Cyber Security Engineer - REMOTE - Government and Public Sec

at EY in Little Rock, Arkansas, United States

Job Description

At EY, you’ll have the chance to build a career as unique as you are, with the global scale, support, inclusive culture and technology to become the best version of you. And we’re counting on your unique voice and perspective to help EY become even better, too. Join us and build an exceptional experience for yourself, and a better working world for all.

From strategy to execution, the Government & Public Sector (GPS) practice of Ernst & Young LLP provides a full range of consulting and audit services to help our Federal, State, Local and Education clients implement new ideas to help achieve their mission outcomes. We deliver real change and measurable results through our diverse, high-performing teams, quality work at the highest professional standards, operational know-how from across our global organization, and creative and bold ideas that drive innovation. We enable our government clients to achieve their mission of protecting the nation and serving the people; increasing public safety; improving healthcare for our military, veterans and citizens; delivering essential public services; and helping those in need. EY is ready to help our government build a better working world.?

Our GPS Technology Organization is a structure within the US GPS practice that implements and maintains a new operate and technology model designed specifically to support U.S. defense and Government engagements.

The opportunity

This is a remote opportunity that can be performed within Continental United States.

As the Cyber Security Engineer, you’ll be part of our Security Engineering & Operations team. You’ll be involved in leading and coordinating activities related to multi-functional security technologies for our US Government and Public Sector (GPS) Practice. You’ll also work with internal security teams including IAM and Cyber Defense to ensure the related systems are secure. You’ll spend most of your time supporting the run state of our security technologies. The remainder of your time will be spent bringing operational expertise into efforts which introduce new technologies and upgrade current ones, robust and compliant.

Your key responsibilities

+ Supporting the run state of our security technologies

+ Bringing operational expertise into efforts which introduce new technologies and upgrade current ones

+ Providing technical oversight of Information Security technologies that fall under the team’s responsibilities, confirming they are operating within agreed service levels, compliance specifications and at peak performance

+ Managing and coordinating planned maintenance activities as well as incidents for Information Security technologies

+ Representing the team in specific project activities, including leading projects and managing the activity of others towards successful completion

+ Articulating technology issues/concerns that may emerge at any level of the technical stack, and from any component across the ecosystem, to technology leaders

+ The role will likely be 100% remote and require <10% travel

+ Occasional weekend and off hours work to support the business. It will also require a rotational on-call schedule.

Skills and attributes for success

+ Operational experience in an environment of more than 3000 users

+ Performed detailed troubleshooting of issues, by using your analytical skills collaborating with other technical teams, stakeholders and internal and external customers.

+ Functional and/or technical experience in supporting security technologies including detailed knowledge of many of the following: Cloud Operations especially Azure, o365 Tenants, networking concepts & mechanisms, EDR, DLP, AV/AM, DNS, Encryption, E-Mail technologies including DMARC, DKIM, SMTP, TLS as well as a myriad of other related security and desktop technologies

+ Strong ability to document processes, procedures and security controls clearly and accurately for distribution to internal teams and customers

+ Comfort working remotely in a large, global virtual environment

+ Ability to react appropriately during stressful and ambiguous situations and communicate clearly to senior leadership when the situation requires

+ Strong problem solving, decision making and collaboration skills

+ Functional and/or technical experience in supporting security technologies including detailed knowledge of many of the following:

+ Azure networking and platform protection

+ Diagnostic logging & log retention

+ Vulnerability scanning and policies

+ Virtual networks and Network Security Groups

+ Application gateways and load balancing

+ Traffic Manager and Azure DDoS protection

+ Host Security and VM Hardening

+ Serverless Computing (Kubernetes)

+ Subscription security and policies

+ Azure resource policies and resource locks

+ Azure information protection

+ Access control and key management for storage accounts

To qualify for the role, you must have

+ Bachelor’s Degree or equivalent work experience

+ At least 5 years of experience in managing Information Systems and Security, including demonstratable knowledge of the various platforms and interactions

+ Strong English language skills – written and verbal

+ Proven experience in configuration of the following Microsoft and Azure security services:

+ Azure Sentinel

+ Azure Defender for O365 and Endpoint

+ Microsoft O365 DLP

+ Microsoft Cloud App Security (MCAS)

+ Microsoft Intune

+ Azure Security Center

+ Azure Log Analytics

+ Must be able to obtain and maintain a Top-Secret Security Clearance

Ideally, you’ll also have

+ Experience with Microsoft Sentinel, MS Exchange, O365, and Azure, Azure Firewall, Azure WAF, Azure EventHub, Azure Network Watcher

+ Advanced skills in troubleshooting cloud environments

+ Knowledge of FedRAMP, NIST SP 800-53, and NIST SP 800-171

+ Federal Government experience, including CMMC Maturity Level 3

+ Strong ability to document processes, procedures and security controls clearly and accurately for distribution to internal teams and customers

+ GSEC/CISSP or other security related generalist certification from ISC2 or GIAC

+ Experience in incident, problem and change management

+ Certifications:

+ AZ-900: Azure Fundamentals

+ AZ-500: Azure Security Technologies

+ AZ-303: Azure Architect Technologies

+ SANS SEC401: Security Essentials – Network, Endpoint, and Cloud

+ SANS SEC 510, Public Cloud Security: AWS, Azure, and GCP

What we look for?

Individuals with strong business and technical acumen who demonstrate drive, vision, teaming and?purpose and are passionate about helping our clients achieve their goals.??

What we offer

We offer a comprehensive compensation and benefits package where you’ll be rewarded based on your performance and recognized for the value you bring to the business. The salary range for this job in most geographic locations in the US is $87,200 to $158,200. The salary range for New York City Metro Area, Washington State and California (excluding Sacramento) is $104,600 to $179,800. Individual salaries within those ranges are determined through a wide variety of factors including but not limited to education, experience, knowledge, skills and geography. In addition, our Total Rewards package includes medical and dental coverage, pension and 401(k) plans, and a wide range of paid time off options. Under our flexible vacation policy, you’ll decide how much vacation time you need based on your own personal circumstances. You’ll also be granted time off for designated EY Paid Holidays, Winter/Summer breaks, Personal/Family Care, and other leaves of absence when needed to support your physical, financial, and emotional well-being.

+ Continuous learning: You’ll develop the mindset and skills to navigate whatever comes next.

+ Success as defined by you:

Copy Link

Job Posting: JC235984499

Posted On: Mar 10, 2023

Updated On: Jun 17, 2023

Please Wait ...