Kpmg India Services Llp

Consultant-DFIR– Cyber Threat Management

Kpmg India Services Llp
Pune
Not disclosed
Work from OfficeWork from Office
Full TimeFull Time
Min. 3 yearsMin. 3 years

Job Description

Consultant-DFIR– Cyber Threat Management

The Consulting business at KPMG Global Services (KGS) is a diverse team of more than 6400 professionals. We work with KPMG Firms worldwide to transform the businesses of clients across industries through the latest technology and innovation. Our technology professionals combine deep industry knowledge with strong technical experience to navigate through complex challenges and deliver real value for our clients.

Through your work, you’ll build a global network and unlock opportunities that you may not have thought possible with access to great support, vast resources, and an inclusive, supportive environment to help you reach your full potential.

Roles & responsibilities

•Core Delivery
•Execute digital forensics and incident response (DFIR) engagements across endpoints, logs, and cloud environments
•Perform security incident triage, investigation, containment, eradication, and recovery activities
•Conduct threat hunting using SIEM, EDR, and network telemetry tools (e.g., Microsoft Sentinel, Defender, Palo Alto, Vectra)
•Analyze Business Email Compromise (BEC) and Microsoft 365 audit logs to identify attack vectors and impact
•Perform endpoint forensic analysis (Windows-based) and artifact review to support investigations
•Analysis & Reporting
•Perform log analysis, Google Takeout analysis, and data repository investigations.
•Develop incident investigation reports, executive summaries, and technical findings
•Document attack timelines, root cause analysis, and remediation recommendations
•Support audit and compliance evidence preparation (CMA, SOPs, playbooks)
•Operations & Engineering Support
•Assist in SOC operations, detection tuning, and use case development
•Support automation and improvement of IR processes and playbooks

Contribute to security tooling usage (SIEM, EDR, forensic tools) and optimization

 

•Client & Stakeholder Engagement
•Participate in client discussions, incident briefings, and presentations
•Collaborate with global teams on incident response and threat intelligence sharing
•Provide actionable insights to improve client security posture
•Extended Responsibilities
•Conduct tabletop exercises and adversary simulation scenarios to identify detection gaps
•Support code repository and sensitive data exposure analysis
•Contribute to knowledge management, documentation frameworks, and IR tracking improvements
•Participate in proposal development / capability building 
         

Educational qualifications

•Bachelor’s degree in Computer Science / Cyber Security / IT or related field
•Relevant certifications (preferred):SC-200, AZ-104, AZ-900, ISC2 CC, DFIR-focused certifications

Work experience

• 3-5 years of experience in:
•Incident Response / SOC / Threat Hunting / Digital Forensics / Device Security

Experience in global client engagements (US/UK/Europe) 

Mandatory  technical & functional skills

•Incident Response lifecycle (Detect → Respond → Recover)
•Digital Forensics (especially Windows endpoint artifacts)
•Threat Hunting methodologies and hypothesis-driven analysis
•Hands-on experience in:
•SIEM tools (Microsoft Sentinel, Kibana)
•EDR tools (Microsoft Defender, SentinelOne, CrowdStrike - exposure)
•Knowledge of:
•SOC operations, alert triage, and monitoring
•Email security incidents (BEC, phishing investigations)
•Strong:
•Analytical and problem-solving skills
•Technical report writing and documentation skills
•Communication and stakeholder engagement skills
 
Preferred technical & functional skills
•Exposure to:
•Threat Intelligence integration and enrichment
•Cloud security monitoring (Azure / Microsoft 365)
•Identity-related attack scenarios (IAM abuse, privilege escalation)
•Familiarity with:
•IAM tools (SailPoint, Ping, CyberArk)
•Network/security tools (Palo Alto, Vectra)
•Experience in:
•Automation, scripting, or notebook-based investigations (Jupyter)

Experience Level

Mid Level

Job role

Work location
Work locationPune, Maharashtra, India
Department
DepartmentIT & Information Security
Role / Category
Role / CategoryRisk Management - Assessment / Advisory
Employment type
Employment typeFull Time
Shift
ShiftDay Shift

Job requirements

Experience
ExperienceMin. 3 years

About company

Name
NameKpmg India Services Llp
Job posted by Kpmg India Services Llp

Similar jobs you can apply for

Labour / Factory Worker
Frrizzle Foods Private Limited

Labour Helper/Mazdoor

Frrizzle Foods Private Limited
Handewadi, Pune
₹12,000 - ₹14,000
Field Job
Full Time
Any experience
No English Required

Account Admin

Siddhantu Education
Navi Peth, Pune
₹15,000 - ₹20,000
Work from Office
Part Time
Full Time
Min. 6 months
Basic English
Aera Gas Control Systems Private Limited

Quality Engineer

Aera Gas Control Systems Private Limited
Dhayari, Pune
₹14,000 - ₹18,000
Work from Office
Full Time
Any experience
Basic English

Kitchen Steward

Chaileela (Roadrunner Foods Private Limited)
Hinjewadi, Pune
₹14,000 - ₹18,000
Work from Office
Full Time
Any experience
Basic English

Accountant

JD Enterprises
Shukrawar Peth, Pune
₹15,000 - ₹20,000
Work from Office
Full Time
Any experience
Basic English
U-Protec Earthing Private Limited

Jr. Accountant

U-Protec Earthing Private Limited
Wadgaon Sheri, Pune
₹15,000 - ₹19,000
Work from Office
Full Time
Min. 1 year
Good (Intermediate / Advanced) English

You can expect a minimum salary of 0 INR. The salary offered will depend on your skills, experience and performance in the interview.

The candidate should have completed the required education and people who have 3 to 5 years are eligible to apply for this job. You can apply for more jobs in Pune to get hired quickly.

The candidate should have sound communication skills and sound communication skills for this job.

Both Male and Female candidates can apply for this job.

No, it's not a work from home job and can't be done online. You can explore and apply for other work from home jobs in Pune at apna.

No work-related deposit needs to be made during your employment with the company.

Go to the apna app and apply for this job. Click on the apply button and call HR directly to schedule your interview.

The last date to apply for this job is . For more details, download apna app and find Full Time jobs in Pune . Through apna, you can find jobs in 64 cities across India. Join NOW!