Deloitte is seeking an Advance Threat Protection Server Security Operations Analyst to provide operational support and manage endpoint protection products. This role involves incident management, documentation, and collaboration with various teams to ensure effective security operations.
Deloitte Global is the engine of the Deloitte network. Our professionals reach across disciplines and borders to develop and lead global initiatives. We deliver strategic programs and services that unite our organization. Work you'll do We are looking for an Advance Threat Protection Server Security Operations Analyst to join our Deloitte Global Team. Key Responsibilities: • Operational Support: Provide 4th level support for incidents and requests related to endpoint health, including on-call work when required. • Ticket Management: Monitor and handle tickets assigned to your support queues and be available to support any related major incidents. • Product Expertise: Develop a deep understanding of the endpoint protection products you will be managing. • Documentation: Create and maintain knowledge base documents and playbooks outlining end-to-end support procedures and inter-team workflows. • Change Management: Support change management activities for product upgrades within the production environment, collaborating with in-house teams and third parties to ensure successful implementation. • Escalation Response: Respond to escalations from Security Policy Management, GNOC, SOC, and Member Firms, assisting them with understanding endpoint protection products and support processes. • Testing and Ad-Hoc Duties: Assist the technical lead/architect and security analyst in testing product upgrades and perform other job-related duties as assigned. The team Deloitte Technology works at the forefront of technology development and processes to support and protect Deloitte around the world. In this truly global environment, we operate not in "what is" but rather "what can be" to help Deloitte deliver and connect with its clients, its communities, and one another in ways not previously conceived. Qualifications Required Qualifications: • Experience with configuration and deployment of endpoint protection platforms (e.g., CrowdStrike, McAfee, Microsoft). • Strong working knowledge of server operating systems (Windows Server 2016, 2019, 2022, Linux - REHL, SUSE, Ubuntu) or Microsoft Defender for EndPoint • Working knowledge of computer networking (firewalls, routing, etc.) • Knowledge of configuration, policy, and event workflows and playbooks. Preferred: • Experience with Python and PowerShell scripting. • Experience in supporting security tools (e.g., anti-virus, host intrusion detection). • Experience working within a service management framework (e.g., ITIL). • Knowledge of Security Information and Event Management (SIEM) tools. • Understanding of SCCM and BigFix Our culture At Deloitte Global people are valued and respected for who they are - with opportunities to bring their unique perspectives, talents and passions to business challenges. Our global workspace creates room for individuality and collaboration. Ours is an inclusive, supportive, connected culture with a focus on development, flexibility, and well-being. This culture makes Deloitte Global one of the most rewarding places to work, and to transform your career. Professional development From entry-level employees to senior leaders, we believe in investing in you, helping you identify and hone your unique strengths at every step of your career. We offer opportunities to build new skills, take on leadership opportunities, and connect and grow through mentorship. From on-the-job learning experiences to formal development programs, our professionals have a variety of opportunities to continue to grow throughout their career. Benefits At Deloitte, we value our people and offer employees a broad range of benefits. Our Total Rewards program reflects our continued commitment to lead from the front in everything we do-that's why we take pride in offering a comprehensive variety of programs and resources to support your health and well-being. Hybrid work, remote may be an option
NXP Semiconductors is seeking a Security Operations Analyst to lead their Blue Team in Austin, Texas, focusing on defensive cybersecurity operations. The role involves overseeing threat detection, incident response, and security strategy implementation across IT, OT, and R&D environments.
Long View is seeking a Senior Security Operations Center Analyst to enhance their IT security operations. This role involves monitoring security events, coordinating incident responses, and providing guidance across the organization.
QMS Consulting is seeking a Senior Security Operations Center Analyst to join their innovative SOC team in Austin, Texas. The role involves leading incident investigations, developing incident response playbooks, and onboarding new detection technologies.
The Cyber Security Analyst, Operations Watch Incident Response Analyst at Adapt Forward is responsible for investigating and responding to cybersecurity incidents while ensuring compliance with reporting requirements. This role requires a minimum of a Secret clearance and involves 24/7 operational support.
Deloitte is seeking an Advance Threat Protection Server Security Operations Analyst to provide operational support and manage endpoint protection products. This role involves incident management, documentation, and collaboration with various teams to ensure effective security operations.
Wells Fargo is seeking a Lead Information Security Analyst to drive enterprise security strategy focusing on IAM operations and secure cloud environments. The role involves implementing authentication solutions and enforcing identity-centric security controls.
NXP Semiconductors is seeking a Security Operations Analyst to lead their Blue Team in Austin, Texas, focusing on defensive cybersecurity operations. The role involves overseeing threat detection, incident response, and security strategy implementation across IT, OT, and R&D environments.
Long View is seeking a Senior Security Operations Center Analyst to enhance their IT security operations. This role involves monitoring security events, coordinating incident responses, and providing guidance across the organization.
QMS Consulting is seeking a Senior Security Operations Center Analyst to join their innovative SOC team in Austin, Texas. The role involves leading incident investigations, developing incident response playbooks, and onboarding new detection technologies.
The Cyber Security Analyst, Operations Watch Incident Response Analyst at Adapt Forward is responsible for investigating and responding to cybersecurity incidents while ensuring compliance with reporting requirements. This role requires a minimum of a Secret clearance and involves 24/7 operational support.
Deloitte is seeking an Advance Threat Protection Server Security Operations Analyst to provide operational support and manage endpoint protection products. This role involves incident management, documentation, and collaboration with various teams to ensure effective security operations.
Wells Fargo is seeking a Lead Information Security Analyst to drive enterprise security strategy focusing on IAM operations and secure cloud environments. The role involves implementing authentication solutions and enforcing identity-centric security controls.
NXP Semiconductors is seeking a Security Operations Analyst to lead their Blue Team in Austin, Texas, focusing on defensive cybersecurity operations. The role involves overseeing threat detection, incident response, and security strategy implementation across IT, OT, and R&D environments.
Long View is seeking a Senior Security Operations Center Analyst to enhance their IT security operations. This role involves monitoring security events, coordinating incident responses, and providing guidance across the organization.
Deloitte is seeking an Advance Threat Protection Server Security Operations Analyst to provide operational support and manage endpoint protection products. This role involves incident management, documentation, and collaboration with various teams to ensure effective security operations.