GMS-Manager-SecOps-Sentinel
EY
EY
Join EY's Cyber Security team as a Threat Detection & Response (TDR) Operations Manager. You will lead end-to-end security incident investigation, ensuring client SLAs and KPIs are met using various SIEM, EDR, and NSM solutions. This role offers the opportunity to build a unique career within a global, inclusive culture, leveraging technology to become your best self.
Oversee security incident detection, reporting, and response, ensuring effective management by the SOC team. Manage and maintain security tools and technologies for optimal threat monitoring. Lead the Security Operations Center, focusing on client network security event monitoring. Ensure client Service Level Agreements are defined, tracked, and met.
Provide technical leadership and guidance to junior team members. Revise and enforce Standard Operating Policies and Procedures. Identify opportunities for improving security monitoring and operational tasks. Communicate complex security concepts to diverse audiences, including executives. Develop and maintain strong client relationships. Oversee and automate daily SOC tasks, providing strategic benefits and achieving goals with limited resources.
We seek a Security Manager with proven SOC Operations & Delivery experience and hands-on knowledge of SIEM, EDR, NSM, and Threat Intelligence solutions. A Bachelor's degree in Technology or Engineering (B.Tech./B.E.) with strong technical skills is required.
Essential qualifications include expertise in SIEM technologies (Microsoft Sentinel, Splunk), security monitoring, and cyber incident response. You should possess knowledge of network monitoring platforms (Fidelis XPS, ExtraHop) and endpoint protection tools (Carbon Black, Defender, CrowdStrike).
Additional requirements include the ability to work with minimal supervision, a customer service orientation, and a minimum of 10 years of hands-on experience in operating, implementing, or designing SIEM solutions, coupled with proven project management experience. Certifications in SIEM platforms or relevant security domains (CISM, CEH, CISSP, GCIH, GIAC) are highly valued. Knowledge of RegEx, Perl scripting, and SQL is a plus. Cloud security and IOT/OT knowledge are considered valuable additions.
EY Global Delivery Services ( EY GDS)
Cybersecurity