection technologies, and mature operational processes to help clients strengthen endpoint resilience, improve threat visibility, and reduce response times. Our flexible and modularized methodology has been utilized by numerous global organizations to build a broad global privacy, data protection, and/or digital trust operations and includes the following phases and activities.
- Incident response
- Ongoing program improvement
- Data lifecycle management
- Policy fine-tuning
- Ongoing program metrics, monitoring, and reporting
- Automation enabling
Cyber Endpoint Security team focuses on efficiently running operations by enabling automation, reducing manual effort and adhering to Service Level Agreements (SLAs) based on the standards set by clients.
Location: Bengaluru/ Hyderabad/ Pune/ Chennai
Shift Timings: 24/7 rotational shifts; flexibility for night, weekend, and holiday coverage is essential
Qualifications
Required:
- 6-11 years of experience supporting endpoint security, Endpoint Detection and Response, or Extended Detection and Response tools in enterprise environments
- Experience monitoring, triaging, and responding to endpoint security alerts and incidents using CrowdStrike Falcon or similar endpoint protection platforms
- Experience administering CrowdStrike Falcon, including sensor deployment, policy configuration, host grouping, exclusions, and response actions
- Experience troubleshooting endpoint security issues across Windows, macOS, and server environments
- Experience with incident containment and remediation activities including host isolation, indicator blocking, quarantine support, and coordination with infrastructure or support teams
- Experience working with Security Information and Event Management, Security Orchestration, Automation, and Response, Information Technology Service Management, and security operations workflows
- Bachelor of Engineering, Bachelor of Technology, Master of Computer Applications, Master of Science in Computer Science, or equivalent degree from an accredited university
Preferred:
- Endpoint security tool certifications such as CCFA, Microsoft Defender ATP, Cylance Security Professional, McAfee Product Specialist, or Symantec Certified Specialist
- Experience with automation or scripting using PowerShell or Python
- Experience integrating endpoint security platforms with cloud security, Security Information and Event Management, or Security Orchestration, Automation, and Response tools
- Certifications such as ITIL Foundation, CEH, CompTIA Security+, CISSP, GIAC Certified Intrusion Analyst, or GMON
- Knowledge of endpoint security concepts including malware protection, behavioral detection, attack indicators, persistence techniques, and threat prevention controls
- Experience analyzing logs, alerts, and endpoint telemetry to identify false positives, policy gaps, and operational issues.
#Cyber_Cyber Operate