Cybersecurity - TVM - SIEM/SOAR - Senior Manager - Location OPEN

Ernst & Young Advisory Services Sdn Bhd

Chicago (IL)

On-site

USD 171,000 - 390,000

Full time

7 days ago
Be an early applicant
Application generator

Don’t send a generic resume — generate a resume and cover letter tailored to this exact role.

Get past ATS filters

Job summary

EY is seeking a Cybersecurity TVM Senior Manager to lead deployment of SIEM/SOAR solutions, guide teams, and engage with clients across multiple locations. Deep expertise in SIEM platforms and incident response is required to enhance client security operations and threat detection.

The role emphasizes leadership, delivery quality, and ongoing learning in cybersecurity advancements, with travel up to 80%.

Qualifications

  • 6-10 years of information security experience with SIEM/SOAR
  • Experience with at least one of Microsoft Sentinel, CrowdStrike NextGen SIEM, or Google Chronicle
  • 3 years consulting experience including proposals and presentations
  • 2 years networking, OS fundamentals, and security technologies

Responsibilities

  • Provide reliable security solutions for clients within the TVM team
  • Lead and mentor teams delivering security and IT risk solutions
  • Engage with clients daily, identify opportunities and manage engagement economics
  • Stay current on IT and industry trends and advise on SIEM/SOAR deployments

Skills

SIEM
SOAR
Microsoft Sentinel
CrowdStrike NextGen SIEM
Splunk
leadership
consulting
incident response
ETL tools

Education

Bachelor's degree
Master's degree

Tools

Cribl
Databahn
Apache NiFi

Job description

Select how often (in days) to receive an alert:

Select how often (in days) to receive an alert:

Cybersecurity - TVM - SIEM/SOAR - Senior Manager - Location OPEN

Location: Chicago

Other locations: Anywhere in Country

Date: Sep 10, 2026

Requisition ID: 1743308

Location: Anywhere in Country

At EY, we’re all in to shape your future with confidence.

We’ll help you succeed in a globally connected powerhouse of diverse teams and take your career wherever you want it to go. Join EY and help to build a better working world.

Provide reliable solutions to clients’ intricate technology risks and vulnerabilities as part of the Cyber Threat and Vulnerability Management (TVM) team, playing a pivotal role in understanding and contextualizing clients’ cybersecurity threats, as well as in evaluating, enhancing, and developing their security operations to counter these threats effectively. Spearhead the deployment of cutting-edge security solutions for clients, aiding them in safeguarding their enterprises, collaborating with our Advanced Security Centers, providing access to the most advanced tools to combat cybercrime effectively. Be responsible for managing and delivering multiple processes, projects, or solutions with a focus on quality and risk management. Lead and motivate teams in delivering security and IT risk solutions, fostering an inclusive environment, mentoring junior consultants, and providing technical leadership. Maintain current knowledge of IT and industry trends to address client service issues and deliver exceptional client service, with a focus on advanced SIEM platforms like Microsoft Sentinel, CrowdStrike NextGen SIEM, and Splunk. Build strong client relationships as a trusted advisor in the implementation and management of security solutions. Demonstrate deep technical expertise in advanced SIEM technologies and a commitment to continuous learning in cybersecurity advancements. Understand the strategic importance of SIEM (Security Information and Event Management) and SOAR (Security Orchestration, Automation, and Response) in protecting business operations and stay informed on industry developments and advisory services capabilities. Understand the importance of Extract, Transform, and Load (ETL) tools such as Cribl, Databahn, and Apache NiFi in helping clients manage their data streams. Apply knowledge of complex information systems and AI technologies to identify engagement issues and communicate effectively with clients. Possess a thorough understanding of the incident response process and familiarity with frameworks like MITRE ATT&CK to enhance threat detection and response capabilities. Enhance processes continuously and identify innovative solutions through research and best practices. Act as a technical leader, guiding your team to resolve challenges and develop impactful policies and procedures. Engage with clients daily, leading sessions and workstreams, and identifying additional service opportunities. Manage engagement economics and implement resource plans and budgets.

Manage and motivate teams of professionals with diverse skills and backgrounds. Consistently deliver quality client services by monitoring progress. Demonstrate in-depth technical capabilities and professional knowledge. Maintain long-term client relationships and networks. Cultivate business development opportunities.

Education and Basic Experience Requirements:

Must have a Bachelor’s degree in Management Information Systems (MIS), Cybersecurity, Computer Science, Engineering, Business, Accounting, Finance or a related field and 5 years of progressive, post-baccalaureate relevant work experience. Alternatively, will accept a Master’s degree in Management Information Systems (MIS), Cybersecurity, Computer Science, Engineering, Business, Accounting, Finance or a related field and 4 years of relevant work experience.

Specific Skills/Experience Requirements:

  • Must have 6-10 years of experience in information security, with a focus on SIEM (Security Information and Event Management) and SOAR (Security Orchestration, Automation, and Response) solutions, including hands‑on experience with at least one of the following leading platforms: Microsoft Sentinel, CrowdStrike NextGen SIEM, or Google Chronicle.
  • Must have 3 years of experience in consulting, including addressing client needs, developing proposals, and delivering presentations.
  • Must have 2 years of experience with security concepts and methods, including vulnerability assessments, privacy assessments, intrusion detection, incident response (including knowledge of the incident response process and frameworks), security policy creation, enterprise security strategies, architectures, and governance.
  • Must have 2 years of experience in networking, operating system fundamentals, and security technologies, including firewalls or IDS/IPS.
  • Must have 2 years of experience in leading process definition, workflow design, and process mapping, with an emphasis on integrating SIEM and SOAR capabilities into business operations.

