IN-Senior Associate_SOC _Managed Services_Advisory_Mumbai

10 Hours ago • 5-8 Years

About the job

SummaryBy Outscal

This is a Senior Associate position at PwC, focusing on cybersecurity and privacy services. It requires 5-8 years of experience in SOC operations, analyzing malicious traffic, and building detections. Expertise in application, network, and systems security is crucial, along with knowledge of security testing tools and common programming languages.

Line of Service

Advisory

Industry/Sector

FS X-Sector

Specialism

Risk

Management Level

Senior Associate

Job Description & Summary

A career within Cybersecurity and Privacy services, will provide you with the opportunity to help our clients implement an effective cybersecurity programme that protects against threats, propels transformation, and drives growth. As companies pivot toward a digital business model, exponentially more data is generated and shared among organisations, partners and customers. We play an integral role in helping our clients ensure they are protected by developing transformation strategies focused on security, efficiently integrate and manage new or existing technology systems to deliver continuous operational improvements and increase their cybersecurity investment, and detect, respond, and remediate threats.

*Why PWC

At PwC, you will be part of a vibrant community of solvers that leads with trust and creates distinctive outcomes for our clients and communities. This purpose-led and values-driven work, powered by technology in an environment that drives innovation, will enable you to make a tangible impact in the real world. We reward your contributions, support your wellbeing, and offer inclusive benefits, flexibility programmes and mentorship that will help you thrive in work and life. Together, we grow, learn, care, collaborate, and create a future of infinite experiences for each other. Learn more about us.

At PwC, we believe in providing equal employment opportunities, without any discrimination on the grounds of gender, ethnic background, age, disability, marital status, sexual orientation, pregnancy, gender identity or expression, religion or other beliefs, perceived differences and status protected by law. We strive to create an environment where each one of our people can bring their true selves and contribute to their personal growth and the firm’s growth. To enable this, we have zero tolerance for any discrimination and harassment based on the above considerations. "

 

 

Job Description & Summary: We are seeking a professional to join our Cybersecurity and Privacy services team, where you will have the opportunity to help clients implement effective cybersecurity programs that protect against threats, drive transformation, and foster growth. As companies increasingly adopt digital business models, the generation and sharing of data among organizations, partners, and customers multiply. We play a crucial role in ensuring that our clients are protected by developing transformation strategies focused on security, efficiently integrating and managing new or existing technology systems, and enhancing their cybersecurity investments. As an L3 Analyst/SOC Manager, you will be responsible for overseeing regular operations, driving continuous improvement processes, and managing client and vendor interactions. This role involves managing complex incidents escalated from L2 analysts, operating the Security Incident process, and mentoring junior team members to build a cohesive and motivated unit.

 

 

 

 

Responsibilities:

 

  • Review cybersecurity events analyzed by L2 security analysts, serving as the escalation point for detection, response, and remediation activities.
  • Monitor and guide the team in triaging cybersecurity events, prioritizing, and recommending/performing response measures.
  • Provide technical support for IT teams in response and remediation activities for escalated cybersecurity events/incidents.
  • Follow up on cybersecurity incident tickets until closure.
  • Guide L1 and L2 analysts in analyzing events and response activities.
  • Expedite cyber incident response and remediation activities when delays occur, coordinating with L1 and L2 team members.
  • Review and provide suggestions for information security policies and best practices in client environments.
  • Ensure compliance with SLAs and contractual requirements, maintaining effective communication with stakeholders.
  • Review and share daily, weekly, and monthly dashboard reports with relevant stakeholders.
  • Update and review documents, playbooks, and standard operational procedures.
  • Validate and update client systems and IT infrastructure documentation.
  • Share knowledge on current security threats, attack patterns, and tools with team members.
  • Create and review new use cases based on evolving attack trends.
  • Analyze and interpret Windows, Linux OS, firewall, web proxy, DNS, IDS, and HIPS log events.
  • Develop and maintain threat detection rules, parsers, and use cases.
  • Understand security analytics and flows across SaaS applications and cloud computing tools.
  • Validate use cases through selective testing and logic examination.
  • Maintain continuous improvement processes and build/groom teams over time.
  • Develop thought leadership within the SOC.

