Deloitte-posted 5 months ago
$130,800 - $241,000/Yr
Full-time • Manager
Austin, TX
Professional, Scientific, and Technical Services

Our Deloitte Cyber team understands the unique challenges and opportunities businesses face in cybersecurity. Join our team to deliver powerful solutions to help our clients navigate the ever-changing threat landscape. Through powerful solutions and managed services that simplify complexity, we enable our clients to operate with resilience, grow with confidence, and proactively manage to secure success.

  • Lead the architecting, designing, and implementing the deployment of Cloud Services (Azure, AWS, GCP), Microsoft Sentinel, EDR, and XDR solutions to enhance clients' security posture.
  • Form KQL queries and functions for complex detection and monitoring requirements.
  • Build custom analytical rules, tune analytical rules, and build automation through Azure logic apps.
  • Create clear and concise reports on security data and threats, including data visualization techniques.
  • Develop analytical rules and custom dashboards/workbooks across the MITRE attack framework.
  • Assist clients with migrating from existing SIEM solutions to Microsoft Sentinel.
  • Manage log retention, maintenance of logs, and develop new custom dashboards based on different requirements.
  • Implement Sentinel advanced features and efficient log collection mechanisms.
  • Integrate unsupported data sources with Sentinel and develop custom parsers.
  • Integrate threat intelligence and UEBA (User and Entity Behavior Analytics).
  • Provide end-to-end event analysis, incident detection, and manage escalations.
  • Manage the development and implementation of automation playbooks in Microsoft Sentinel.
  • Create cyber and threat hunting queries for advanced investigations.
  • Continuously improve service by identifying and correcting issues or gaps in knowledge.
  • Connect native and third-party custom/SaaS applications with SIEM.
  • Understand basic networking protocols and possible attack activities.
  • Act as a subject matter expert on cyber risk for Microsoft Sentinel, EDR & XDR platforms.
  • Prepare and maintain policy and procedure documentation around SIEM technology.
  • Supervise the work of team members and support delivery teams.
  • 6+ years of experience in managing technical consulting, client problem solving, architecting, and designing solutions around Microsoft Sentinel, EDR & XDR platforms.
  • 6+ years of hands-on technical experience with Microsoft Security management services.
  • 6+ years of hands-on technical experience implementing Microsoft Sentinel, EDR, XDR focused security solutions.
  • BA/BS Degree in Computer Science, Cyber Security, Information Security, Engineering, or Information Technology.
  • Certifications such as Microsoft SC 200, CCSP, CCSK, CISSP, CCNP, CCNA.
  • Discretionary annual incentive program based on individual and organizational performance.
  • Broad range of employee benefits.
© 2024 Teal Labs, Inc
Privacy PolicyTerms of Service