JobHabor

CASB - Senior Associate

KPMG Global Services
Location
Noida, Uttar Pradesh, India
Workplace
Employment
Full Time
Salary
Apply on the employer’s site

Posted 17d ago

Educational qualifications

  • Bachelor’s degree in Computer Science, Information Security, Information Technology, or a related field.
  • Master’s degree in Cybersecurity, Cloud Computing, or Information Systems is preferred.
  • Equivalent practical experience may be considered for exceptional candidates.

Work experience

  • 5–7 years of hands‑on experience in Cloud Security, Information Security, or Security Operations roles.

Deep, proven experience working with

  • Microsoft Defender for Cloud Apps (Microsoft CASB / MCAS)

Netskope Security Cloud / Netskope CASB

  • Experience architecting, implementing, tuning, and maintaining CASB solutions at scale.

Hands‑on involvement with CASB

  • Policy configuration (DLP, Access Control, Threat Protection)
  • API integrations with SaaS applications
  • Cloud app discovery and Shadow IT governance
  • Session controls and conditional access workflows
  • Experience working with SIEM tools (Microsoft Sentinel, Splunk, etc.) and integrating CASB logs.
  • Involvement in cloud security incident detection, investigation, response, and reporting.
  • Exposure to Cloud Security Posture Management (CSPM) tools and identity security solutions (Entra ID/Azure AD).

The ideal candidate will

  • Demonstrate expert-level understanding of cloud application security, SaaS risk assessment, data protection, and Zero Trust principles.
  • Be able to design and mature

CASB frameworks, including

  • Cloud governance workflows
  • Risk‑based access enforcement
  • Data classification and DLP tuning
  • Provide leadership in CASB strategy, working with architecture and compliance teams.
  • Drive improvements in cloud security posture using actionable insights and metrics.
  • Conduct advanced investigations of cloud‑based threats, anomalies, and suspicious access behavior.
  • Produce detailed documentation, SOPs, runbooks, and executive-level reports.
  • Champion continuous improvement, automation, and best practices across cloud security operations.

Mandatory Certification Required

(At least one required; multiple strongly preferred)

Core Certifications

  • Microsoft SC-200 – Security Operations Analyst
  • Microsoft SC-400 – Information Protection Administrator

Netskope Certified Cloud Security Administrator (NCCSA)

CCSK – Certificate of Cloud Security Knowledge

Preferred Advanced Certifications

CCSP – Certified Cloud Security Professional

CISSP – Certified Information Systems Security Professional

AZ-500 – Microsoft Azure Security Engineer

Netskope Certified Cloud Security Specialist (NCCSS)

Technical Skills Required

CASB Technologies

Expert-level skills in

o

Microsoft Defender for Cloud Apps (MCAS)

o

Netskope CASB and Netskope NewEdge Platform

Ability to configure and optimize

oDLP policies

oAccess and session controls

oDiscovery dashboards and custom reports

oAPI and real-time inline controls

  • Strong knowledge of Shadow IT governance and SaaS risk scoring.

Technical Skills Required

Cloud & Identity Security

Strong understanding of

o

Azure AD / Entra ID

oConditional Access

oIdentity Governance

oOAuth, SAML, SCIM, and modern authentication protocols

  • General understanding of AWS and GCP security features is beneficial.

Security Operations & Analytics

Experience with SIEM platforms such as

o

Microsoft Sentinel, Splunk, or equivalent

  • Strong log analysis, threat detection, correlation, and incident handling skills.
  • Knowledge of integration between CASB, DLP, EDR, and SOAR platforms.

Networking & Architecture

Understanding of

oZero Trust architecture

oSASE components

oSSL/TLS inspection

oReverse proxy technologies

oAPI security and cloud architecture principles

Behavioral / team skills

  • Strong communication and stakeholder management skills, including ability to explain complex security concepts in simple terms.
  • Analytical mindset with strong problem‑solving and decision‑making skills.
  • High level of ownership, accountability, and attention to detail.
  • Ability to handle multiple priorities in fast‑paced cloud and security environments.
  • Collaborative mindset with a willingness to mentor junior team members.
  • Proactive, structured, and self-driven approach to work.
  • Strong documentation and presentation abilities.

