Cyber - Enterprise Security Architect - Manager - Consulting

Ernst & Young LLP
Los Angeles, CA, United States
8 days ago
Apply on www.beyondlosangeles.com
Prepare application

Role details

Contract type
Permanent contract
Employment type
Full-time (> 32 hours)
Experience level
Experienced
Experience required
4 years minimum
Compensation
$173,900.0 - $290,100.0
Working hours
Regular working hours

Tech stack

Amazon Web Services Microsoft Azure Cloud Computing Cloud Computing Security Cyber Security Information Systems Information Leak Prevention Infrastructure as a Service (IaaS) Identity and Access Management Network Security Platform as a Service (PAAS) PCI Data Security Standards
+13 more
Program Design Languages Systems Development Life Cycle Zero Trust Network Access Sherwood Applied Business Security Architecture Security Information and Event Management Software Engineering Data Classification Software Security Togaf Information Technology CIS Benchmarks Devsecops Security Orchestration, Automation & Response

Job description

As a Manager on the Enterprise Security Architecture team, you will lead and manage security architecture engagements across a range of industries. You will oversee security architecture assessments, direct future-state architecture design initiatives, and guide clients through the development of architecture standards, governance frameworks, and security patterns that embed security into technology and business change programs. You will work closely with client leadership-including CISOs, enterprise architects, and technology executives-to evaluate security posture across network, cloud, application, data, and identity domains, facilitate architecture review sessions, and translate technical findings into prioritized, executive-ready recommendations. You will provide hands-on direction across Zero Trust architecture programs, cloud security design, and DevSecOps integration initiatives, ensuring that security architecture decisions are grounded in both technical rigor and business context.

As a Manager, you will be responsible for managing engagement workstreams, leading and mentoring teams of Senior Consultants and Consultants, and delivering high-quality client service within established timelines and budgets. You will monitor developments across the security architecture landscape-including emerging threats, evolving cloud security capabilities, and regulatory requirements-and translate insights into actionable guidance for clients and EY’s practice. In addition, you will contribute to business development activities, including proposal development, client presentations, thought leadership and account growth initiatives, and collaborate with professionals across EY’s Cyber and broader technology capabilities to deliver integrated, cross-disciplinary client solutions.

Requirements

  • Deep knowledge of enterprise security architecture principles, patterns, and frameworks, with the ability to lead design initiatives across network, cloud, application, data, identity, and endpoint security domains.
  • Ability to work closely with Senior Managers, Partners, and client executives to define engagement scope, manage expectations, and deliver successful architecture outcomes.
  • Experience advising organizations on security architecture strategy, Zero Trust program design, cloud security architecture, and security governance.
  • Hands-on familiarity with security architecture tooling-including architecture modeling platforms, threat modeling tools, and cloud-native security services-with the ability to guide technical teams in their application.
  • Ability to deliver high-quality work products within budget and established deadlines.
  • Strong analytical, problem-solving, and critical-thinking skills applied to complex security architecture challenges.
  • Ability to communicate technical architecture concepts clearly to both engineering teams and executive audiences.
  • Strong presentation, facilitation, and stakeholder management skills, including experience leading architecture review board sessions and executive workshops.
  • Experience leading and developing teams in a collaborative, fast-paced consulting environment.
  • Commitment to quality, continuous learning, and staying current with an evolving technology and threat landscape.

To Qualify for the Role, You Must Have

  • A bachelor’s degree in Cybersecurity, Computer Science, Information Systems, Engineering, or a related field, and approximately 5+ years of relevant experience; or a graduate degree and approximately 4+ years of relevant experience.
  • Experience in one or more of the following areas:
  • Enterprise security architecture assessments and future-state architecture design
  • Network security architecture, including segmentation, secure access, and perimeter design
  • Cloud security architecture across AWS, Azure, or GCP, including IaaS, PaaS, and SaaS security
  • Identity and access management architecture, including Zero Trust and privileged access design
  • Application security architecture, secure SDLC, and DevSecOps integration
  • Data protection architecture, including encryption, data classification, and data loss prevention
  • Security architecture governance, standards development, and architecture review processes
  • Knowledge of cybersecurity frameworks and standards, including NIST CSF, NIST 800-53, ISO 27001/27002, CIS Controls, and SABSA.
  • Experience supporting or leading client-facing security architecture engagements, including architecture assessments, design workshops, and executive reporting.
  • Strong written, verbal, and presentation skills.
  • Willingness to travel based on client and business needs; travel estimated at 25-50%.

