Cybersecurity - TVM - SIEM/SOAR - Senior Manager - Location OPEN

EY

Indianapolis (IN)

On-site

USD 171,000 - 390,000

Full time

15 hours ago
Be an early applicant
Application generator

Get a reply from this employer — a resume and cover letter tailored to exactly what they’re hiring for.

Get past ATS filters

Benefits offered by this job

Medical and dental coverage
Pension and 401(k) plans
Paid time off

Job summary

EY is seeking a senior security consultant to provide advanced SIEM and SOAR solutions for diverse client engagements across the United States. You will lead technical teams, mentor junior staff, and drive security program improvements in collaboration with EY’s Advanced Security Centers.

Candidates should have 6+ years in information security, adept with Microsoft Sentinel, CrowdStrike, or Google Chronicle, and solid consulting experience.

Qualifications

  • Must have 6‑10 years of experience in information security with a focus on SIEM and SOAR solutions.
  • Must have 3 years of consulting experience addressing client needs, proposals, and presentations.
  • Must have 2 years of experience in security concepts, including vulnerability assessments and incident response.

Responsibilities

  • Lead and mentor teams delivering security and IT risk solutions.
  • Engage with clients daily, guiding sessions and workstreams, identifying opportunities.
  • Manage engagement economics, budgets, and resource plans.
  • Build strong client relationships as a trusted advisor on SIEM/SOAR deployments.

Skills

SIEM
SOAR
Consulting
Security concepts
Networking
Process mapping

Education

Bachelor’s degree in MIS/Cybersecurity/CS/Engineering/Business/Accounting/Finance or related field
Master’s degree in MIS/Cybersecurity/CS/Engineering/Business/Accounting/Finance or related field

Tools

Microsoft Sentinel
CrowdStrike NextGen SIEM
Google Chronicle
Cribl
Databahn
Apache NiFi

Job description

Location: Anywhere in Country

At EY, we’re all in to shape your future with confidence.

We’ll help you succeed in a globally connected powerhouse of diverse teams and take your career wherever you want it to go. Join EY and help to build a better working world.

Provide reliable solutions to clients’ intricate technology risks and vulnerabilities as part of the Cyber Threat and Vulnerability Management (TVM) team, playing a pivotal role in understanding and contextualizing clients’ cybersecurity threats, as well as in evaluating, enhancing, and developing their security operations to counter these threats effectively. Spearhead the deployment of cutting‑edge security solutions for clients, aiding them in safeguarding their enterprises, collaborating with our Advanced Security Centers, providing access to the most advanced tools to combat cybercrime effectively. Be responsible for managing and delivering multiple processes, projects, or solutions with a focus on quality and risk management. Lead and motivate teams in delivering security and IT risk solutions, fostering an inclusive environment, mentoring junior consultants, and providing technical leadership. Maintain current knowledge of IT and industry trends to address client service issues and deliver exceptional client service, with a focus on advanced SIEM platforms like Microsoft Sentinel, CrowdStrike NextGen SIEM, and Splunk. Build strong client relationships as a trusted advisor in the implementation and management of security solutions. Demonstrate deep technical expertise in advanced SIEM technologies and a commitment to continuous learning in cybersecurity advancements. Understand the strategic importance of SIEM (Security Information and Event Management) and SOAR (Security Orchestration, Automation, and Response) in protecting business operations and stay informed on industry developments and advisory services capabilities. Understand the importance of Extract, Transform, and Load (ETL) tools such as Cribl, Databahn, and Apache NiFi in helping clients manage their data streams. Apply knowledge of complex information systems and AI technologies to identify engagement issues and communicate effectively with clients. Possess a thorough understanding of the incident response process and familiarity with frameworks like MITRE ATT&CK to enhance threat detection and response capabilities. Enhance processes continuously and identify innovative solutions through research and best practices. Act as a technical leader, guiding your team to resolve challenges and develop impactful policies and procedures. Engage with clients daily, leading sessions and workstreams, and identifying additional service opportunities. Manage engagement economics and implement resource plans and budgets.

Manage and motivate teams of professionals with diverse skills and backgrounds. Consistently deliver quality client services by monitoring progress. Demonstrate in-depth technical capabilities and professional knowledge. Maintain long‑term client relationships and networks. Cultivate business development opportunities.

Education and Basic Experience Requirements

Must have a Bachelor’s degree in Management Information Systems (MIS), Cybersecurity, Computer Science, Engineering, Business, Accounting, Finance or a related field and 5 years of progressive, post‑baccalaureate relevant work experience. Alternatively, will accept a Master’s degree in Management Information Systems (MIS), Cybersecurity, Computer Science, Engineering, Business, Accounting, Finance or a related field and 4 years of relevant work experience.

Specific Skills/Experience Requirements
  • Must have 6‑10 years of experience in information security, with a focus on SIEM (Security Information and Event Management) and SOAR (Security Orchestration, Automation, and Response) solutions, including hands‑on experience with at least one of the following leading platforms: Microsoft Sentinel, CrowdStrike NextGen SIEM, or Google Chronicle.
  • Must have 3 years of experience in consulting, including addressing client needs, developing proposals, and delivering presentations.
  • Must have 2 years of experience with security concepts and methods, including vulnerability assessments, privacy assessments, intrusion detection, incident response (including knowledge of the incident response process and frameworks), security policy creation, enterprise security strategies, architectures, and governance.
  • Must have 2 years of experience in networking, operating system fundamentals, and security technologies, including firewalls or IDS/IPS.
  • Must have 2 years of experience in leading process definition, workflow design, and process mapping, with an emphasis on integrating SIEM and SOAR capabilities into business operations.
Travel

Overall Percentage – 80%

  • Percentage of the overall travel that is Domestic - 90%
  • Percentage of the overall travel that is International, if applicable - 10%

Employer will accept any suitable combination of education, training, or experience.

