IR & Forensics - Manager

Deloitte Development LLC

Bengaluru

On-site

INR 2,800,000 - 3,600,000

Full time

14 days+
Application generator

Get a reply from this recruiter — a resume and cover letter tailored to exactly what they’re hiring for.

Get past ATS filters

Job summary

Deloitte’s Cyber Incident Response team in Bengaluru is seeking a Manager to lead incident response engagements across enterprise, cloud, and hybrid environments. You will guide triage, containment, and forensic activities, while advising clients during active incidents and supporting development of playbooks and recovery plans.

The role emphasizes strong technical judgment, responsiveness during incidents, and the ability to lead teams in fast-paced settings across multiple Indian locations.

Qualifications

  • 9+ years of cybersecurity experience including incident response
  • Experience leading incident response engagements for enterprise environments
  • Experience with ransomware, business email compromise, or advanced persistent threats
  • Experience with security operations and incident management processes
  • Proficiency with SIEM platforms and forensic tools
  • Strong client-facing communication during high-impact events
  • Bachelor’s degree in a relevant technical field or equivalent experience

Responsibilities

  • Lead incident response engagements across enterprise, cloud, and hybrid environments
  • Direct triage, containment, and forensic analysis across endpoints, networks, and cloud
  • Oversee threat hunting, log analysis, malware analysis, and investigations
  • Advise client stakeholders during active incidents and support incident response planning
  • Document incident timelines, IOC, methodologies, remediation actions, and post-incident reviews

Skills

Incident response
Cybersecurity
Leadership
Threat hunting
Forensic analysis
Threat intelligence
SIEM
Scripting (Python/PowerShell/Bash)
Active Directory attack techniques
Project management

Education

Bachelor’s degree in Computer Science or Information Security

Tools

Splunk
Microsoft Sentinel
QRadar
Chronicle
Magnet AXIOM
EnCase
FTK
Volatility
X-Ways
Autopsy

Job description

Join Deloitte’s Cyber Incident Response team as a Manager and help organizations respond to complex cyber incidents across enterprise, cloud, and hybrid environments. In this role, you will lead incident response activities, advise client stakeholders during high-impact events, and help drive forensic analysis, threat hunting, and recovery efforts. This position requires strong technical judgment, responsiveness during active incidents, and the ability to lead teams in fast-paced environments.

Work you'll do

As a Manager on the Cyber Incident Response team, you will be responsible for leading incident response engagements and supporting clients through complex cyber investigations and recovery efforts.

  • Lead incident response engagements involving malware, ransomware, data breach, and insider threat investigations across enterprise, cloud, and hybrid environments
  • Direct triage, containment, and forensic analysis activities across endpoints, networks, cloud environments, and identity infrastructure, including Windows, Linux, and macOS systems
  • Oversee threat hunting, log analysis, malware analysis, and investigative activities across security information and event management, endpoint detection and response, and network security platforms
  • Advise client stakeholders during active incidents, support tabletop exercises and incident response planning, and contribute to development of internal playbooks and knowledge assets
  • Document incident timelines, indicators of compromise, attack methodologies, findings, remediation actions, and post-incident reviews for client delivery
The team

Deloitte’s Cyber Incident Response team helps organizations investigate, contain, and recover from complex cyber incidents across enterprise, cloud, and hybrid environments. The team supports clients through forensic analysis, threat hunting, incident management, and recovery planning during high-impact events. Professionals in this practice work across industries to strengthen incident response readiness, improve detection and response capabilities, and reduce the impact of future attacks.

Location: Bengaluru, Hyderabad, Pune, Chennai

Shift Timings: Based on client / project needs

Qualifications

Required:

  • 9+ years of experience in cybersecurity, including 2+ years of experience in incident response
  • Experience responding to ransomware, business email compromise, or advanced persistent threat incidents
  • Experience supporting enterprise clients in a consulting environment
  • Experience with security information and event management platforms such as Splunk, Microsoft Sentinel, QRadar, or Chronicle
  • Experience with forensic tools such as Magnet Axiom, EnCase, FTK, Volatility, X-Ways, or Autopsy
  • Experience with endpoint detection and response or extended detection and response platforms, network analysis tools, threat intelligence frameworks such as MITRE ATT&CK or STIX/TAXII, scripting in Python, PowerShell, or Bash, and Active Directory attack techniques
  • Bachelor’s degree in Computer Science, Information Security, or a comparable technical field, or equivalent experience

Preferred:

  • GIAC Certified Incident Handler (GCIH)
  • GIAC Certified Forensic Analyst (GCFA)
  • GIAC Certified Intrusion Analyst (GCIA)
  • Certified Information Systems Security Professional (CISSP) or equivalent certification
  • Certified Information Systems Auditor (CISA), Certified Ethical Hacker (CEH), or Offensive Security Certified Professional (OSCP)
  • Experience leading incident response teams, client communications, or post-incident recovery planning
Get your free, confidential resume review.
or drag and drop your file here.
Similar jobs

Similar jobs worth comparing

Red Teaming - Senior Consultant
Red Teaming - Senior Consultant

Deloitte Development LLC • Bengaluru

On-site
INR 1,800,000 - 2,800,000
Cyber Operate - NG SIEM Google SecOps - Senior Consultant
Cyber Operate - NG SIEM Google SecOps - Senior Consultant

Deloitte Development LLC • Bengaluru

On-site
INR 2,800,000 - 4,200,000
Cybersecurity Incident Response Specialist
Cybersecurity Incident Response Specialist

Achieve Cybersecurity Solutions • Hyderabad

On-site
INR 2,500,000 - 4,200,000
IR & Forensics – Senior Consultant
IR & Forensics – Senior Consultant

Forensic Focus Limited • India

On-site
INR 1,200,000 - 1,800,000
Forensics Discovery Consultant
Forensics Discovery Consultant

EY • Gurugram District

On-site
INR 1,800,000 - 2,500,000
Senior Cyber Security Analyst (R-19638)
Senior Cyber Security Analyst (R-19638)

Eyeota • Hyderabad

On-site
INR 1,100,000 - 2,400,000
Senior Cybersecurity Incident Response Specialist
Senior Cybersecurity Incident Response Specialist

UltraViolet Cyber • Hyderabad

On-site
INR 2,800,000 - 4,200,000
Senior Cybersecurity Incident Response Specialist
Senior Cybersecurity Incident Response Specialist

Uvcyber • Hyderabad

On-site
INR 2,500,000 - 4,500,000
Assistant Manager | Security Frameworks and Standards | Pune | Cyber Strategy & Transformation
Assistant Manager | Security Frameworks and Standards | Pune | Cyber Strategy & Transformation

Deloitte & Touche GmbH Wirtschaftsprüfungsgesellschaft • Maharashtra

On-site
INR 1,500,000 - 2,100,000
Manager | Security Frameworks and Standards | Pune | Cyber Strategy & Transformation
Manager | Security Frameworks and Standards | Pune | Cyber Strategy & Transformation

Deloitte & Touche GmbH Wirtschaftsprüfungsgesellschaft • Maharashtra

On-site
INR 6,000,000 - 9,000,000