Ideally, You’ll Also Have

  • Professional certifications such as CISSP, CCSP, SABSA Chartered Architect (SCF/SCM), TOGAF, or other relevant security architecture credentials.
  • Hands-on experience with security architecture tooling, including architecture modeling platforms, threat modeling tools, and cloud-native security services.
  • Experience designing and implementing Zero Trust architectures, including microsegmentation, identity-centric access, and continuous verification models.
  • Knowledge of security technology domains-including SIEM, SOAR, EDR/XDR, PAM, IAM, CNAPP, and CASB-with the ability to assess and guide architectural fit within complex enterprise environments.
  • Exposure to regulatory and compliance requirements-such as HIPAA, PCI DSS, FISMA, GDPR, or NYDFS-and their implications for security architecture strategy and design.
  • Experience facilitating executive workshops, client steering committees, and architecture review board engagements.
  • Background in software development, infrastructure engineering, or network engineering that informs deep technical architecture credibility.
  • Consulting experience within a professional services environment, with a track record of managing client relationships and leading engagement delivery.
  • Knowledge of regulated industries such as financial services, healthcare, life sciences, government, or critical infrastructure., We seek professionals who combine deep technical security architecture expertise with strong consulting and leadership capabilities. The ideal candidate can build trusted relationships with client executives, direct technically sophisticated teams across complex architecture engagements, and deliver practical, well-grounded recommendations that strengthen enterprise security and enable business outcomes. Successful candidates bring the hands-on architecture credibility to engage meaningfully with engineering and technology teams alongside the communication skills and business acumen to advise at the executive level-and the drive to help EY build a market-leading Enterprise Security Architecture practice.

Benefits & conditions

  • New York City, Boston, and Washington DC Metro Areas, Washington State, and Southern California offices - $173,900 to $290,100
  • Bay Area California offices - $181,200 to $302,100
  • All other offices locations in the US, including Sacramento - $144,900 to $265,800
  • Individual salaries within these ranges are determined through a wide variety of factors including but not limited to education, experience, knowledge, skills and geography. In addition, our Total Rewards package includes medical and dental coverage, pension and 401(k) plans, and a wide range of paid time off options.

About the company

We’ll help you succeed in a globally connected powerhouse of diverse teams and take your career wherever you want it to go. Join EY and help to build a better working world., * At EY, our values set the foundation for how we work and the behaviors we expect of our people. Any misrepresentation or falsification of information or lack of integrity at any point in the recruiting process may result in withdrawal of your candidacy, revocation of an offer or immediate termination of employment.

EY Building a better working world

EY is building a better working world by creating new value for clients, people, society and the planet, while building trust in capital markets.

Enabled by data, AI and advanced technology, EY teams help clients shape the future with confidence and develop answers for the most pressing issues of today and tomorrow.

EY teams work across a full spectrum of services in assurance, consulting, tax, strategy and transactions. Fueled by sector insights, a globally connected, multi-disciplinary network and diverse ecosystem partners, EY teams can provide services in more than 150 countries and territories.

Apply for this position

This job is hosted externally. Click below to view the full posting and apply.

Apply on www.beyondlosangeles.com
Prepare application

Good distractions

Talks and stories from around this role — technically off-topic, practically not.

4:01 min

Finding personal fulfillment in the cybersecurity industry

LIVE

4:11 min

Introduction to cloud-native application developer security

Micah Silverman · World Congress 2022

1:15 min

Key lessons learned from implementing automated mobile DevSecOps

Moataz Nabil Moataz Nabil · LIVE

1:24 min

Evaluating formal AWS certifications versus raw practical engineering experience

Jan Giacomelli · LIVE

3:44 min

Current industry adoption and future security initiatives

Alexander Allmendinger · LIVE

2:09 min

Shifting security left using the DevSecOps approach

Aarno Aukia · LIVE

Videos

See all

Related articles

See all