 

Mandatory skill sets:

 

  • Bachelor’s degree (minimum requirement).
  • 5-8 years of experience in SOC operations.
  • Experience analyzing malicious traffic and building detections.
  • Experience in application security, network security, and systems security.
  • Knowledge of security testing tools (e.g., BurpSuite, Mimikatz, Cobalt Strike, PowerSploit, Metasploit, Nessus, HP Web Inspect).
  • Proficiency in common programming and scripting languages (Python, PowerShell, Ruby, Perl, Bash, JavaScript, VBScript).
  • Familiarity with cybersecurity frameworks and practices (OWASP, NIST CSF, PCI DSS, NY-DFS).
  • Experience with traditional security operations, event monitoring, and SIEM tools.
  • Knowledge of MITRE or similar frameworks and procedures used by adversaries.
  • Ability to develop and maintain threat detection rules and use cases.

 

Preferred skill sets:

 

  • Strong communication skills, both written and oral.
  • Experience with SMB and large enterprise clients.
  • Good understanding of ITIL processes (Change Management, Incident Management, Problem Management).
  • Strong expertise in multiple SIEM tools and other SOC environment devices.
  • Knowledge of firewalls, IDS/IPS, AVI, EDR, Proxy, DNS, email, AD, etc.
  • Understanding of raw log formats of various security devices.
  • Foundational knowledge of networking concepts (TCP/IP, LAN/WAN, Internet network topologies).
  • Relevant certifications (CEH, CISA, CISM, etc.).
  • Strong work ethic and time management skills.
  • Coachability and dedication to consistent improvement.
  • Ability to mentor and encourage junior teammates.
  • Knowledge of regex and parser creation.
  • Ability to deploy SIEM solutions in customer environments.

 

Years of experience required:

 

5-8 + years

Education qualification:

 

B.Tech

Education (if blank, degree and/or field of study not specified)

Degrees/Field of Study required: Bachelor of Engineering

Degrees/Field of Study preferred:

Certifications (if blank, certifications not specified)

Required Skills

SoCs

Optional Skills

Desired Languages (If blank, desired languages not specified)

Travel Requirements

Available for Work Visa Sponsorship?

Government Clearance Required?

Job Posting End Date

About The Company

At PwC, our purpose is to build trust in society and solve important problems. We’re a network of firms in 152 countries with over 327,000 people who are committed to delivering quality in assurance, advisory and tax services. Find out more and tell us what matters to you by visiting us at www.pwc.com. PwC refers to the PwC network and/or one or more of its member firms, each of which is a separate legal entity.


Content on this page has been prepared for general information only and is not intended to be relied upon as accounting, tax or professional advice. Please reach out to your advisors for specific advice.

View All Jobs

Similar Skill Jobs

Trellix - Senior Software Development Engineer

Karnataka, India (On-Site)

Trellix - Software Engineer

Karnataka, India (On-Site)

Razer - Software Engineer

Selangor, Malaysia (On-Site)

Razer - Software Engineer

Hauts-de-France, France (On-Site)

paypal - Software Engineer - Fresh Grad

Shanghai, China (On-Site)

paypal - Member Technical Staff 1

Tamil Nadu, India (Hybrid)

paypal - Solution Engineer

Karnataka, India (Hybrid)

paypal - Arbitration Paralegal, Litigation

Arizona, United States (On-Site)

paypal - Sr. Product Manager - Technical

Karnataka, India (Hybrid)

paypal - Director, Product Marketing

California, United States (Hybrid)

Jobs in Mumbai, Maharashtra, India

Trellix - Senior Software Development Engineer

Karnataka, India (On-Site)

Trellix - Software Engineer

Karnataka, India (On-Site)

paypal - Software Engineer - Java

Tamil Nadu, India (Hybrid)

paypal - Member Technical Staff 1

Tamil Nadu, India (Hybrid)

paypal - Solution Engineer

Karnataka, India (Hybrid)

paypal - Sr. Product Manager - Technical

Karnataka, India (Hybrid)

Rolls Royce - Software Development Engineer

Maharashtra, India (On-Site)

Software Engineering Jobs

Trellix - Senior Software Development Engineer

Karnataka, India (On-Site)

Trellix - Software Engineer

Karnataka, India (On-Site)

Razer - Software Engineer

Selangor, Malaysia (On-Site)

Razer - Software Engineer

Hauts-de-France, France (On-Site)

paypal - Software Engineer - Fresh Grad

Shanghai, China (On-Site)

paypal - Software Engineer - Java

Tamil Nadu, India (Hybrid)

paypal - Member Technical Staff 1

Tamil Nadu, India (Hybrid)

paypal - Solution Engineer

Karnataka, India (Hybrid)

Rolls Royce - Dynamics Structural Engineer-Submarines

England, United Kingdom (Hybrid)

Level Up Your Career in Game Development!

Transform Your Passion into Profession with Our Comprehensive Courses for Aspiring Game Developers.

Job Common Plug