i
Deloitte
Filter interviews by
SAST stands for Static Application Security Testing and DAST stands for Dynamic Application Security Testing.
SAST involves analyzing the application's source code or binary code for security vulnerabilities without executing the code.
DAST involves testing the application while it is running to identify security vulnerabilities by sending malicious input.
SAST is typically performed earlier in the development cycle ...
Union-based SQL injection is a type of attack that allows an attacker to extract information from a database by using the UNION SQL operator.
Union-based SQL injection involves injecting a malicious SQL query that uses the UNION operator to combine the results of the original query with the attacker's query.
The attacker can use the UNION operator to retrieve data from other tables in the database, potentially acces...
Network VAPT is conducted by identifying vulnerabilities in the network and testing its security measures.
The process involves identifying potential vulnerabilities in the network infrastructure
Penetration testing is conducted to simulate attacks and test the effectiveness of security measures
Vulnerability assessment is done to identify weaknesses in the network
The results are analyzed and recommendations are made...
XSS (Cross-Site Scripting) is a type of security vulnerability that allows attackers to inject malicious scripts into web pages viewed by other users.
XSS attacks can be used to steal sensitive information, such as login credentials or personal data.
Attackers can also use XSS to hijack user sessions, redirect users to malicious websites, or deface web pages.
There are three types of XSS attacks: stored, reflected, a...
What people are saying about Deloitte
XSS stands for Cross-Site Scripting. It is a type of security vulnerability that allows attackers to inject malicious scripts into web pages.
Reflected XSS: The injected script is embedded in the URL and executed when the victim visits the manipulated link.
Stored XSS: The injected script is permanently stored on the target server and executed whenever the vulnerable page is accessed.
DOM-based XSS: The vulnerability...
IDOR, DOM XSS, and Nessus are common security vulnerabilities and tools used in penetration testing.
IDOR stands for Insecure Direct Object Reference, where an attacker can access unauthorized data by manipulating object references.
DOM XSS (Cross-Site Scripting) is a type of XSS attack that occurs in the Document Object Model.
Nessus is a popular vulnerability scanner used in penetration testing to identify security...
I applied via Approached by Company and was interviewed in Jul 2023. There were 3 interview rounds.
SAST stands for Static Application Security Testing and DAST stands for Dynamic Application Security Testing.
SAST involves analyzing the application's source code or binary code for security vulnerabilities without executing the code.
DAST involves testing the application while it is running to identify security vulnerabilities by sending malicious input.
SAST is typically performed earlier in the development cycle while...
Union-based SQL injection is a type of attack that allows an attacker to extract information from a database by using the UNION SQL operator.
Union-based SQL injection involves injecting a malicious SQL query that uses the UNION operator to combine the results of the original query with the attacker's query.
The attacker can use the UNION operator to retrieve data from other tables in the database, potentially accessing ...
IDOR, DOM XSS, and Nessus are common security vulnerabilities and tools used in penetration testing.
IDOR stands for Insecure Direct Object Reference, where an attacker can access unauthorized data by manipulating object references.
DOM XSS (Cross-Site Scripting) is a type of XSS attack that occurs in the Document Object Model.
Nessus is a popular vulnerability scanner used in penetration testing to identify security vuln...
I applied via LinkedIn and was interviewed in Jan 2023. There were 2 interview rounds.
XSS (Cross-Site Scripting) is a type of security vulnerability that allows attackers to inject malicious scripts into web pages viewed by other users.
XSS attacks can be used to steal sensitive information, such as login credentials or personal data.
Attackers can also use XSS to hijack user sessions, redirect users to malicious websites, or deface web pages.
There are three types of XSS attacks: stored, reflected, and DO...
XSS stands for Cross-Site Scripting. It is a type of security vulnerability that allows attackers to inject malicious scripts into web pages.
Reflected XSS: The injected script is embedded in the URL and executed when the victim visits the manipulated link.
Stored XSS: The injected script is permanently stored on the target server and executed whenever the vulnerable page is accessed.
DOM-based XSS: The vulnerability aris...
Network VAPT is conducted by identifying vulnerabilities in the network and testing its security measures.
The process involves identifying potential vulnerabilities in the network infrastructure
Penetration testing is conducted to simulate attacks and test the effectiveness of security measures
Vulnerability assessment is done to identify weaknesses in the network
The results are analyzed and recommendations are made to i...
I applied via Campus Placement and was interviewed before Feb 2021. There were 3 interview rounds.
