Director - MDR - Managed Services - Advisory

1 Month ago • 12 Years +

Job Summary

Job Description

As a Director in Cybersecurity and Privacy services, you will help clients implement effective cybersecurity programs. You will be responsible for overseeing regular operations, driving continuous improvement processes, and managing client and vendor interactions. This involves managing complex incidents, operating the Security Incident process, and mentoring junior team members. You will review cybersecurity events, provide technical support, follow up on incident tickets, and guide analysts in their activities. You will also review policies, ensure compliance with SLAs, and create dashboards. Additionally, you'll be involved in threat detection, analysis, and use case development, while continuously improving processes and building teams.
Must have:
  • 12+ years of SOC operations experience.
  • Experience analyzing malicious traffic and building detections.
  • Experience in application, network, and systems security.
  • Knowledge of security testing tools.
  • Proficiency in programming and scripting languages.
  • Familiarity with cybersecurity frameworks and practices.
  • Experience with traditional security operations and SIEM tools.
  • Knowledge of MITRE or similar frameworks.
Good to have:
  • Strong communication skills, both written and oral.
  • Experience with SMB and large enterprise clients.
  • Good understanding of ITIL processes.
  • Strong expertise in multiple SIEM tools.
  • Knowledge of firewalls, IDS/IPS, EDR, Proxy, DNS, etc.
  • Understanding of raw log formats.
  • Foundational knowledge of networking concepts.
  • Relevant certifications.
  • Strong work ethic and time management skills.
  • Coachability and dedication to consistent improvement.
  • Ability to mentor and encourage junior teammates.
  • Knowledge of regex and parser creation.
  • Ability to deploy SIEM solutions.

Job Details

Line of Service

Advisory

Industry/Sector

FS X-Sector

Specialism

Risk

Management Level

Director

Job Description & Summary

At PwC, our people in cybersecurity focus on protecting organisations from cyber threats through advanced technologies and strategies. They work to identify vulnerabilities, develop secure systems, and provide proactive solutions to safeguard sensitive data.

As a cybersecurity generalist at PwC, you will focus on providing comprehensive security solutions and experience across various domains, maintaining the protection of client systems and data. You will apply a broad understanding of cybersecurity principles and practices to address diverse security challenges effectively.

*Why PWC

At PwC, you will be part of a vibrant community of solvers that leads with trust and creates distinctive outcomes for our clients and communities. This purpose-led and values-driven work, powered by technology in an environment that drives innovation, will enable you to make a tangible impact in the real world. We reward your contributions, support your wellbeing, and offer inclusive benefits, flexibility programmes and mentorship that will help you thrive in work and life. Together, we grow, learn, care, collaborate, and create a future of infinite experiences for each other. Learn more about us.

At PwC, we believe in providing equal employment opportunities, without any discrimination on the grounds of gender, ethnic background, age, disability, marital status, sexual orientation, pregnancy, gender identity or expression, religion or other beliefs, perceived differences and status protected by law. We strive to create an environment where each one of our people can bring their true selves and contribute to their personal growth and the firm’s growth. To enable this, we have zero tolerance for any discrimination and harassment based on the above considerations. "

Job Description & Summary: We are seeking a professional to join our Cybersecurity and Privacy services team, where you will have the opportunity to help clients implement effective cybersecurity programs that protect against threats, drive transformation, and foster growth. As companies increasingly adopt digital business models, the generation and sharing of data among organizations, partners, and customers multiply. We play a crucial role in ensuring that our clients are protected by developing transformation strategies focused on security, efficiently integrating and managing new or existing technology systems, and enhancing their cybersecurity investments. As a Director, you will be responsible for overseeing regular operations, driving continuous improvement processes, and managing client and vendor interactions. This role involves managing complex incidents escalated from L2 analysts, operating the Security Incident process, and mentoring junior team members to build a cohesive and motivated unit.

