Cyber as a Service, Device Management Senior Associate
Company: PwC
We are a community of solvers combining human ingenuity, experience, and technology innovation to help organisations build trust and deliver sustained outcomes.
Line of Service: Advisory
Industry/Sector: Not Applicable
Specialism: Managed Services
Management Level: Senior Manager
Job Description & Summary: A career within Cybersecurity and Privacy services will provide you with the opportunity to help our clients implement an effective cybersecurity programme that protects against threats, propels transformation, and drives growth.
Meaningful work you’ll be part of: As a Cyber as a Service, Device Management Senior Associate, you’ll work as part of a team of problem solvers, helping to solve business issues, deliver high-quality client service, and operational efficiency. Responsibilities include but are not limited to:
- Continuously monitor the health of security and data protection systems, taking appropriate actions to ensure their optimal performance.
- Integrate new data sources into security and data protection platforms.
- Provide troubleshooting and support for configurations and management of security and data protection systems.
- Ensure systems are patched and updated to meet security requirements, maintaining optimal performance and compliance.
- Be available for on-call rotation to address urgent data protection issues and incidents.
- Build and maintain Standard Operating Procedures (SOP), Current State Assessments (CSA), and runbooks for documentation purposes.
- Create and tune policies, enforce policies and best practices, ensuring compliance with industry standards and regulatory requirements.
- Manage and optimize tools and technologies to ensure they are effectively configured, tuned, and updated to protect against emerging threats.
- Understand and maintain security platforms, ensuring they are used to their full potential.
- Work closely with client focal points to provide regular updates (weekly/monthly/quarterly).
- Coordinate with internal and external stakeholders, building and maintaining positive working relationships.
- Provide knowledge transfer sessions to peers and client personnel as required.
- Stay up to date on the latest trends, threats, and techniques. Conduct research and evaluate new tools and technologies to enhance the organization's security capabilities.
- Lead or participate in incident response activities, including investigating incidents containing threats, and coordinating with other teams for timely resolution.
- Ensure the identification, assessment, reporting, communication, mitigation, and monitoring of security incidents.
Experiences and skills you’ll use to solve:
- Experience in security device management including SIEM, EDR, DLP platforms and/or other security devices including Firewall, Proxy, Email Security, and other security technologies.
- Technical and hands-on experience with two or more of the following technologies: Splunk, Azure Sentinel, QRadar, Arcsight, Proofpoint, McAfee Endpoint Protection, Checkpoint, CrowdStrike, Microsoft Purview, Microsoft AIP, Microsoft Defender for Cloud Apps.
- Experience working in a MSSP and/or SOC environment.
- Industry certifications from Palo Alto, Microsoft Azure/AWS, Microsoft DLP/AIP are a strong asset.
- Technical designations such as CISSP, CISA, CISM, OSCP, CEH, ECSA, GPEN, GWAPT will be considered an advantage.
- Consulting experience in a Big 4 or similar is an asset.
- A bachelor's degree in a relevant field is often preferred, such as Computer Science, Information Technology, Cybersecurity, or a related discipline.
- Minimum 3 years of hands-on experience with two or more of the following technologies including EDR, DP, SIEM, and Network Security.
- Strong analytical and problem-solving skills.
- Excellent communication and interpersonal skills.
- Familiarity with cloud security and virtualization technologies.
- Monitor and operate systems to ensure overall device performance and high availability.
- Oversee device configuration management to ensure proper setup and maintenance.
- Create reports and dashboards on respective platforms for operational analysis.
Good-to-Have Skills:
- Experience with multiple technologies including SIEM, EDR, DLP, and Network Security.
- Serve as a Subject Matter Expert (SME) for EDR, DP, SIEM, and Network Security (Firewall/WAF/Proxy) categories.
- Recommend and implement configuration enhancements and manage system capacity.
- Business continuity for client systems by maintaining robust protection measures.
- Awareness and adherence to relevant regulatory requirements such as HIPAA, GDPR, PCI-DSS, and others, maintaining compliance across all data protection activities.
- Project management experience.
Why you’ll love PwC: We’re inspiring and empowering our people to change the world. Powered by the latest technology, you’ll be a part of diverse teams helping public and private clients build trust and deliver sustained outcomes. This meaningful work, and our continuous development environment, will take your career to the next level. We reward your impact, and support your wellbeing, through a competitive compensation package, inclusive benefits, and flexibility programs that will help you thrive in work and life.
For more information about our Application Process and Total Rewards Package, visit https://jobs-ca.pwc.com/ca/en/life-at-pwc.
We’re committed to creating an equitable and inclusive community of solvers where everyone feels that they truly belong. If you require an accommodation to be at your best, please let us know during the application process.