Tests are Pymetrics and an online case. Pymetrics is a personality test of sorts (risk aversion, pattern recognition, etc.) this was benchmarked against successful Consultants. Online case is multiple choice but the questions flow like a normal case interview. You will get a final round interview if you do really well on them. If you just ‘pass’, you have to have an internal designation of a high priority or very high priority candidate. (See advice)
Standard 2 case interviews with senior leaders, already a lot of material on this elsewhere
I applied via Campus Placement and was interviewed in Jan 2016. There were 6 interview rounds.
Analytics helps me make informed decisions and achieve my goals in life.
Analytics provides valuable insights and data-driven solutions to complex problems.
Setting goals helps me stay focused and motivated towards achieving personal and professional success.
By analyzing data and setting specific goals, I can track my progress and make necessary adjustments to reach my objectives.
For example, in my previous role as a mar...
What people are saying about Deloitte
I applied via Referral
I worked as a credit analyst at CRISIL, analyzing credit risk of various companies.
Conducted financial statement analysis to assess creditworthiness
Evaluated industry trends and macroeconomic factors impacting credit risk
Prepared credit reports and made recommendations to clients
Collaborated with team members to discuss findings and strategies
Google maintains market share through continuous innovation, strategic acquisitions, and strong brand recognition.
Google invests heavily in research and development to constantly improve its products and services.
Google strategically acquires companies that complement its existing offerings, such as YouTube and Android.
Google has a strong brand recognition and reputation for providing high-quality search results and us...
Google Suggest is a feature that provides search suggestions as users type their queries.
Google Suggest uses a combination of algorithms and user data to generate suggestions.
It takes into account factors like popularity, relevance, and user search history.
Suggestions are based on real-time data and can vary depending on location and language.
Google Suggest aims to improve search efficiency and provide relevant suggest...
To calculate the required capacity for a pineapple juice plant, factors such as production volume, processing time, and equipment efficiency need to be considered.
Determine the expected production volume of pineapple juice per day or per hour
Calculate the processing time required to convert pineapples into juice
Consider the efficiency of the equipment used in the production process
Factor in any potential growth or expa...
My projects at Google, such as Orkut and Gmail, had a significant impact on the company and its users.
Orkut was one of the first social networking sites and helped Google establish a presence in the social media space.
Gmail revolutionized email with its large storage capacity, search functionality, and user-friendly interface.
Working at Google allowed me to collaborate with talented individuals and work on cutting-edge...
I applied via Walk-in
I applied via Walk-in
Indian IT majors must innovate and adapt to emerging technologies to maintain competitiveness over the next five years.
Invest in AI and automation: Companies like TCS should enhance their AI capabilities to streamline operations and improve service delivery.
Focus on cloud services: Infosys can expand its cloud offerings to meet the growing demand for digital transformation among enterprises.
Enhance cybersecurity measur...
I applied via Walk-in
The incumbent retail bank needs to develop an ATM strategy to counter competition.
Analyze the competition's ATM strategy and identify their strengths and weaknesses.
Assess the current market demand for ATMs and identify potential opportunities for the bank.
Evaluate the bank's existing infrastructure and resources to determine the feasibility of implementing an ATM strategy.
Consider the cost implications of developing a...
Yes, the insurance company can offer product insurance to improve profitability.
Product insurance can provide an additional revenue stream for the insurance company.
It can attract new customers who are interested in protecting their valuable possessions.
Product insurance can also enhance customer loyalty and retention.
Examples of product insurance include coverage for electronic devices, appliances, jewelry, and other ...
The steel making company in Surat is considering starting a new plant in West Bengal.
Evaluate the market demand for steel in West Bengal
Assess the availability and cost of raw materials in West Bengal
Analyze the competition in the steel industry in West Bengal
Consider the infrastructure and logistics for setting up a new plant
Evaluate the potential profitability and return on investment
based on 2 interview experiences
Difficulty level
Duration
Consultant
38.6k
salaries
| ₹6.6 L/yr - ₹24 L/yr |
Senior Consultant
24k
salaries
| ₹11.1 L/yr - ₹42 L/yr |
Analyst
16.1k
salaries
| ₹3.9 L/yr - ₹13 L/yr |
Assistant Manager
10.9k
salaries
| ₹8 L/yr - ₹24.3 L/yr |
Manager
7.7k
salaries
| ₹16 L/yr - ₹54.2 L/yr |
Accenture
PwC
Ernst & Young
Cognizant