Cyber Manager - AI SOC

Deloitte France

Philadelphia (Philadelphia County)

On-site

USD 135,000 - 265,000

Full time

14 days+
Application generator

Stand out for this role — generate a tailored resume and cover letter in about a minute.

Get past ATS filters

Job summary

Deloitte France is seeking a Manager - Cyber Defense and Resilience to deliver security engineering solutions across client environments, modernizing security operations through SIEM, SOAR, telemetry, and AI-enabled workflows. The role is embedded with client teams, translating requirements into production-ready capabilities and guiding deployment of data pipelines and response mechanisms.

You will mentor junior staff, drive project delivery, manage multiple tasks in a fast-paced setting, and

Qualifications

  • Bachelor's degree in CS, Cybersecurity, Information Systems, Engineering, or a related field.
  • 10+ years in security operations, detection engineering, security engineering, or enterprise cyber defense.
  • Hands-on experience with SIEM, SOAR, telemetry, and response workflows.
  • Experience building integrations and automations using Python.
  • Experience translating client requirements into technical solutions.
  • Ability to travel 50% on average.
  • Limited immigration sponsorship may be available.
  • Experience with multiple security platforms (SIEM, SOAR, EDR, TAM, threat intel, etc.).
  • Experience with AWS, Azure, or Google Cloud security telemetry.
  • Threat hunting, cyber threat intel, or purple team collaboration.

Responsibilities

  • Lead the design and implementation of secure, scalable security operations solutions across SIEM, SOAR, telemetry, and response platforms.
  • Serve as embedded engineering lead with client teams to translate workflows into production-ready capabilities.
  • Oversee deployment of log ingestion, normalization, enrichment, routing, detection, and orchestration workflows via APIs and data pipelines.
  • Apply automation and AI to security operations such as triage, orchestration, alert summarization, and response recommendations.
  • Mentor junior practitioners and contribute reusable engineering assets and implementation patterns.

Skills

Client collaboration
Communication skills
Mentoring
Project leadership
Multitasking
Interpersonal skills
Deadline management

Education

Bachelor's degree in CS, Cybersecurity, IS, or related field

Tools

Python
AWS
Azure
GCP

Job description

As a Manager - Cyber Defense and Resilience, you will play a hands-on role in delivering security engineering solutions across client environments, with a focus on modernizing security operations through security information and event management, security orchestration automation and response, detection engineering, telemetry, automation, and artificial intelligence-enabled workflows. In this embedded, client-facing role, you will work directly with client stakeholders to understand operational pain points, design practical solutions, and deploy capabilities in live or near-live environments. You will help translate ambiguous requirements into production-ready workflows, integrations, detections, and automation outcomes.

Recruiting for this role ends on 12/31/2026.

Work you'll do

As a Manager - Cyber Defense and Resilience on the Cyber Defense & Resilience team, you will be responsible for:

  • Leading the design and implementation of secure, scalable security operations solutions across security information and event management, security orchestration automation and response, telemetry, case management, and response platforms

  • Serving as an embedded engineering lead with client teams to translate operational workflows and requirements into production-ready security capabilities

  • Overseeing the deployment of log ingestion, normalization, enrichment, routing, detection, and orchestration workflows using application programming interfaces, connectors, and data pipelines

  • Guiding the application of automation and artificial intelligence to security operations use cases such as triage assistance, workflow orchestration, alert summarization, and response recommendations

  • Mentoring junior practitioners and contributing reusable engineering assets, accelerators, and implementation patterns that support client delivery and practice growth

    A successful candidate would possess these skills:

  • Ability to work independently and collaborate as part of a team

  • Effective written and verbal communication skills

  • Meticulous attention to detail and quality of work product

  • Ability to build and sustain professional relationships

  • Ability to lead projects or workstreams

  • Ability to manage and prioritize multiple tasks in a fast-paced and dynamic environment

  • Strong interpersonal skills and professional demeanor

  • Ability to meet deadlines

  • Ability to mentor and provide clear guidance to others

    The team

Deloitte's Cyber Defense & Resilience team helps clients defend against advanced threats by improving security operations, detection engineering, monitoring, automation, analytics, and threat intelligence capabilities. The team works with organizations to strengthen operational resilience, manage evolving attack surfaces, and improve readiness, response, and recovery through scalable engineering and transformation solutions.

