About this role
<div style="font-family:Arial;font-size:1.0em"> <p>At EY, we’re all in to shape your future with confidence. </p> <p>We’ll help you succeed in a globally connected powerhouse of diverse teams and take your career wherever you want it to go. </p> <p>Join EY and help to build a better working world. </p> </div> <div style="font-family:Arial;font-size:1.0em"> </div><p><span style="font-family:arial, helvetica, sans-serif;font-size:10.0pt"><strong>Manager (CTM – Threat Detection & Response) – Splunk </strong></span></p> <p><span style="font-family:arial, helvetica, sans-serif;font-size:10.0pt"><strong> </strong></span></p> <p><span style="font-family:arial, helvetica, sans-serif;font-size:10.0pt">We are seeking a highly skilled and experienced Splunk Implementation Manager to join our team. The ideal candidate will have a strong background in cybersecurity and extensive experience with Splunk, particularly in implementing and managing the Enterprise Security (ES) App. As a Splunk Implementation Manager, you will be responsible for leading and overseeing the deployment, configuration, and management of Splunk solutions to ensure our clients' security needs are met. Experience in Security Orchestration, Automation, and Response (SOAR) and Endpoint Detection and Response (EDR) is essential. You will also work closely with SOC teams and handle project management responsibilities, including responding to Requests for Proposals (RFPs).</span></p> <p> </p> <p> </p> <p><span style="font-family:arial, helvetica, sans-serif;font-size:10.0pt"><strong>Key Responsibilities:</strong></span></p> <p> </p> <ul type="disc"> <li style="font-family:arial, helvetica, sans-serif;font-size:10.0pt"><span style="font-family:arial, helvetica, sans-serif;font-size:10.0pt">Lead the design, implementation, and management of Splunk solutions (On-prem and Cloud), with a focus on the Enterprise Security (ES) App.</span></li> <li style="font-family:arial, helvetica, sans-serif;font-size:10.0pt"><span style="font-family:arial, helvetica, sans-serif;font-size:10.0pt">Collaborate with clients to understand their security requirements and translate them into effective Splunk use cases.</span></li> <li style="font-family:arial, helvetica, sans-serif;font-size:10.0pt"><span style="font-family:arial, helvetica, sans-serif;font-size:10.0pt">Oversee the installation, configuration, and optimization of Splunk instances, including indexers, forwarders, and search heads.</span></li> <li style="font-family:arial, helvetica, sans-serif;font-size:10.0pt"><span style="font-family:arial, helvetica, sans-serif;font-size:10.0pt">Conduct regular assessments of clients' Splunk environments to identify areas for improvement and implement necessary enhancements.</span></li> <li style="font-family:arial, helvetica, sans-serif;font-size:10.0pt"><span style="font-family:arial, helvetica, sans-serif;font-size:10.0pt">Provide technical guidance and support to clients during the implementation and post-implementation phases.</span></li> <li style="font-family:arial, helvetica, sans-serif;font-size:10.0pt"><span style="font-family:arial, helvetica, sans-serif;font-size:10.0pt">Train and mentor junior team members on Splunk best practices and advanced features.</span></li> <li style="font-family:arial, helvetica, sans-serif;font-size:10.0pt"><span style="font-family:arial, helvetica, sans-serif;font-size:10.0pt">Stay updated on the latest developments in Splunk and cybersecurity to ensure the highest level of expertise and service delivery.</span></li> <li style="font-family:arial, helvetica, sans-serif;font-size:10.0pt"><span style="font-family:arial, helvetica, sans-serif;font-size:10.0pt">Manage project timelines, budgets, and resources to ensure successful completion of implementation projects.</span></li> <li style="font-family:arial, helvetica, sans-serif;font-size:10.0pt"><span style="font-family:arial, helvetica, sans-serif;font-size:10.0pt">Work closely with SOC teams to ensure seamless integration and operation of Splunk solutions within their workflows.</span></li> <li style="font-family:arial, helvetica, sans-serif;font-size:10.0pt"><span style="font-family:arial, helvetica, sans-serif;font-size:10.0pt">Knowledge in SOAR and EDR, work with these teams to ensure integration and optimization through automation.</span></li> <li style="font-family:arial, helvetica, sans-serif;font-size:10.0pt"><span style="font-family:arial, helvetica, sans-serif;font-size:10.0pt">Experience with integration and optimization of logs from cloud environments (AWS, GCP, and Azure).</span></li> <li style="font-family:arial, helvetica, sans-serif;font-size:10.0pt"><span style="font-family:arial, helvetica, sans-serif;font-size:10.0pt">Ensure effective communication and coordination between project stakeholders, including clients and internal teams.</span></li> <li style="font-family:arial, helvetica, sans-serif;font-size:10.0pt"><span style="font-family:arial, helvetica, sans-serif;font-size:10.0pt">Participate in and manage the preparation of responses to Requests for Proposals (RFPs), including technical solution design and project planning.