Cyber - Google SecOps - Senior Consultant
About the role
Join Deloitte's Cyber practice as a Cyber SecOps Senior Consultant and help clients navigate an evolving threat landscape through scalable, resilient security operations solutions. In this hands-on role, you will support high-visibility engagements focused on Google SecOps, threat detection engineering, and automation. You will work with cross-functional teams to develop, implement, and optimize solutions that strengthen monitoring, detection, response, and operational efficiency. Your contributions will help clients build more secure, reliable, and effective cyber operations capabilities.
Responsibilities
- Designing and implementing secure, scalable, and resilient Google SecOps architectures for security information and event management (SIEM) and security orchestration, automation, and response (SOAR) deployments aligned with enterprise security policies and regulatory requirements, including General Data Protection Regulation (GDPR) and Payment Card Industry Data Security Standard (PCI DSS)
- Leading deployment of log ingestion pipelines using data fabric technologies and application programming interface integrations, including Bindplane and cloud feeds
- Collaborating with security operations center analysts and threat detection engineers to prioritize, develop, and tune threat detection content within Google SecOps to detect malicious behavior and adversary activity in enterprise environments
- Translating security operations processes into SOAR playbooks and custom integrations to support automated data ingestion, alert enrichment, triage, and response
- Building case management solutions within Google SecOps SOAR, supporting operational metrics and analyst workflows, mentoring junior team members, and staying current on cybersecurity threats, vulnerabilities, and compliance trends
Skills
- Ability to work independently and collaborate as part of a team
- Effective written and verbal communication skills
- Meticulous attention to detail and quality of work product
- Ability to build and sustain professional relationships
- Ability to lead projects or workstreams
- Ability to manage and prioritize multiple tasks in a fast-paced and dynamic environment
- Strong interpersonal skills and professional demeanor
- Ability to meet deadlines
- Ability to provide clear guidance to others
About the team
Deloitte's Cyber Defense & Resilience offering helps clients defend against advanced threats by transforming security operations, monitoring technology, data analytics, and threat intelligence capabilities. The team works with organizations to manage dynamic attack surfaces and strengthen readiness, response, and recovery across cyber incidents and broader business disruptions.
Qualifications
Required:
- Bachelor's degree in computer science, cybersecurity, information systems, or equivalent work experience
- 7+ years of experience in security operations, threat detection engineering, or enterprise information technology security
- Experience with Google Cloud's SecOps tool stack and architecture, specifically security information and event management (SIEM) and security orchestration, automation, and response (SOAR), formerly Google Chronicle and Siemplify
- Experience with security principles and frameworks such as MITRE ATT&CK and Cyber Kill Chain
- Experience with Python for automation and integration development
- Experience with Gostash or Logstash for log normalization and parsing, and with extract, transform, and load (ETL) pipelines and technologies such as Cribl, Bindplane, NXLog, or Kafka
- Ability to travel 50%, on average, based on the work you do and the clients and industries/sectors you serve
- Limited immigration sponsorship may be available
Preferred:
- Google Cloud Professional Cloud Architect, Google Cloud Professional Cloud Security Engineer, or Certified Cloud Security Professional certification
- Experience with threat hunting or cyber threat intelligence
- Experience with data fabric technologies such as Bindplane or Cribl
- Experience with infrastructure and networking concepts such as IP networking, virtual private networks (VPNs), domain name system (DNS), load balancing, or firewalls
- Experience with cloud infrastructure platforms such as Amazon Web Services (AWS) or Microsoft Azure
- Experience with SIEM or SOAR tools such as Splunk, Cortex XSOAR, VirusTotal, Mandiant, or Google Threat Intelligence
Pay
The wage range for this role takes into account the wide range of factors that are considered in making compensation decisions including but not limited to skill sets; experience and training; licensure and certifications; and other business and organizational needs. The disclosed range estimate has not been adjusted for the applicable geographic differential associated with the location at which the position may be filled. At Deloitte, it is not typical for an individual to be hired at or near the top of the range for their role and compensation decisions are dependent on the facts and circumstances of each case. A reasonable estimate of the current range is $105,400 to $207,800. You may also be eligible to participate in a discretionary annual incentive program, subject to the rules governing the program, whereby an award, if any, depends on various factors, including, without limitation, individual and organizational performance.