Your Key Responsibilities
The Cybersecurity Splunk Manager provides cybersecurity troubleshooting, analysis and technical expertise and oversees the work of junior team members. Additional responsibilities include:
- Assist in the coordination of large-scale cybersecurity engagements.
- Splunk enterprise security, security incident and event management (SIEM)
- Security architecture, log management, data analysis, event correlation, networking/troubleshooting, scripting/development
- Cyber threat analysis, security orchestration automation and response and threat detection
- Developing and configuring dashboards within Splunk interface to support data correlation and analysis to include security monitoring alerts and event management
- Deploying and configuring Splunk Universal Forwarders, Heavy Forwarders, Indexers, Search Heads, Indexers
- Assess cybersecurity controls, programs and strategies using our proprietary framework and industry frameworks
- Review cybersecurity measurements and monitor development and operations
- Assist in the development of cybersecurity strategies and roadmap development
- Monitor progress and manage risk while ensuring stakeholders are kept informed about progress and expected outcomes
- Leverage knowledge of industry trends to identify engagement and client service issues; communicate this information to the on-site engagement team through written correspondence and verbal presentations.
- Develop and review reports and presentations for both technical and executive audiences.
- Assist staff by providing mentorship and coaching to grow their technical and consulting skills.
- Work closely with engagement manager to co-lead and own multiple parts of the engagement delivery
- Deliver quality client services. Drive high-quality work products within expected timeframes and on budget
To qualify for the role, you must have
- A bachelor's degree in a related field
- 8-10 years of Splunk or enterprise SIEM experience
- Experience designing, architecting, implementing, and configuring enterprise centralized auditing, log management and security monitoring solutions using Splunk security incident and event management tools
- At least one of the following certifications: CISA, CISSP, CCSP, Security+ CE, CYSA+, GSEC, CASP+, GCIH, GCED
- Must be able to obtain and maintain a Secret-level clearance or higher
- Working knowledge of security frameworks and standards such as NIST 800-37, NIST 800-53, FIPS 199, FIPS 200, NIST CSF, NIST 800-161, CMMC and cybersecurity laws and regulations such as FISMA
Experience in one or more of the following areas:
- Cybersecurity assessments
- IT and cybersecurity policies, standards, procedures, and controls
- Cybersecurity strategies and roadmaps
- Cybersecurity awareness and training
- Cybersecurity metrics and reporting
- Cybersecurity organization design and implementation
- Cybersecurity and risk management solution design and implementation (e.g. SNOW IRM, Archer GRC, RiskLens, Azure Security Center, etc.)
- Federal RMF solution operations (e.g eMass CSAM, Xacta, etc.)
- Cybersecurity and IT architecture experience (e.g. cloud security architect, security architect)
- Demonstrated characteristics of a forward thinker and self-motivator who thrives on new challenges and adapts to learning new knowledge
- Strong analytical and problem-solving skills
- Strong presentation and communication skills
- Able to work collaboratively in a team environment
Ideally, you'll also have
- Splunk Certifications highly preferred – Splunk Core Certified Power User, Splunk Core Certified Admin, Splunk Core Certified Architect, Splunk Certified Developer, Splunk Enterprise Security Certified Admin, Splunk Core Certified Consultant
- Project Management Professional Certification or Master’s in IT, Business, Accounting, Finance or related field(s)
- Experience working with government client(s)
What we offer
We offer a comprehensive compensation and benefits package where you’ll be rewarded based on your performance and recognized for the value you bring to the business. The base salary range for this job in all geographic locations in the US is $143,500 to $263,200. The salary range for New York City Metro Area, Washington State and California (excluding Sacramento) is $172,200 to $299,100. Individual salaries within those ranges are determined through a wide variety of factors including but not limited to education, experience, knowledge, skills and geography. In addition, our Total Rewards package includes medical and dental coverage, pension and 401(k) plans, and a wide range of paid time off options. Join us in our team-led and leader-enabled hybrid model. Our expectation is for most people in external, client serving roles to work together in person 40-60% of the time over the course of an engagement, project or year. Under our flexible vacation policy, you’ll decide how much vacation time you need based on your own personal circumstances. You’ll also be granted time off for designated EY Paid Holidays, Winter/Summer breaks, Personal/Family Care, and other leaves of absence when needed to support your physical, financial, and emotional well-being.
- Continuous learning: You’ll develop the mindset and skills to navigate whatever comes next.
- Success as defined by you: We’ll provide the tools and flexibility, so you can make a meaningful impact, your way.
- Transformative leadership: We’ll give you the insights, coaching and confidence to be the leader the world needs.
- Diverse and inclusive culture: You’ll be embraced for who you are and empowered to use your voice to help others find theirs.
If you can demonstrate that you meet the criteria above, please contact us as soon as possible.
EY exists to build a better working world, helping to create long-term value for clients, people and society and build trust in the capital markets.