Educational qualifications

  • Bachelor’s degree in Computer Science, Information Security, Information Technology, or a related field.
  • Master’s degree in Cybersecurity, Cloud Computing, or Information Systems is preferred.
  • Equivalent practical experience may be considered for exceptional candidates.

Work experience

  • 5–7 years of hands‑on experience in Cloud Security, Information Security, or Security Operations roles.

Deep, proven experience working with

  • Microsoft Defender for Cloud Apps (Microsoft CASB / MCAS)

Netskope Security Cloud / Netskope CASB

  • Experience architecting, implementing, tuning, and maintaining CASB solutions at scale.

Hands‑on involvement with CASB

  • Policy configuration (DLP, Access Control, Threat Protection)
  • API integrations with SaaS applications
  • Cloud app discovery and Shadow IT governance
  • Session controls and conditional access workflows
  • Experience working with SIEM tools (Microsoft Sentinel, Splunk, etc.) and integrating CASB logs.
  • Involvement in cloud security incident detection, investigation, response, and reporting.
  • Exposure to Cloud Security Posture Management (CSPM) tools and identity security solutions (Entra ID/Azure AD).

The ideal candidate will

  • Demonstrate expert-level understanding of cloud application security, SaaS risk assessment, data protection, and Zero Trust principles.
  • Be able to design and mature

CASB frameworks, including

  • Cloud governance workflows
  • Risk‑based access enforcement
  • Data classification and DLP tuning
  • Provide leadership in CASB strategy, working with architecture and compliance teams.
  • Drive improvements in cloud security posture using actionable insights and metrics.
  • Conduct advanced investigations of cloud‑based threats, anomalies, and suspicious access behavior.
  • Produce detailed documentation, SOPs, runbooks, and executive-level reports.
  • Champion continuous improvement, automation, and best practices across cloud security operations.

Mandatory Certification Required

(At least one required; multiple strongly preferred)

Core Certifications

  • Microsoft SC-200 – Security Operations Analyst
  • Microsoft SC-400 – Information Protection Administrator

Netskope Certified Cloud Security Administrator (NCCSA)

CCSK – Certificate of Cloud Security Knowledge

Preferred Advanced Certifications

CCSP – Certified Cloud Security Professional

CISSP – Certified Information Systems Security Professional

AZ-500 – Microsoft Azure Security Engineer

Netskope Certified Cloud Security Specialist (NCCSS)

Technical Skills Required

CASB Technologies

Expert-level skills in

o

Microsoft Defender for Cloud Apps (MCAS)

o

Netskope CASB and Netskope NewEdge Platform

Ability to configure and optimize

oDLP policies

oAccess and session controls

oDiscovery dashboards and custom reports

oAPI and real-time inline controls

  • Strong knowledge of Shadow IT governance and SaaS risk scoring.

Technical Skills Required

Cloud & Identity Security

Strong understanding of

o

Azure AD / Entra ID

oConditional Access

oIdentity Governance

oOAuth, SAML, SCIM, and modern authentication protocols

  • General understanding of AWS and GCP security features is beneficial.

Security Operations & Analytics

Experience with SIEM platforms such as

o

Microsoft Sentinel, Splunk, or equivalent

  • Strong log analysis, threat detection, correlation, and incident handling skills.
  • Knowledge of integration between CASB, DLP, EDR, and SOAR platforms.

Networking & Architecture

Understanding of

oZero Trust architecture

oSASE components

oSSL/TLS inspection

oReverse proxy technologies

oAPI security and cloud architecture principles

Behavioral / team skills

  • Strong communication and stakeholder management skills, including ability to explain complex security concepts in simple terms.
  • Analytical mindset with strong problem‑solving and decision‑making skills.
  • High level of ownership, accountability, and attention to detail.
  • Ability to handle multiple priorities in fast‑paced cloud and security environments.
  • Collaborative mindset with a willingness to mentor junior team members.
  • Proactive, structured, and self-driven approach to work.
  • Strong documentation and presentation abilities.

Educational qualifications

  • Bachelor’s degree in Computer Science, Information Security, Information Technology, or a related field.
  • Master’s degree in Cybersecurity, Cloud Computing, or Information Systems is preferred.
  • Equivalent practical experience may be considered for exceptional candidates.

