TC-CS-CDR-Cloud Security Specialist-Senior
at EY
Location:
Employment Type: full_time
Job Description
<p><span style="font-family:Arial, Helvetica, sans-serif"><span style="font-size:11.0px">At EY, you’ll have the chance to build a career as unique as you are, with the global scale, support, inclusive culture and technology to become the best version of you. And we’re counting on your unique voice and perspective to help EY become even better, too. Join us and build an exceptional experience for yourself, and a better working world for all. </span></span></p><p> </p><p> </p><p> </p><p> </p><p><strong><span style="font-family:arial, helvetica, sans-serif;font-size:10.0pt">Job Title: Cloud Security Threat Specialist</span></strong></p><p><strong><span style="font-family:arial, helvetica, sans-serif;font-size:10.0pt">Role Overview:</span></strong></p><p> </p><p><span style="font-family:arial, helvetica, sans-serif;font-size:10.0pt">The Senior Cloud Security SME will lead the design, implementation, and optimization of advanced cloud security solutions across multi-cloud environments (AWS, Azure, GCP, OCI). This role focuses on proactive threat detection, WAF configuration and tuning, network traffic analysis, and bot mitigation strategies. The SME will collaborate with cross-functional teams to ensure robust security posture, compliance alignment, incident response and operational efficiency.</span></p><p> </p><p><strong><span style="font-family:arial, helvetica, sans-serif;font-size:10.0pt">Key Responsibilities:</span></strong></p><ul><li><span style="font-family:arial, helvetica, sans-serif;font-size:10.0pt">Configure and tune cloud-native and third-party threat detection platforms across multi-cloud environments.</span></li><li><span style="font-family:arial, helvetica, sans-serif;font-size:10.0pt">Configure and manage Web Application Firewalls (WAFs) to protect against OWASP Top 10 threats and emerging attack vectors.</span></li><li><span style="font-family:arial, helvetica, sans-serif;font-size:10.0pt">Provide subject matter expertise during incident escalation and ability to triage and lead major incident manage calls related to potential availability investigations</span></li><li><span style="font-family:arial, helvetica, sans-serif;font-size:10.0pt">Conduct deep packet inspection and network traffic analysis using tools like Wireshark, Tcpdump, and cloud-native telemetry.</span></li><li><span style="font-family:arial, helvetica, sans-serif;font-size:10.0pt">Develop and implement bot detection and mitigation strategies using behavioral analytics and ML-based tools.</span></li><li><span style="font-family:arial, helvetica, sans-serif;font-size:10.0pt">Align detection frameworks with MITRE ATT&CK, NIST SP 800-53, CIS Benchmarks, and CSA CCM.</span></li><li><span style="font-family:arial, helvetica, sans-serif;font-size:10.0pt">Partner with SIEM and SOAR teams for automated alerting, investigation, and response.</span></li><li><span style="font-family:arial, helvetica, sans-serif;font-size:10.0pt">Provide technical leadership and mentorship to SOC analysts and engineering teams.</span></li></ul><p> </p><p><strong><span style="font-family:arial, helvetica, sans-serif;font-size:10.0pt">Required Skills & Abilities:</span></strong></p><ul><li><span style="font-family:arial, helvetica, sans-serif;font-size:10.0pt">Deep expertise in cloud security across AWS, Azure, GCP, and OCI.</span></li><li><span style="font-family:arial, helvetica, sans-serif;font-size:10.0pt">Hands-on experience with WAFs (e.g., AWS WAF, Azure Front Door, Akamai, Imperva).</span></li><li><span style="font-family:arial, helvetica, sans-serif;font-size:10.0pt">Proficiency in network traffic analysis and anomaly detection.</span></li><li><span style="font-family:arial, helvetica, sans-serif;font-size:10.0pt">Strong understanding of bot behavior, detection techniques, and mitigation tools.</span></li><li><span style="font-family:arial, helvetica, sans-serif;font-size:10.0pt">Familiarity with SIEM platforms (e.g., Splunk, Elastic, Sentinel) and SOAR tools (e.g., Tines, Cortex XSOAR).</span></li><li><span style="font-family:arial, helvetica, sans-serif;font-size:10.0pt">Knowledge of threat intelligence platforms and integration strategies.</span></li><li><span style="font-family:arial, helvetica, sans-serif;font-size:10.0pt">Experience with scripting (Python, Bash, PowerShell) for automation and data parsing.</span></li><li><span style="font-family:arial, helvetica, sans-serif;font-size:10.0pt">Strong analytical and forensic investigation skills.</span></li><li><span style="font-family:arial, helvetica, sans-serif;font-size:10.0pt">Excellent communication and documentation abilities.</span></li><li><span style="font-family:arial, helvetica, sans-serif;font-size:10.0pt">Certifications such as GIAC Cloud Threat Detection (GCTD), GIAC Network Forensic Analyst (GNFA), Security specialization for major cloud platforms such as AWS, GCP, Azure, OCI.</span></li></ul><p> </p><p><span style="font-family:Arial, Helvetica, sans-serif"><span style="font-size:11.0px"><b>EY | Building a better working world </b></span></span></p><p><br><span style="font-family:Arial, Helvetica, sans-serif"><span style="font-size:11.0px"> <br>EY exists to build a better working world, helping to create long-term value for clients, people and society and build trust in the capital markets. </span></span></p><p><br><span style="font-family:Arial, Helvetica, sans-serif"><span style="font-size:11.0px"> <br>Enabled by data and technology, diverse EY teams in over 150 countries provide trust through assurance and help clients grow, transform and operate. </span></span></p><p><br><span style="font-family:Arial, Helvetica, sans-serif"><span style="font-size:11.0px"> <br>Working across assurance, consulting, law, strategy, tax and transactions, EY teams ask better questions to find new answers for the complex issues facing our world today. </span></span></p>