What We Offer You

At EY, we harness our collective strength to empower you to shape your future with confidence through professional growth, personal fulfillment and an inclusive culture. Learn more at ey.com/us/careers.

  • The salary range for this job is:
    • New York City, Boston, and Washington DC Metro Areas, Washington State, and Southern California offices – $204,800 to $425,500
    • Bay Area California offices – $213,300 to $443,200
    • All other offices locations in the US, including Sacramento – $170,600 to $390,000
  • Individual salaries within these ranges are determined through a wide variety of factors including but not limited to education, experience, knowledge, skills and geography. In addition, our Total Rewards package includes medical and dental coverage, pension and 401(k) plans, and a wide range of paid time off options.
EY | Building a better working world

EY is building a better working world by creating new value for clients, people, society and the planet, while building trust in capital markets.

Enabled by data, AI and advanced technology, EY teams help clients shape the future with confidence and develop answers for the most pressing issues of today and tomorrow.

EY teams work across a full spectrum of services in assurance, consulting, tax, strategy and transactions. Fueled by sector insights, a globally connected, multi-disciplinary network and diverse ecosystem partners, EY teams can provide services in more than 150 countries and territories.

All in to shape the future with confidence.

EY provides equal employment opportunities to applicants and employees without regard to race, color, religion, age, sex, sexual orientation, gender identity/expression, pregnancy, genetic information, national origin, protected veteran status, disability status, or any other legally protected basis, including arrest and conviction records, in accordance with applicable law.

EY is committed to providing reasonable accommodation to qualified individuals with disabilities including veterans with disabilities. If you have a disability and either need assistance applying online or need to request an accommodation during any part of the application process, please call 1-800-EY-HELP3, select Option 2 for candidate related inquiries, then select Option 1 for candidate queries and finally select Option 2 for candidates with an inquiry which will route you to EY’s Talent Shared Services Team (TSS) or email the TSS at ssc.customersupport@ey.com.

Get your free, confidential resume review.
or drag and drop your file here.
Similar jobs

Similar jobs worth comparing

Cybersecurity - TVM - SIEM/SOAR - Senior Manager - Location OPEN
Cybersecurity - TVM - SIEM/SOAR - Senior Manager - Location OPEN

EY • Des Moines (IA)

On-site
USD 171,000 - 390,000
Health and dental coverage
Pension/401(k)
Generous PTO
Cybersecurity - TVM - SIEM/SOAR - Senior Manager - Location OPEN
Cybersecurity - TVM - SIEM/SOAR - Senior Manager - Location OPEN

EY • Chattanooga (TN)

On-site
USD 171,000 - 390,000
Cybersecurity - TVM - SIEM/SOAR - Senior Manager - Location OPEN
Cybersecurity - TVM - SIEM/SOAR - Senior Manager - Location OPEN

EY • Sacramento (CA)

On-site
USD 171,000 - 390,000
Medical and dental coverage
Pension and 401(k)
Cybersecurity - TVM - SIEM/SOAR - Senior Manager - Location OPEN
Cybersecurity - TVM - SIEM/SOAR - Senior Manager - Location OPEN

EY • Baton Rouge (LA)

On-site
USD 171,000 - 390,000
Medical and dental coverage
401(k) retirement plan
Paid time off
Cybersecurity - TVM - SIEM/SOAR - Senior Manager - Location OPEN
Cybersecurity - TVM - SIEM/SOAR - Senior Manager - Location OPEN

EY • Austin (TX)

On-site
USD 171,000 - 390,000
Health benefits
Pension & 401(k)
Paid time off
Cybersecurity - TVM - SIEM/SOAR - Senior Manager - Location OPEN
Cybersecurity - TVM - SIEM/SOAR - Senior Manager - Location OPEN

EY • Washington

On-site
USD 205,000 - 426,000
Medical and dental coverage
Pension and 401(k)
Paid time off
Cybersecurity - TVM - SIEM/SOAR - Senior Manager - Location OPEN
Cybersecurity - TVM - SIEM/SOAR - Senior Manager - Location OPEN

EY • Tallahassee (FL)

On-site
USD 190,000 - 300,000
Medical and dental coverage
Pension and 401(k)
Paid time off
Cybersecurity - TVM - SIEM/SOAR - Senior Manager - Location OPEN
Cybersecurity - TVM - SIEM/SOAR - Senior Manager - Location OPEN

EY • Southfield (MI)

On-site
USD 171,000 - 390,000
Cybersecurity - TVM - SIEM/SOAR - Senior Manager - Location OPEN
Cybersecurity - TVM - SIEM/SOAR - Senior Manager - Location OPEN

EY • Greenville (SC)

On-site
USD 171,000 - 426,000
Cybersecurity - TVM - SIEM/SOAR - Senior Manager - Location OPEN
Cybersecurity - TVM - SIEM/SOAR - Senior Manager - Location OPEN

EY • City of Rochester (NY)

On-site
USD 171,000 - 390,000
Medical and dental coverage
Pension and 401(k)