Source description
About the role
At EY, youll have the chance to build a career as unique as you are, with the global scale, support, inclusive culture and technology to become the best version of you. And were counting on your unique voice and perspective to help EY become even better, too. Join us and build an exceptional experience for yourself, and a better working world for all. CMS- Cloud Security Manager Responsibilities Perform end-to-end investigations for Defender for Cloud alerts: scoping affected resources, identifying likely attack vectors, and recommending containment steps. Correlate workload detections with posture context to identify systemic misconfigurations driving risk. Troubleshoot AWS connector data gaps (permissions, connector health, plan prerequisites) and document resolution steps. Understand the AWS connector auth model (federated trust and short-lived credentials) to support secure onboarding and triage. Drive remediation execution with client teams: validate fixes, confirm risk reduction, manage exceptions (time-bound), and tune operational noise. Identify recurring issues and propose new detections/playbooks, improved routing, and better enrichment. Required Strong Azure and AWS operational fluency: AWS: IAM, EC2/EKS basics, security logging concepts, CloudFormation familiarity (for onboarding patterns) Ability to explain and operate posture management: secure score, recommendations, compliance posture, and remediation workflow. Incident handling discipline: containment/eradication guidance, stakeholder communications, and post-incident documentation. Handson experience with CSPM tools (Defender/Wiz/AWS Security Hub etc). Preferred Requirements Minimum 8+ years of Cloud technology, specifically in Security engineering, or Security Architecture roles Experience designing/tuning SOC playbooks for cloud detection and posture workflows. Familiarity with automation (Logic Apps/SOAR patterns) and integrating CNAPP events into SIEM/SOAR pipelines. SC-200 + AZ-500 (preferred), AWS Security Specialty, GIAC Cloud (GCLD) or similar. EY | Building a better working world At EY, youll have the chance to build a career as unique as you are, with the global scale, support, inclusive culture and technology to become the best version of you. And were counting on your unique voice and perspective to help EY become even better, too. Join us and build an exceptional experience for yourself, and a better working world for all. CMS- Cloud Security Manager Responsibilities Perform end-to-end investigations for Defender for Cloud alerts: scoping affected resources, identifying likely attack vectors, and recommending containment steps. Correlate workload detections with posture context to identify systemic misconfigurations driving risk. Troubleshoot AWS connector data gaps (permissions, connector health, plan prerequisites) and document resolution steps. Understand the AWS connector auth model (federated trust and short-lived credentials) to support secure onboarding and triage. Drive remediation execution with client teams: validate fixes, confirm risk reduction, manage exceptions (time-bound), and tune operational noise. Identify recurring issues and propose new detections/playbooks, improved routing, and better enrichment. Required Strong Azure and AWS operational fluency: AWS: IAM, EC2/EKS basics, security logging concepts, CloudFormation familiarity (for onboarding patterns) Ability to explain and operate posture management: secure score, recommendations, compliance posture, and remediation workflow. Incident handling discipline: containment/eradication guidance, stakeholder communications, and post-incident documentation. Handson experience with CSPM tools (Defender/Wiz/AWS Security Hub etc). Preferred Requirements Minimum 8+ years of Cloud technology, specifically in Security engineering, or Security Architecture roles Experience designing/tuning SOC playbooks for cloud detection and posture workflows. Familiarity with automation (Logic Apps/SOAR patterns) and integrating CNAPP events into SIEM/SOAR pipelines. SC-200 + AZ-500 (preferred), AWS Security Specialty, GIAC Cloud (GCLD) or similar. EY | Building a better working world
More at Ernst & Young Advisory Services Sdn Bhd