Responsibilities:

  • Review cybersecurity events analyzed by L2 security analysts, serving as the escalation point for detection, response, and remediation activities.
  • Monitor and guide the team in triaging cybersecurity events, prioritizing, and recommending/performing response measures.
  • Provide technical support for IT teams in response and remediation activities for escalated cybersecurity events/incidents.
  • Follow up on cybersecurity incident tickets until closure.
  • Guide L1 and L2 analysts in analyzing events and response activities.
  • Expedite cyber incident response and remediation activities when delays occur, coordinating with L1 and L2 team members.
  • Review and provide suggestions for information security policies and best practices in client environments.
  • Ensure compliance with SLAs and contractual requirements, maintaining effective communication with stakeholders.
  • Review and share daily, weekly, and monthly dashboard reports with relevant stakeholders.
  • Update and review documents, playbooks, and standard operational procedures.
  • Validate and update client systems and IT infrastructure documentation.
  • Share knowledge on current security threats, attack patterns, and tools with team members.
  • Create and review new use cases based on evolving attack trends.
  • Analyze and interpret Windows, Linux OS, firewall, web proxy, DNS, IDS, and HIPS log events.
  • Develop and maintain threat detection rules, parsers, and use cases.
  • Understand security analytics and flows across SaaS applications and cloud computing tools.
  • Validate use cases through selective testing and logic examination.
  • Maintain continuous improvement processes and build/groom teams over time.
  • Develop thought leadership within the SOC.

Mandatory skill sets:

  • Bachelor’s degree (minimum requirement).
  • 12+years of experience in SOC operations.
  • Experience analyzing malicious traffic and building detections.
  • Experience in application security, network security, and systems security.
  • Knowledge of security testing tools (e.g., BurpSuite, Mimikatz, Cobalt Strike, PowerSploit, Metasploit, Nessus, HP Web Inspect).
  • Proficiency in common programming and scripting languages (Python, PowerShell, Ruby, Perl, Bash, JavaScript, VBScript).
  • Familiarity with cybersecurity frameworks and practices (OWASP, NIST CSF, PCI DSS, NY-DFS).
  • Experience with traditional security operations, event monitoring, and SIEM tools.
  • Knowledge of MITRE or similar frameworks and procedures used by adversaries.
  • Ability to develop and maintain threat detection rules and use cases.

Preferred skill sets:

  • Strong communication skills, both written and oral.
  • Experience with SMB and large enterprise clients.
  • Good understanding of ITIL processes (Change Management, Incident Management, Problem Management).
  • Strong expertise in multiple SIEM tools and other SOC environment devices.
  • Knowledge of firewalls, IDS/IPS, AVI, EDR, Proxy, DNS, email, AD, etc.
  • Understanding of raw log formats of various security devices.
  • Foundational knowledge of networking concepts (TCP/IP, LAN/WAN, Internet network topologies).
  • Relevant certifications (CEH, CISA, CISM, etc.).
  • Strong work ethic and time management skills.
  • Coachability and dedication to consistent improvement.
  • Ability to mentor and encourage junior teammates.
  • Knowledge of regex and parser creation.
  • Ability to deploy SIEM solutions in customer environments.

Years of experience required:

12 + years

Education qualification:

B.Tech

Education (if blank, degree and/or field of study not specified)

Degrees/Field of Study required: Bachelor of Engineering

Degrees/Field of Study preferred:

Certifications (if blank, certifications not specified)

Required Skills

Accenture Managed Detection and Response (MDR) Ops Security Engineering

Optional Skills

Accepting Feedback, Accepting Feedback, Active Listening, Agile Methodology, Analytical Thinking, Azure Data Factory, Coaching and Feedback, Communication, Creativity, Cybersecurity, Cybersecurity Framework, Cybersecurity Policy, Cybersecurity Requirements, Cybersecurity Strategy, Embracing Change, Emotional Regulation, Empathy, Encryption Technologies, Inclusion, Influence, Innovation, Intellectual Curiosity, Learning Agility, Managed Services, Optimism {+ 20 more}

Desired Languages (If blank, desired languages not specified)

Travel Requirements

Not Specified

Available for Work Visa Sponsorship?

No

Government Clearance Required?