Qualifications

Required:

  • Bachelor's degree in Computer Science, Cybersecurity, Information Systems, Engineering, or a related field, or equivalent work experience

  • 10+ years of experience in security operations, detection engineering, security engineering, or enterprise cyber defense

  • Hands-on experience designing, implementing, and optimizing security information and event management, security orchestration automation and response, detection, telemetry, and response workflows across one or more enterprise security platforms

  • Experience building and maintaining integrations, automations, and engineering workflows using Python or a similar scripting language

  • Experience working directly with clients or internal stakeholders to translate operational requirements into technical solutions

  • Ability to travel 50%, on average, based on the work you do and the clients and industries/sectors you serve.

  • Limited immigration sponsorship may be available.

    Preferred:

  • Experience across multiple security platforms such as security information and event management, security orchestration automation and response, extended detection and response, attack surface management, threat intelligence platforms, endpoint detection and response, and case management tools

  • Experience with Amazon Web Services, Microsoft Azure, or Google Cloud, including security telemetry and cloud-native security services

  • Experience with threat hunting, cyber threat intelligence, or purple team collaboration

  • Experience applying artificial intelligence, machine learning, or large language model workflows to security operations, including orchestration, retrieval, evaluation, or human-in-the-loop response patterns

  • Experience with frameworks or tools that support artificial intelligence-enabled engineering workflows

  • Relevant industry certifications such as Security+, Global Information Assurance Certification Security Essentials, Global Information Assurance Certification Certified Intrusion Analyst, Global Information Assurance Certification Certified Incident Handler, Certified Information Systems Security Professional, Certified Cloud Security Professional, Splunk, cloud security, or related engineering certifications

    The wage range for this role takes into account the wide range of factors that are considered in making compensation decisions including but not limited to skill sets; experience and training; licensure and certifications; and other business and organizational needs. At Deloitte, it is not typical for an individual to be hired at or near the top of the range for their role and compensation decisions are dependent on the facts and circumstances of each case. A reasonable estimate of the current range is $134,500 to $265,100.

You may also be eligible to participate in a discretionary annual incentive program, subject to the rules governing the program, whereby an award, if any, depends on various factors, including, without limitation, individual and organizational performance.

#CyberCDR27

All qualified applicants will receive consideration for employment without regard to race, color, religion, sex, sexual orientation, gender identity, national origin, age, disability or protected veteran status, or any other legally protected basis, in accordance with applicable law.

Get your free, confidential resume review.

or drag and drop your file here.

Similar jobs

Similar jobs worth comparing

Cyber Senior Consultant - AI SOC
Cyber Senior Consultant - AI SOC

Deloitte France • Philadelphia

On-site
USD 105,000 - 208,000
Discretionary annual incentive
Cyber Manager - Technology Resilience FDE
Cyber Manager - Technology Resilience FDE

Deloitte France • Philadelphia

On-site
USD 156,000 - 307,000
Cyber Senior Manager - Technology Resilience FDE
Cyber Senior Manager - Technology Resilience FDE

Deloitte France • Philadelphia

On-site
USD 189,000 - 373,000
Discretionary annual incentive
Client-embedded role
Cyber Manager - ASM Vulnerability Management - Patching
Cyber Manager - ASM Vulnerability Management - Patching

Deloitte France • Seattle (WA)

On-site
USD 135,000 - 265,000
Travel opportunities
Mentorship program
Cyber Senior Consultant - Technology Resilience
Cyber Senior Consultant - Technology Resilience

Deloitte France • Philadelphia

On-site
USD 68,000 - 134,000
Cyber Consultant - Technical Resilience
Cyber Consultant - Technical Resilience

Deloitte France • San Antonio (TX)

On-site
USD 83,000 - 163,000
Cyber Consultant - Technical Resilience
Cyber Consultant - Technical Resilience

Deloitte France • Indianapolis (IN)

On-site
USD 83,000 - 163,000
Cyber Consultant - Technical Resilience
Cyber Consultant - Technical Resilience

Deloitte France • Los Angeles (CA)

On-site
USD 83,000 - 163,000
Cyber Senior Consultant - Technology Resilience
Cyber Senior Consultant - Technology Resilience

Deloitte France • Charlotte (NC)

On-site
USD 105,000 - 208,000
Cyber Operate Senior Manager- Detect and Respond
Cyber Operate Senior Manager- Detect and Respond

Deloitte France • Indianapolis (IN)

On-site
USD 163,000 - 322,000