Deloitte is seeking an Advance Threat Protection Server Security Operations Analyst to provide operational support and manage endpoint protection products. This role involves incident management, documentation, and collaboration with various teams to ensure effective security operations.
Deloitte Global is the engine of the Deloitte network. Our professionals reach across disciplines and borders to develop and lead global initiatives. We deliver strategic programs and services that unite our organization. Work you'll do We are looking for an Advance Threat Protection Server Security Operations Analyst to join our Deloitte Global Team. Key Responsibilities: • Operational Support: Provide 4th level support for incidents and requests related to endpoint health, including on-call work when required. • Ticket Management: Monitor and handle tickets assigned to your support queues and be available to support any related major incidents. • Product Expertise: Develop a deep understanding of the endpoint protection products you will be managing. • Documentation: Create and maintain knowledge base documents and playbooks outlining end-to-end support procedures and inter-team workflows. • Change Management: Support change management activities for product upgrades within the production environment, collaborating with in-house teams and third parties to ensure successful implementation. • Escalation Response: Respond to escalations from Security Policy Management, GNOC, SOC, and Member Firms, assisting them with understanding endpoint protection products and support processes. • Testing and Ad-Hoc Duties: Assist the technical lead/architect and security analyst in testing product upgrades and perform other job-related duties as assigned. The team Deloitte Technology works at the forefront of technology development and processes to support and protect Deloitte around the world. In this truly global environment, we operate not in "what is" but rather "what can be" to help Deloitte deliver and connect with its clients, its communities, and one another in ways not previously conceived. Qualifications Required Qualifications: • Experience with configuration and deployment of endpoint protection platforms (e.g., CrowdStrike, McAfee, Microsoft). • Strong working knowledge of server operating systems (Windows Server 2016, 2019, 2022, Linux - REHL, SUSE, Ubuntu) or Microsoft Defender for EndPoint • Working knowledge of computer networking (firewalls, routing, etc.) • Knowledge of configuration, policy, and event workflows and playbooks. Preferred: • Experience with Python and PowerShell scripting. • Experience in supporting security tools (e.g., anti-virus, host intrusion detection). • Experience working within a service management framework (e.g., ITIL). • Knowledge of Security Information and Event Management (SIEM) tools. • Understanding of SCCM and BigFix Our culture At Deloitte Global people are valued and respected for who they are - with opportunities to bring their unique perspectives, talents and passions to business challenges. Our global workspace creates room for individuality and collaboration. Ours is an inclusive, supportive, connected culture with a focus on development, flexibility, and well-being. This culture makes Deloitte Global one of the most rewarding places to work, and to transform your career. Professional development From entry-level employees to senior leaders, we believe in investing in you, helping you identify and hone your unique strengths at every step of your career. We offer opportunities to build new skills, take on leadership opportunities, and connect and grow through mentorship. From on-the-job learning experiences to formal development programs, our professionals have a variety of opportunities to continue to grow throughout their career. Benefits At Deloitte, we value our people and offer employees a broad range of benefits. Our Total Rewards program reflects our continued commitment to lead from the front in everything we do-that's why we take pride in offering a comprehensive variety of programs and resources to support your health and well-being. Hybrid work, remote may be an option
The Information Security Analyst will focus on Security Operations and SOC activities, monitoring security events and responding to incidents. This role requires expertise in Splunk, SQL, and Python, and is based in San Francisco, California.
The Cybersecurity Operations Analyst I at NeoSystems Corp. is responsible for monitoring and triaging security events in Microsoft 365 environments while supporting incident response workflows. This entry-level role requires collaboration with senior analysts to identify and respond to security incidents.
Deloitte is seeking an Advance Threat Protection Server Security Operations Analyst to provide operational support and manage endpoint protection products. This role involves incident management, documentation, and collaboration with various teams to ensure effective security operations.
Revelyst is seeking a Senior Security Operations Analyst to enhance their Security Operations team by detecting and responding to cyber threats. The role involves building SOC capabilities and collaborating with various teams to secure e-commerce platforms and customer data.
Sentar Inc. is seeking a Cybersecurity Tools Operations Specialist/Trellix Analyst in Charleston, SC, to support the integration and administration of cybersecurity tools. The role involves ensuring comprehensive vulnerability management and compliance monitoring.
Wells Fargo is seeking a Lead Information Security Analyst to drive enterprise security strategy focusing on IAM operations and secure cloud environments. The role involves implementing authentication solutions and enforcing identity-centric security controls.
The Information Security Analyst will focus on Security Operations and SOC activities, monitoring security events and responding to incidents. This role requires expertise in Splunk, SQL, and Python, and is based in San Francisco, California.
The Cybersecurity Operations Analyst I at NeoSystems Corp. is responsible for monitoring and triaging security events in Microsoft 365 environments while supporting incident response workflows. This entry-level role requires collaboration with senior analysts to identify and respond to security incidents.
Deloitte is seeking an Advance Threat Protection Server Security Operations Analyst to provide operational support and manage endpoint protection products. This role involves incident management, documentation, and collaboration with various teams to ensure effective security operations.
Revelyst is seeking a Senior Security Operations Analyst to enhance their Security Operations team by detecting and responding to cyber threats. The role involves building SOC capabilities and collaborating with various teams to secure e-commerce platforms and customer data.
Sentar Inc. is seeking a Cybersecurity Tools Operations Specialist/Trellix Analyst in Charleston, SC, to support the integration and administration of cybersecurity tools. The role involves ensuring comprehensive vulnerability management and compliance monitoring.
Wells Fargo is seeking a Lead Information Security Analyst to drive enterprise security strategy focusing on IAM operations and secure cloud environments. The role involves implementing authentication solutions and enforcing identity-centric security controls.
The Information Security Analyst will focus on Security Operations and SOC activities, monitoring security events and responding to incidents. This role requires expertise in Splunk, SQL, and Python, and is based in San Francisco, California.
The Cybersecurity Operations Analyst I at NeoSystems Corp. is responsible for monitoring and triaging security events in Microsoft 365 environments while supporting incident response workflows. This entry-level role requires collaboration with senior analysts to identify and respond to security incidents.
Deloitte is seeking an Advance Threat Protection Server Security Operations Analyst to provide operational support and manage endpoint protection products. This role involves incident management, documentation, and collaboration with various teams to ensure effective security operations.