Cyber Managed Services - Vulnerability Management SDC - Senior
Listed on 2026-02-28
-
IT/Tech
Cybersecurity, IT Consultant
Location:
Anywhere in Country
At EY, we’re all in to shape your future with confidence.
We’ll help you succeed in a globally connected powerhouse of diverse teams and take your career wherever you want it to go. Join EY and help to build a better working world.
At EY, you will have the chance to build a career as unique as you are, with the global scale, support, inclusive culture, and technology to become the best version of you. And we’re counting on your unique voice and perspective to help EY become even better, too. Join us and build an exceptional experience for yourself, and a better working world for all.
EY s people in more than 150 countries are committed to operating with integrity, quality, and professionalism in the provision of audit, tax, transaction, and consulting services. We strive to help all our people achieve their professional and personal goals through an inclusive environment that values everyone s contributions, appreciates diversity of thought, fosters growth, and provides continuous opportunities for development.
Recognized as one of the top employers, EY continually strives to be a great place to work.
We are seeking an experienced Vulnerability Management (VM) Cyber Managed Services Senior to join our team in designing, implementing, and managing our comprehensive vulnerability management service offering. The ideal candidate will have a strong background in vulnerability management tools and services and experience working within a team of cybersecurity professionals. This role is pivotal in helping EY create tailored solutions for clients to deploy and run effective vulnerability management programs, combining technical expertise with an understanding of business risks.
YourKey Responsibilities
Developing rapport with others by demonstrating an understanding of their concerns, needs, and issues, and focusing on developing an internal network of relationships that can provide advice and support.
Monitor progress, manage risk, and ensure key stakeholders are kept informed about progress and expected outcomes.
Stay abreast of current business and industry trends relevant to the client s business and cybersecurity.
Assist engagement teams in evaluating client vulnerability management programs across people, process, and technology.
Work with engagement teams to own distinct portions of vulnerability management solutions tailored to client environments.
Perform and control vulnerability assessments to identify control weaknesses and assess the effectiveness of existing controls.
Support ongoing vulnerability management operations, including SLA tracking, backlog management, and remediation validation
Contribute to continuous service improvement by refining workflows, metrics, and automation across VM operations
Participate in operational governance activities, including service reviews and KPI reporting
Familiarity with security and risk standards including ISO 27001-2, CIS, PCI DSS, NIST, ITIL, COBIT.
Knowledge of Windows, Linux, UNIX, and any other major on-prem and cloud based operating systems.
Hands-on operational experience with vulnerability management tools (e.g., Qualys, Nexpose, Wiz), including the ability to deploy, configure and run these tools.
Ability to evaluate vulnerability management tools and assist with vendor selection.
Ability to conduct root cause analysis against vulnerabilities and determine feasible technical solutions.
Knowledge of general cybersecurity concepts and methods including, but not limited to vulnerability management, privacy, incident response, governance, risk and compliance, enterprise security strategies and architecture.
Ability to help manage cybersecurity projects including development of project charters, plans and status updates.
Experience with scripting / programming skills (e.g., Python, Power Shell).
Experience with utilizing Microsoft Excel and/or Power Bi to develop vulnerability management program metrics.
Familiarity with latest security vulnerabilities and exploits, understanding of web-based application vulnerabilities (OWASP Top 10), cloud security and architecture.
Experience with…
(If this job is in fact in your jurisdiction, then you may be using a Proxy or VPN to access this site, and to progress further, you should change your connectivity to another mobile device or PC).