Work experience

  • 5–7 years of hands‑on experience in Cloud Security, Information Security, or Security Operations roles.

Deep, proven experience working with

  • Microsoft Defender for Cloud Apps (Microsoft CASB / MCAS)

Netskope Security Cloud / Netskope CASB

  • Experience architecting, implementing, tuning, and maintaining CASB solutions at scale.

Hands‑on involvement with CASB

  • Policy configuration (DLP, Access Control, Threat Protection)
  • API integrations with SaaS applications
  • Cloud app discovery and Shadow IT governance
  • Session controls and conditional access workflows
  • Experience working with SIEM tools (Microsoft Sentinel, Splunk, etc.) and integrating CASB logs.
  • Involvement in cloud security incident detection, investigation, response, and reporting.
  • Exposure to Cloud Security Posture Management (CSPM) tools and identity security solutions (Entra ID/Azure AD).

The ideal candidate will

  • Demonstrate expert-level understanding of cloud application security, SaaS risk assessment, data protection, and Zero Trust principles.
  • Be able to design and mature

CASB frameworks, including

  • Cloud governance workflows
  • Risk‑based access enforcement
  • Data classification and DLP tuning
  • Provide leadership in CASB strategy, working with architecture and compliance teams.
  • Drive improvements in cloud security posture using actionable insights and metrics.
  • Conduct advanced investigations of cloud‑based threats, anomalies, and suspicious access behavior.
  • Produce detailed documentation, SOPs, runbooks, and executive-level reports.
  • Champion continuous improvement, automation, and best practices across cloud security operations.

Mandatory Certification Required

(At least one required; multiple strongly preferred)

Core Certifications

  • Microsoft SC-200 – Security Operations Analyst
  • Microsoft SC-400 – Information Protection Administrator

Netskope Certified Cloud Security Administrator (NCCSA)

CCSK – Certificate of Cloud Security Knowledge

Preferred Advanced Certifications

CCSP – Certified Cloud Security Professional

CISSP – Certified Information Systems Security Professional

AZ-500 – Microsoft Azure Security Engineer

Netskope Certified Cloud Security Specialist (NCCSS)

Technical Skills Required

CASB Technologies

Expert-level skills in

o

Microsoft Defender for Cloud Apps (MCAS)

o

Netskope CASB and Netskope NewEdge Platform

Ability to configure and optimize

oDLP policies

oAccess and session controls

oDiscovery dashboards and custom reports

oAPI and real-time inline controls

  • Strong knowledge of Shadow IT governance and SaaS risk scoring.

Technical Skills Required

Cloud & Identity Security

Strong understanding of

o

Azure AD / Entra ID

oConditional Access

oIdentity Governance

oOAuth, SAML, SCIM, and modern authentication protocols

  • General understanding of AWS and GCP security features is beneficial.

Security Operations & Analytics

Experience with SIEM platforms such as

o

Microsoft Sentinel, Splunk, or equivalent

  • Strong log analysis, threat detection, correlation, and incident handling skills.
  • Knowledge of integration between CASB, DLP, EDR, and SOAR platforms.

Networking & Architecture

Understanding of

oZero Trust architecture

oSASE components

oSSL/TLS inspection

oReverse proxy technologies

oAPI security and cloud architecture principles

Behavioral / team skills

  • Strong communication and stakeholder management skills, including ability to explain complex security concepts in simple terms.
  • Analytical mindset with strong problem‑solving and decision‑making skills.
  • High level of ownership, accountability, and attention to detail.
  • Ability to handle multiple priorities in fast‑paced cloud and security environments.
  • Collaborative mindset with a willingness to mentor junior team members.
  • Proactive, structured, and self-driven approach to work.
  • Strong documentation and presentation abilities.

Skills

  • Microsoft Defender
  • SIEM
  • Splunk
  • Microsoft Entra ID
  • Zero Trust
  • SOPS
  • CISSP
  • Azure
  • SAML
  • SCIM
  • AWS
  • GCP
  • EDR
  • TLS

More jobs at KPMG Global Services

All 141

Similar roles