Deloitte Cyber understands the unique challenges and opportunities businesses face in cybersecurity. Join our team to deliver powerful insights to help our clients navigate the ever-changing threat design and technology as we partner with clients to transform their security posture.
As a Manager at Deloitte Consulting, you will lead the design and delivery of enterprise-scale SOAR programs across a portfolio of client engagements. You will own technical strategy, manage multi-disciplinary teams, drive practice growth through pursuit support and offering development, and serve as a trusted advisor to senior client stakeholders. Your role spans engagement leadership, people development, intellectual property creation, and shaping how Deloitte brings AI-augmented security automation to market.
Work you'll do
As a Manager on the Cyber Operate team, you will be responsible for:
- Leading end-to-end delivery of security orchestration, automation, and response (SOAR) engagements across client environments, including scope, timelines, quality, and risk management
- Defining SOAR architecture, operating models, and implementation roadmaps, including platform selection, integrations, playbook design, and operationalization
- Designing and implementing artificial intelligence (AI)-enabled security automation use cases, including large language model (LLM)-supported triage, incident summarization, and human-in-the-loop workflows
- Managing teams of consultants and analysts, including work planning, delivery oversight, coaching, and performance development
- Supporting practice growth through proposals, solution design, effort estimation, reusable assets, and intellectual property development
The team
Cyber Operate teams manage clients' critical cyber assets either as a fully managed service or in partnership with clients. They deliver skilled talent, cutting-edge technologies, and robust processes to operate client cyber capabilities. This includes managing the identity lifecycle, security operations, threat intelligence, application security, business transformation, and ensuring continuous compliance. Services include Cyber-as-a-Service, Managed Application Security, and Managed Extended Detect & Respond (MXDR).
Location: Bengaluru/Hyderabad/Pune/Chennai/Gurugram/Kolkata
Shift Timings: 2:00 PM to 11:00 PM IST
Qualifications
Required:
- 8+ years of experience in cybersecurity
- 5+ years of experience in SOAR engineering, security automation, or security operations
- Experience leading enterprise SOAR programs, including architecture, integrations, playbook development, and operationalization
- Experience with one or more SOAR platforms, such as Cortex XSOAR, Splunk SOAR, Tines, Swimlane, Torq, or IBM Resilient
- Experience with security operations center operating models, security information and event management (SIEM), endpoint detection and response (EDR), incident response processes, and threat intelligence integrations
- Experience managing teams across client engagements, including resource planning, delivery oversight, and performance management
- Bachelor's degree in Computer Science, Cyber Security, Information Security, Engineering, Information Technology, or another technical field
Preferred:
- Experience leading AI-enabled SOAR programs, including LLM-based playbook generation, agentic workflows, machine learning-based alert triage, and human-in-the-loop decisioning
- Experience with foundation model platforms, such as Anthropic Claude or OpenAI, for security automation use cases
- Experience defining governance and control frameworks for AI in security operations, including output validation, audit logging, and bounded-autonomy policies
- Experience leading security automation across Amazon Web Services (AWS), Microsoft Azure, and Google Cloud Platform (GCP)
- Industry certifications such as Certified Information Systems Security Professional (CISSP), Certified Information Security Manager (CISM), or Global Information Assurance Certification (GIAC)
- Experience with regulatory and control frameworks such as National Institute of Standards and Technology Cybersecurity Framework (NIST CSF), NIS2, DORA, HIPAA, or PCI DSS
#Cyber_Cyber Operate