</span></li> </ul> <p> </p> <p> </p> <p><span style="font-family:arial, helvetica, sans-serif;font-size:10.0pt"><strong>Mandatory Skills and Qualifications:</strong></span></p> <p> </p> <ul type="disc"> <li style="font-family:arial, helvetica, sans-serif;font-size:10.0pt"><span style="font-family:arial, helvetica, sans-serif;font-size:10.0pt">Bachelor’s degree in Computer Science, Information Technology, or a related field.</span></li> <li style="font-family:arial, helvetica, sans-serif;font-size:10.0pt"><span style="font-family:arial, helvetica, sans-serif;font-size:10.0pt">8+ Years’ experience in Cyber Security with a good of knowledge in network architecture, Cloud Security and Microsoft technologies</span></li> <li style="font-family:arial, helvetica, sans-serif;font-size:10.0pt"><span style="font-family:arial, helvetica, sans-serif;font-size:10.0pt">Extensive experience with Splunk, including implementation and management of the Enterprise Security (ES) App.</span></li> <li style="font-family:arial, helvetica, sans-serif;font-size:10.0pt"><span style="font-family:arial, helvetica, sans-serif;font-size:10.0pt">Strong understanding of security operations, threat detection, and incident response.</span></li> <li style="font-family:arial, helvetica, sans-serif;font-size:10.0pt"><span style="font-family:arial, helvetica, sans-serif;font-size:10.0pt">Hands-on experience with Splunk configuration, including indexers, forwarders, and search heads.</span></li> <li style="font-family:arial, helvetica, sans-serif;font-size:10.0pt"><span style="font-family:arial, helvetica, sans-serif;font-size:10.0pt">Experience with SOAR and EDR solutions.</span></li> <li style="font-family:arial, helvetica, sans-serif;font-size:10.0pt"><span style="font-family:arial, helvetica, sans-serif;font-size:10.0pt">Strong project management skills, with the ability to manage multiple projects simultaneously.</span></li> <li style="font-family:arial, helvetica, sans-serif;font-size:10.0pt"><span style="font-family:arial, helvetica, sans-serif;font-size:10.0pt">Effective communication and interpersonal skills to interact with clients and internal teams.</span></li> <li style="font-family:arial, helvetica, sans-serif;font-size:10.0pt"><span style="font-family:arial, helvetica, sans-serif;font-size:10.0pt">Experience in preparing and responding to RFPs.</span></li> <li style="font-family:arial, helvetica, sans-serif;font-size:10.0pt"><span style="font-family:arial, helvetica, sans-serif;font-size:10.0pt">Experience working closely with SOC teams to ensure effective security operations.</span></li> <li style="font-family:arial, helvetica, sans-serif;font-size:10.0pt"><span style="font-family:arial, helvetica, sans-serif;font-size:10.0pt">Experience with configuration and integration of cloud environments (AWS, GCP, and Azure).</span></li> <li style="font-family:arial, helvetica, sans-serif;font-size:10.0pt"><span style="font-family:arial, helvetica, sans-serif;font-size:10.0pt">Splunk certifications such as Splunk Certified Architect or Splunk Certified Consultant.</span></li> </ul> <p> </p> <p> </p> <p><span style="font-family:arial, helvetica, sans-serif;font-size:10.0pt"><strong>Preferred Qualifications:</strong></span></p> <p> </p> <ul type="disc"> <li style="font-family:arial, helvetica, sans-serif;font-size:10.0pt"><span style="font-family:arial, helvetica, sans-serif;font-size:10.0pt">Master’s degree in Cybersecurity, Information Technology, or a related field.</span></li> <li style="font-family:arial, helvetica, sans-serif;font-size:10.0pt"><span style="font-family:arial, helvetica, sans-serif;font-size:10.0pt">Experience with other SIEM solutions and cybersecurity tools.</span></li> <li style="font-family:arial, helvetica, sans-serif;font-size:10.0pt"><span style="font-family:arial, helvetica, sans-serif;font-size:10.0pt">Knowledge of scripting languages such as Python or PowerShell for automation and integration tasks.</span></li> <li style="font-family:arial, helvetica, sans-serif;font-size:10.0pt"><span style="font-family:arial, helvetica, sans-serif;font-size:10.0pt">Familiarity with regulatory requirements and industry standards related to cybersecurity.</span></li> </ul> <p> </p><div style="font-family:Arial;font-size:1.0em"> <p><b>EY | Building a better working world </b></p> <p>EY is building a better working world by creating new value for clients, people, society and the planet, while building trust in capital markets.</p> <p>Enabled by data, AI and advanced technology, EY teams help clients shape the future with confidence and develop answers for the most pressing issues of today and tomorrow.</p> <p>EY teams work across a full spectrum of services in assurance, consulting, tax, strategy and transactions. Fueled by sector insights, a globally connected, multi-disciplinary network and diverse ecosystem partners, EY teams can provide services in more than 150 countries and territories.</p> </div>