IN Associate SOC Managed Services Advisory Mumbai
Mumbai Shivaji Park, India
Line of Service
AdvisoryIndustry/Sector
FS X-SectorSpecialism
RiskManagement Level
AssociateJob Description & Summary
At PwC, our people in cybersecurity focus on protecting organisations from cyber threats through advanced technologies and strategies. They work to identify vulnerabilities, develop secure systems, and provide proactive solutions to safeguard sensitive data.As a cybersecurity generalist at PwC, you will focus on providing comprehensive security solutions and experience across various domains, maintaining the protection of client systems and data. You will apply a broad understanding of cybersecurity principles and practices to address diverse security challenges effectively.
Why PWC
At PwC, you will be part of a vibrant community of solvers that leads with trust and creates distinctive outcomes for our clients and communities. This purpose-led and values-driven work, powered by technology in an environment that drives innovation, will enable you to make a tangible impact in the real world. We reward your contributions, support your wellbeing, and offer inclusive benefits, flexibility programmes and mentorship that will help you thrive in work and life. Together, we grow, learn, care, collaborate, and create a future of infinite experiences for each other. Learn more about us.
At PwC, we believe in providing equal employment opportunities, without any discrimination on the grounds of gender, ethnic background, age, disability, marital status, sexual orientation, pregnancy, gender identity or expression, religion or other beliefs, perceived differences and status protected by law. We strive to create an environment where each one of our people can bring their true selves and contribute to their personal growth and the firm’s growth. To enable this, we have zero tolerance for any discrimination and harassment based on the above considerations. "
Job Description & Summary:. We are seeking a professional to join our Cybersecurity and Privacy services team, where you will have the opportunity to help clients implement effective cybersecurity programs that protect against threats, drive transformation, and foster growth. As companies increasingly adopt digital business models, the generation and sharing of data among organizations, partners, and customers multiply. We play a crucial role in ensuring that our clients are protected by developing transformation strategies focused on security, efficiently integrating and managing new or existing technology systems, and enhancing their cybersecurity investments.
Responsibilities:
Job Description Detailed Responsibilities/Duties · Responsible for initial or secondary triage of security incidents identified by internal controls or external SOC partners · Proficient in Threat Research and understands the latest malware trends, common attack TTPs, and the general threat landscape · Proficient in Incident Response and automation workflows as it relates to Security Operations · Demonstrates ability to author content using a variety of query languages, as well as scripting for event enrichment and investigation · Detects, identifies, and responds to cyber events, threats, security risks and vulnerabilities in line with cyber security policies and procedures · Conducts threat hunting and analysis using various toolsets based on intelligence gathered · Responsible for documenting the incident life cycle, conducting handoffs’, escalation, and providing support during cyber incidents · · Create detailed Incident Reports and contribute to lessons learned in collaboration with the team · Works with vulnerability management resources to uncover and prioritize potential risks and makes specific recommendations to reduce the threat landscape and minimize risk · Works with leadership and the engineering team to improve and expand available toolsets when warranted · are critical for the role Required Qualifications Skills · Experience with one or more Security Information and Event Management (SIEM) solutions · Understanding of common Attack methods and their SIEM signatures · Experience in security monitoring, Incident Response (IR), security tools configuration and security remediation · Strong knowledge and experience in Security Event Analysis capability · Understanding of network protocols (TCP/IP stack, SSL/TLS, IPSEC, SMTP/IMAP, FTP, HTTP etc.) · Understanding of Operating System, Web Server, database, and Security devices (firewall/NIDS/NIPS) logs and log formats · Understanding of String Parsing and Regular Expressions · Strong analytical and problem-solving skills · High level of personal integrity, and the ability to professionally handle confidential matters and show an appropriate level of judgment and maturity · Ability to interact effectively at all levels with sensitivity to cultural diversity
· Ability to adapt as the external environment and organization evolves · Passionate about Cybersecurity domain and has the inclination to learn current technologies / concepts / improvements · Excellent in security incident handling, documentation, root cause analysis, troubleshooting and publishing post-Incident Reports. · Strong experience with cyber security in the domains of cyber threat intelligence and analysis, security monitoring and incident response · Experience of network and system vulnerabilities, malware, networking protocols and attack methods to exploit vulnerabilities · Knowledge of cyber security frameworks and attack methodologies · Experience working with EDRs, Proxies, and anti-virus · Knowledge of intrusion detection methodologies and techniques for detecting host- and network-based intrusions via intrusion detection technologies · Excellent verbal and written English communication skills Experience · More than 4-6 years of experience in Enterprise Cybersecurity or with a reputed services/consulting firm offering Security Consulting, Implementation and Managed Security services · More than 4 years of technical experience in Security Operations Center (SOC) and Information Security required · Experience with one or more Security Information and Event Management (SIEM) solutions
Mandatory skill sets:
Tools · Email Security: Proofpoint, Abnormal Security, M365 Defender · SOAR: Palo Alto XSOAR · SIEM: Splunk · Firewall: Palo Alto · EDR: Crowdstrike · Other tools: Darktrace and M365 Defender
Preferred skill sets:
· Professional Certifications like CEH, CCSE, CCNA, Security+, etc., will be plus SIEM certifications
Years of experience required:
4-7 Years
Education qualification:
B.Tech/MCA/MBA with IT background/ Bachelor’s degree in Information Technology, Cybersecurity, Computer Science
Education (if blank, degree and/or field of study not specified)
Degrees/Field of Study required: Master of Business Administration, Bachelor of EngineeringDegrees/Field of Study preferred:Certifications (if blank, certifications not specified)
Required Skills
SoCsOptional Skills
Accepting Feedback, Accepting Feedback, Active Listening, Agile Methodology, Azure Data Factory, Communication, Cybersecurity, Cybersecurity Framework, Cybersecurity Policy, Cybersecurity Requirements, Cybersecurity Strategy, Emotional Regulation, Empathy, Encryption Technologies, Inclusion, Intellectual Curiosity, Managed Services, Optimism, Privacy Compliance, Regulatory Response, Security Architecture, Security Compliance Management, Security Control, Security Incident Management, Security Monitoring {+ 3 more}Desired Languages (If blank, desired languages not specified)
Travel Requirements
Available for Work Visa Sponsorship?
Government Clearance Required?
Job Posting End Date
* Salary range is an estimate based on our InfoSec / Cybersecurity Salary Index 💰
Tags: Agile Automation Azure CEH Clearance Clearance Required Compliance Computer Science CrowdStrike EDR Encryption Exploit Firewalls Incident response Intrusion detection Malware Monitoring Privacy Risk management Scripting SIEM SMTP SOAR SOC Splunk Strategy TCP/IP Threat intelligence Threat Research TLS TTPs Vulnerabilities Vulnerability management XSOAR
Perks/benefits: Career development Team events
More jobs like this
Explore more career opportunities
Find even more open roles below ordered by popularity of job title or skills/products/technologies used.