No

Job Posting End Date

Similar Jobs

Saviynt - Principal Engineer, Quality Engineering

Saviynt

El Segundo, California, United States (Hybrid)
8 Months ago
GT HQ - Senior Full-stack Developer (Python+React.js)

GT HQ

Ukraine (Remote)
3 Months ago
Veeam Software - Senior Operations Associate

Veeam Software

Mumbai, Maharashtra, India (Hybrid)
1 Month ago
Cognite - Technical Account Manager

Cognite

Houston, Texas, United States (Hybrid)
1 Month ago

Get notifed when new similar jobs are uploaded

Similar Skill Jobs

Tekion Corp - Product Manager I

Tekion Corp

Bengaluru, Karnataka, India (On-Site)
1 Month ago
bytedance - Lark Japan Sales Intern - 2025 Start

bytedance

Tokyo, Japan (On-Site)
3 Months ago
Wolters Kluwer - Senior Sales Channel & Affiliates Representative - Partner Success Manager

Wolters Kluwer

Madison, Wisconsin, United States (Hybrid)
1 Month ago
Xsolla - Middle / Senior Backend Developer for Xsolla Account

Xsolla

Baku, Azerbaijan (On-Site)
8 Months ago
Kavalirio - Cloud Engineer

Kavalirio

Denver, Colorado, United States (On-Site)
3 Weeks ago
Toast - Senior Manager, Finance Systems & Operations

Toast

New York, United States (On-Site)
1 Month ago
velotio technologies  - Senior Engineer (ROR)

velotio technologies

Bengaluru, Karnataka, India (Hybrid)
2 Months ago
SparkCognition - Senior QA Engineer

SparkCognition

Bengaluru, Karnataka, India (On-Site)
11 Months ago
plarium - IT Application Specialist

plarium

Lviv, Lviv Oblast, Ukraine (Hybrid)
3 Weeks ago
JDA - Sr Support Engineer 1

JDA

Monterrey, Nuevo Leon, Mexico (On-Site)
3 Weeks ago

Get notifed when new similar jobs are uploaded

Jobs in Gurugram, Haryana, India

Capgemini - Testing Engineer (FTTX)

Capgemini

Chennai, Tamil Nadu, India (On-Site)
1 Month ago
Lightcast - Data Scientist

Lightcast

Chennai, Tamil Nadu, India (On-Site)
7 Months ago
Dream Sports - Software Development Engineer 3 - Backend (Platform)

Dream Sports

Mumbai, Maharashtra, India (On-Site)
3 Months ago
Suki - Software Engineer III (Frontend)

Suki

Bengaluru, Karnataka, India (Hybrid)
1 Month ago
Veeam Software - Veeam Backup for Linux Engineer

Veeam Software

Bengaluru, Karnataka, India (On-Site)
2 Months ago
Palo Alto Networks - AP Analyst

Palo Alto Networks

Bengaluru, Karnataka, India (On-Site)
1 Month ago
dun bradstreet - CA Intern – Finance (Taxation)

dun bradstreet

Navi Mumbai, Maharashtra, India (Hybrid)
2 Weeks ago
PwC - IN-Senior Associate_Full Stack Developer_Data &Analytics_Advisory_Bangalore

PwC

Bengaluru, Karnataka, India (On-Site)
8 Months ago
Addepar - Document Collection Operations Lead

Addepar

Pune, Maharashtra, India (On-Site)
3 Weeks ago
Scopely - Game Design Intern

Scopely

Bengaluru, Karnataka, India (Hybrid)
3 Months ago

Get notifed when new similar jobs are uploaded

Similar Category Jobs

Looks like we're out of matches

Set up an alert and we'll send you similar jobs the moment they appear!

About The Company

At PwC, our purpose is to build trust in society and solve important problems. We’re a network of firms in 152 countries with over 327,000 people who are committed to delivering quality in assurance, advisory and tax services. Find out more and tell us what matters to you by visiting us at www.pwc.com. PwC refers to the PwC network and/or one or more of its member firms, each of which is a separate legal entity.


Content on this page has been prepared for general information only and is not intended to be relied upon as accounting, tax or professional advice. Please reach out to your advisors for specific advice.

Bermuda (On-Site)

Santo Domingo, Distrito Nacional, Dominican Republic (On-Site)

Santo Domingo, Distrito Nacional, Dominican Republic (On-Site)

Calgary, Alberta, Canada (Hybrid)

Athens, Greece (Hybrid)

Kuala Lumpur, Federal Territory Of Kuala Lumpur, Malaysia (On-Site)

Kuala Lumpur, Federal Territory Of Kuala Lumpur, Malaysia (On-Site)

Neuilly-sur-Seine, Île-de-France, France (On-Site)

Mumbai, Maharashtra, India (On-Site)

View All Jobs

Get notified when new jobs are added by PwC

Level Up Your Career in Game Development!

Transform Your Passion into Profession with Our Comprehensive Courses for Aspiring Game Developers.

Job Common Plug