Cyber Risk Senior Manager

  • Deloitte
  • 501 Pennsylvania Avenue NW, Washington, DC 20001, USA
  • Nov 09, 2020

Job Description

Position summary Cyber Fusion Senior Manager Are you interested in improving the cyber and organizational risk profiles of leading companies?Do you want to be strategic advisor to our clients, and lead projects ranging from Cyber Fusion strategic development to implementation of leading approaches to threat intelligence, analytics, detection and response? Can you deal with changing requirements from project to project, learn what you need to get the job done, and produce accurate and timely results? If yes, then Deloittes Cyber team could be the place for you! Deloittes Cyber services help organizations create a cyber-minded culture and become stronger, faster, more innovative, and more resilient in the face of persistent and ever-changing cyber threats. Join our team of Cyber professionals who focus on helping clients design and implement transformation enterprise security programs with an emphasis on defending against, recovering from, and remediating major cyberattacks. We are currently hiring experienced talent at all levels from hands-on Cyber Fusion analysts through senior management and thought leaders. As a Senior Manager for Deloitte's Cyber services, youll work with our diverse teams of leading professionals to help design and implement solutions to some of todays toughest cybersecurity challenges so they can achieve business growth and manage risk. In your role as a Senior Manager, you will support our clients in enhancing their capabilities in cyber threat detection and response, while leading multiple project delivery teams. Day-to-day activities may include: Increasing maturity of key Cyber Fusion capabilities across governance, people, processes and technology to help our clients achieve integrated cyber defense, proactively monitor, detect, investigate, and respond to known and unknown attacks Providing Deloittes perspective on the effective approaches to Cyber Fusion development and operations, and collaborating with our client stakeholders on implementation roadmaps and execution Working with our clients to identify, architect, and deploy security analytics and alerting solutions Clearly articulating the role of Cyber Threat Intelligence in the cyber defense strategy, and integrating intelligence across defense disciplines such as risk, security architecture, monitoring / detection, vulnerability management, and application security. Leading the development of actionable use cases to detect, triage, investigate and remediate based on latest threat actor trends, including actual technical implementation of parsing log sources creating, validating and testing alerting queries to reduce false positives. Providing industry leading perspectives on augmenting existing Cyber Fusion processes to increase centralized visibility in order to identify suspicious activity to reduce the mean time to detect and respond to cyber threats. Responsibilities: Build enduring client relationships and expand the footprint of the firm Lead multiple, cross region teams to deliver complex engagements for global clients Manage pricing, profitability, and quality of deliverables Drive development and manage the implementation of Cyber Fusion capabilities targeted on key clients risk and business needs, and enhanced by leading practices across people, processes and technology including current state assessments Design and manage the implementation of Cyber Fusion operating models, identifying, evaluating, and providing solutions to evaluate complex business via a threat-based approaches Lead process walkthrough discussions to recommend improvements on end-to-end business processes and functional requirements based on latest Fusion Center / SOC trends Design and manage the technical implementation of threat-based use cases in Security Information Event Management (SIEM) and threat analytic systems Coordinate across multiple stakeholder groups and manage end-to-end concurrent projects Execute services and supervise staff in delivering engagement services Select and tailor approaches, methodologies and tools to support service offering or industry projects Strive to exceed client expectations; build and nurture positive working relationships with clients Responsible for effective project and program kickoff, identification of all program stakeholders, defining and clarifying program roles and responsibilities. Manage day-to-day interactions with clients and internal Deloitte team Display leadership and business judgment in anticipating client/project needs and developing alternative solutions Track and communicate engagement performance and planning to Deloitte engagement management, ensuring project milestones remain on track and are completed timely and escalate risks as appropriate. Responsible for project(s) financials including development of financial plans Identify opportunities to improve engagement profitability Participate and lead aspects of the proposal development process Actively participate in the development of business and vendor relationships Contribute to Deloittes thought leadership in client organizations and the external marketplace. Actively mentor and train team members on Cyber Fusion processes, governance, and frameworks Provide counseling/coaching, oversight, and support for delivery teams and staff Participate actively in staff recruitment and retention activities providing input and guidance into the staffing process Adopt a pragmatic approach to dealing with situations where confidentiality is important or where our work is of a sensitive nature. Helping maintain our clients strong professional relationships is integral to our business. Required: 5 + year minimum of work experience in at least two of as the following cybersecurity disciplines: Cyber Fusion Center, Security Operations Center, Network Security, Endpoint Security, Incident Response, Forensics, Threat Intelligence, Vulnerability Management Bachelor of Science/Business Administration with a concentration in computer science, information systems, information security, math, decision sciences, risk management, engineering (mechanical, electrical, industrial) or equivalent work experience Willingness to travel up to 80% required (Mon - Thurs) on a weekly basis (while travel up to 80% is a requirement of the role, due to COVID-19, non-essential travel has been suspended until further notice). In depth knowledge of general security concepts, such as defense-in-depth, least privilege, security architecture and design, threat modeling, etc. Excellent communication, listening & facilitation skills Demonstrated consulting skills (client service orientation, conflict resolution, analysis/synthesis of information, negotiation, project management, etc.) Experience with SIEM technology (e.g. Splunk, IBM QRadar, Microsoft Sentinel, etc.) or interpreting, searching, and manipulating data within enterprise logging solutionsor IT Service Management (ITSM) tools, workflow, and automation Experience extending enterprise security controls to the cloud Certifications; CISSP, CISM, CISA Proven leadership skills demonstrating strong judgment, problem-solving, and decision-making abilities Experience managing senior-level client relationships Experience mentoring and coaching others Pre-sales, proposal, and RFP experience Must be legally authorized to work in the United Stated without the need for