About the role
The team
Deloitte helps organizations prevent cyberattacks and protect valuable assets. We believe in being secure, vigilant, and resilient not only by looking at how to prevent and respond to attacks, but at how to manage cyber risk in a way that allows you to unleash new opportunities. Embed cyber risk at the start of strategy development for more effective management of information and technology risks.
Your work profile
- Proactively hunt for threats across endpoints, network, and logs using SIEM/EDR tools
- Develop and execute threat hunting hypotheses based on threat intelligence and attack patterns
- Analyze large datasets (logs, alerts, network traffic) to identify anomalies and indicators of compromise (IOCs)
- Work closely with SOC (L1/L2) and Incident Response teams to validate and escalate findings
- Create and fine-tune detection rules/use cases in SIEM (e.g., IBM QRadar)
- Leverage threat intelligence feeds (MITRE ATT&CK mapping, TTPs) to enhance hunting strategies
- Perform retrospective analysis to identify missed attacks
- Document hunting findings, attack patterns, and recommendations
- Automate repetitive hunting tasks using scripts (Python, PowerShell, etc.)
Key Skills Required:
- Education: Any Graduate or B.E / B. Tech (Tier 1/2) in Computer Science, Information Technology or related fields
- 3+ years in SOC / Threat Hunting / Incident Response
- Hands-on experience with SIEM tools (e.g., QRadar, Splunk)
- Exposure to EDR/XDR platforms
- Network protocols (TCP/IP, DNS, HTTP/S)
- Windows/Linux security logs
- Endpoint behaviour and attack techniques
- MITRE ATT&CK framework
- Threat intelligence platforms
- Log analysis and correlation
- Basic scripting skills (Python, Bash, PowerShell)
Disclaimer: This job posting has been aggregated from external source. Role details, content, and availability are subject to change. Applicants are advised to confirm the latest information directly on the company website before applying.
Millions of jobs, with real people getting hired every day
Questions, answered
Click "Apply with JobAssist" – we tailor your resume and application to this role and submit it for your approval.
Yes. This role at Antstack Technologies was screened before publishing – we confirmed the employer before listing it.
The employer didn't disclose a salary range for this listing. JobAssist shows pay whenever it's available.
This position can be done from anywhere, with no in-office requirement.
Yes – every application is tailored from your profile and this job's requirements, and you can review and edit before it's sent.
