Cyber Security Manager / Senior Manager
EY Federal Territory of Kuala Lumpur, Malaysia
About the Role
As a Manager / Senior Manager in the EY cyber security practice, you will lead and manage teams to deliver security engagement with our clients. You will contribute technical insights to client engagements. An important part of your role will be to actively establish, maintain and strengthen internal and external relationships. You’ll also identify potential business opportunities for EY within existing engagements and elevate these as appropriate.
Key Responsibilities
- Lead a portfolio of engagements and projects with our clients; reporting to a Director or Partner
- Manage and create reports and reviews ensuring the highest quality deliverables prior to Director’s and Partner’s review
- Contribute to developing the market for Cyber Security services across all sectors and identify sales opportunities, escalating them to senior management
- Establish client relationships with senior stakeholders across our clients including internal stakeholders
- Work with prospective clients to identify opportunities, scope engagements, and create high‑quality proposals
- Advocate and champion Cyber Security services both internally to our wider network of colleagues and to our clients and the wider market
- Contribute to the creation of proposals and marketing material
- Manage engagements to time and budget
- Contribute to the development of the existing cyber risk team as a mentor and coach to junior members and lead by example
- Contribute to the latest thought‑leadership, industry research and creation of marketing collateral relating to cyber security
Additional Responsibilities
Perform security risk and controls assessments and / or penetration testing to evaluate and analyze threat, vulnerability, impact, risk and security issues to Business.Assist clients in evaluating, enhancing or developing their Cybersecurity Management programs, Business Continuity and Disaster Recovery Management programs, Data Protection and Privacy management programs, Threat and Vulnerability Management programs, Security Incident Detection and Response management programs, and Identity and Access Management programs.Expectations
Consistently deliver quality client services and manage expectations of client service delivery.Stay abreast of current business and industry trends relevant to the client's business.Demonstrate technical, risk capabilities and professional knowledge.Remain current on new developments in advisory services capabilities and industry knowledge.Skills and Attributes for Success
Security strategy – assess, design and implement security strategy, governance frameworks over processes, controls, organisation and infrastructure to management of cyber securitySecurity transformation programmes – design and management of security solution implementations and / or remediation programmes to address risksIdentity and access management (IDAM) – assessing current IDAM practices and designing solutions to improve IDAM processes, privileged access and recertification programmes.Breach and incident management – design and implementation of breach and major incident management practicesSecurity policies and procedures – design and implementation of security policies, procedures, standards and controls in line with regulation and / or current standards, ISO27001, NIST, SANS etc.Data privacy and data protection – implementation of data protection and / or privacy programmes to address confidentiality and security of personal dataResilience – design and implementation of programmes to improve IT Disaster Recovery, Business ContinuitySecurity over operational technology and control systems (SCADA)Security architecture – creating secure architecture designs for solutions, designing secure patterns for reuse and the delivery of architectural reviews using TOGAF or SABASecurity around emerging technology platforms – mobile device platforms (iOS, Android), cloud services (IaaS, PaaS, SaaS), Big Data, Social mediaQualifications
A bachelor’s degree in computer science, computer / electrical engineering, information technology or a related fieldRelated professional certifications such as CISSP, CCSP, CISM, OSCP, etcMinimum 5 years for Managers or 8 years for Senior Managers of recent relevant work experience in information security or information technology disciplineExperience in client service delivery and ability to manage multiple engagement teams and projectsProject and program management related certification such as Prince, Scrum, Agile, etc.Seniority Level
Mid–Senior level
Employment Type
Full‑time
Job Function
Information Technology
Industries
Professional Services
#J-18808-Ljbffr