Travel

Overall Percentage – 80%

  • Percentage of the overall travel that is Domestic - 90%
  • Percentage of the overall travel that is International, if applicable - 10%

Employer will accept any suitable combination of education, training, or experience.

What we offer you
At EY, we harness our collective strength to empower you to shape your future with confidence through professional growth, personal fulfillment and an inclusive culture. Learn more at ey.com/us/careers .

  • The salary range for this job is:
    • New York City, Boston, and Washington DC Metro Areas, Washington State, and Southern California offices – $204,800 to $425,500
    • Bay Area California offices – $213,300 to $443,200
    • All other offices locations in the US, including Sacramento – $170,600 to $390,000
  • Individual salaries within these ranges are determined through a wide variety of factors including but not limited to education, experience, knowledge, skills and geography. In addition, our Total Rewards package includes medical and dental coverage, pension and 401(k) plans, and a wide range of paid time off options.
  • At EY, our values set the foundation for how we work and the behaviors we expect of our people. Any misrepresentation or falsification of information or lack of integrity at any point in the recruiting process may result in withdrawal of your candidacy, revocation of an offer or immediate termination of employment.

EY | Building a better working world

EY is building a better working world by creating new value for clients, people, society and the planet, while building trust in capital markets.

Enabled by data, AI and advanced technology, EY teams help clients shape the future with confidence and develop answers for the most pressing issues of today and tomorrow.

EY teams work across a full spectrum of services in assurance, consulting, tax, strategy and transactions. Fueled by sector insights, a globally connected, multi-disciplinary network and diverse ecosystem partners, EY teams can provide services in more than 150 countries and territories.

All in to shape the future with confidence.

EY provides equal employment opportunities to applicants and employees without regard to race, color, religion, age, sex, sexual orientation, gender identity/expression, pregnancy, genetic information, national origin, protected veteran status, disability status, or any other legally protected basis, including arrest and conviction records, in accordance with applicable law.

EY is committed to providing reasonable accommodation to qualified individuals with disabilities including veterans with disabilities. If you have a disability and either need assistance applying online or need to request an accommodation during any part of the application process, please call 1-800-EY-HELP3, select Option 2 for candidate related inquiries, then select Option 1 for candidate queries and finally select Option 2 for candidates with an inquiry which will route you to EY’s Talent Shared Services Team (TSS) or email the TSS at ssc.customersupport@ey.com .

EY refers to the global organization, and may refer to one or more, of the member firms of Ernst & Young Global Limited, each of which is a separate legal entity. Ernst & Young Global Limited, a UK company limited by guarantee, does not provide services to clients.

Get your free, confidential resume review.
or drag and drop your file here.
Similar jobs

Similar jobs worth comparing

Cybersecurity - TVM - SIEM/SOAR - Senior Manager - Location OPEN
Cybersecurity - TVM - SIEM/SOAR - Senior Manager - Location OPEN

EY • City of Rochester (NY)

On-site
USD 171,000 - 390,000
Medical and dental coverage
Pension and 401(k)
Cybersecurity - TVM - SIEM/SOAR - Senior Manager - Location OPEN
Cybersecurity - TVM - SIEM/SOAR - Senior Manager - Location OPEN

EY • Richmond (VA)

On-site
USD 171,000 - 390,000
Medical and dental coverage
401(k) plan
Paid time off
+1
Cybersecurity - TVM - SIEM/SOAR - Senior Manager - Location OPEN
Cybersecurity - TVM - SIEM/SOAR - Senior Manager - Location OPEN

EY • Washington

On-site
USD 205,000 - 426,000
Medical and dental coverage
Pension and 401(k)
Paid time off
Cybersecurity - TVM - SIEM/SOAR - Senior Manager - Location OPEN
Cybersecurity - TVM - SIEM/SOAR - Senior Manager - Location OPEN

EY • Tallahassee (FL)

On-site
USD 190,000 - 300,000
Medical and dental coverage
Pension and 401(k)
Paid time off
Cybersecurity - TVM - SIEM/SOAR - Senior Manager - Location OPEN
Cybersecurity - TVM - SIEM/SOAR - Senior Manager - Location OPEN

EY • Baton Rouge (LA)

On-site
USD 171,000 - 390,000
Medical and dental coverage
401(k) retirement plan
Paid time off
Cybersecurity - TVM - SIEM/SOAR - Senior Manager - Location OPEN
Cybersecurity - TVM - SIEM/SOAR - Senior Manager - Location OPEN

EY • Southfield (MI)

On-site
USD 171,000 - 390,000
Cybersecurity - TVM - SIEM/SOAR - Senior Manager - Location OPEN
Cybersecurity - TVM - SIEM/SOAR - Senior Manager - Location OPEN

EY • Des Moines (IA)

On-site
USD 171,000 - 390,000
Health and dental coverage
Pension/401(k)
Generous PTO
Cybersecurity - TVM - SIEM/SOAR - Senior Manager - Location OPEN
Cybersecurity - TVM - SIEM/SOAR - Senior Manager - Location OPEN

EY • Greenville (SC)

On-site
USD 171,000 - 426,000
Cybersecurity - TVM - SIEM/SOAR - Senior Manager - Location OPEN
Cybersecurity - TVM - SIEM/SOAR - Senior Manager - Location OPEN

EY • Salt Lake City (UT)

On-site
USD 171,000 - 426,000
Medical and dental coverage
401(k) / Pension plans
Paid time off
Cybersecurity - TVM - SIEM/SOAR - Senior Manager - Location OPEN
Cybersecurity - TVM - SIEM/SOAR - Senior Manager - Location OPEN

EY • Milwaukee (WI)

On-site
USD 171,000 - 390,000