CASB - Senior Associate
KPMG Global Services- Location
- Noida, Uttar Pradesh, India
- Workplace
- —
- Employment
- Full Time
- Salary
- —
Posted 17d ago
Educational qualifications
- Bachelor’s degree in Computer Science, Information Security, Information Technology, or a related field.
- Master’s degree in Cybersecurity, Cloud Computing, or Information Systems is preferred.
- Equivalent practical experience may be considered for exceptional candidates.
Work experience
- 5–7 years of hands‑on experience in Cloud Security, Information Security, or Security Operations roles.
Deep, proven experience working with
- Microsoft Defender for Cloud Apps (Microsoft CASB / MCAS)
Netskope Security Cloud / Netskope CASB
- Experience architecting, implementing, tuning, and maintaining CASB solutions at scale.
Hands‑on involvement with CASB
- Policy configuration (DLP, Access Control, Threat Protection)
- API integrations with SaaS applications
- Cloud app discovery and Shadow IT governance
- Session controls and conditional access workflows
- Experience working with SIEM tools (Microsoft Sentinel, Splunk, etc.) and integrating CASB logs.
- Involvement in cloud security incident detection, investigation, response, and reporting.
- Exposure to Cloud Security Posture Management (CSPM) tools and identity security solutions (Entra ID/Azure AD).
The ideal candidate will
- Demonstrate expert-level understanding of cloud application security, SaaS risk assessment, data protection, and Zero Trust principles.
- Be able to design and mature
CASB frameworks, including
- Cloud governance workflows
- Risk‑based access enforcement
- Data classification and DLP tuning
- Provide leadership in CASB strategy, working with architecture and compliance teams.
- Drive improvements in cloud security posture using actionable insights and metrics.
- Conduct advanced investigations of cloud‑based threats, anomalies, and suspicious access behavior.
- Produce detailed documentation, SOPs, runbooks, and executive-level reports.
- Champion continuous improvement, automation, and best practices across cloud security operations.
Mandatory Certification Required
(At least one required; multiple strongly preferred)
Core Certifications
- Microsoft SC-200 – Security Operations Analyst
- Microsoft SC-400 – Information Protection Administrator
Netskope Certified Cloud Security Administrator (NCCSA)
CCSK – Certificate of Cloud Security Knowledge
Preferred Advanced Certifications
CCSP – Certified Cloud Security Professional
CISSP – Certified Information Systems Security Professional
AZ-500 – Microsoft Azure Security Engineer
Netskope Certified Cloud Security Specialist (NCCSS)
Technical Skills Required
CASB Technologies
Expert-level skills in
o
Microsoft Defender for Cloud Apps (MCAS)
o
Netskope CASB and Netskope NewEdge Platform
Ability to configure and optimize
oDLP policies
oAccess and session controls
oDiscovery dashboards and custom reports
oAPI and real-time inline controls
- Strong knowledge of Shadow IT governance and SaaS risk scoring.
Technical Skills Required
Cloud & Identity Security
Strong understanding of
o
Azure AD / Entra ID
oConditional Access
oIdentity Governance
oOAuth, SAML, SCIM, and modern authentication protocols
- General understanding of AWS and GCP security features is beneficial.
Security Operations & Analytics
Experience with SIEM platforms such as
o
Microsoft Sentinel, Splunk, or equivalent
- Strong log analysis, threat detection, correlation, and incident handling skills.
- Knowledge of integration between CASB, DLP, EDR, and SOAR platforms.
Networking & Architecture
Understanding of
oZero Trust architecture
oSASE components
oSSL/TLS inspection
oReverse proxy technologies
oAPI security and cloud architecture principles
Behavioral / team skills
- Strong communication and stakeholder management skills, including ability to explain complex security concepts in simple terms.
- Analytical mindset with strong problem‑solving and decision‑making skills.
- High level of ownership, accountability, and attention to detail.
- Ability to handle multiple priorities in fast‑paced cloud and security environments.
- Collaborative mindset with a willingness to mentor junior team members.
- Proactive, structured, and self-driven approach to work.
- Strong documentation and presentation abilities.
Educational qualifications
- Bachelor’s degree in Computer Science, Information Security, Information Technology, or a related field.
- Master’s degree in Cybersecurity, Cloud Computing, or Information Systems is preferred.
- Equivalent practical experience may be considered for exceptional candidates.
Work experience
- 5–7 years of hands‑on experience in Cloud Security, Information Security, or Security Operations roles.
Deep, proven experience working with
- Microsoft Defender for Cloud Apps (Microsoft CASB / MCAS)
Netskope Security Cloud / Netskope CASB
- Experience architecting, implementing, tuning, and maintaining CASB solutions at scale.
Hands‑on involvement with CASB
- Policy configuration (DLP, Access Control, Threat Protection)
- API integrations with SaaS applications
- Cloud app discovery and Shadow IT governance
- Session controls and conditional access workflows
- Experience working with SIEM tools (Microsoft Sentinel, Splunk, etc.) and integrating CASB logs.
- Involvement in cloud security incident detection, investigation, response, and reporting.
- Exposure to Cloud Security Posture Management (CSPM) tools and identity security solutions (Entra ID/Azure AD).
The ideal candidate will
- Demonstrate expert-level understanding of cloud application security, SaaS risk assessment, data protection, and Zero Trust principles.
- Be able to design and mature
CASB frameworks, including
- Cloud governance workflows
- Risk‑based access enforcement
- Data classification and DLP tuning
- Provide leadership in CASB strategy, working with architecture and compliance teams.
- Drive improvements in cloud security posture using actionable insights and metrics.
- Conduct advanced investigations of cloud‑based threats, anomalies, and suspicious access behavior.
- Produce detailed documentation, SOPs, runbooks, and executive-level reports.
- Champion continuous improvement, automation, and best practices across cloud security operations.
Mandatory Certification Required
(At least one required; multiple strongly preferred)
Core Certifications
- Microsoft SC-200 – Security Operations Analyst
- Microsoft SC-400 – Information Protection Administrator
Netskope Certified Cloud Security Administrator (NCCSA)
CCSK – Certificate of Cloud Security Knowledge
Preferred Advanced Certifications
CCSP – Certified Cloud Security Professional
CISSP – Certified Information Systems Security Professional
AZ-500 – Microsoft Azure Security Engineer
Netskope Certified Cloud Security Specialist (NCCSS)
Technical Skills Required
CASB Technologies
Expert-level skills in
o
Microsoft Defender for Cloud Apps (MCAS)
o
Netskope CASB and Netskope NewEdge Platform
Ability to configure and optimize
oDLP policies
oAccess and session controls
oDiscovery dashboards and custom reports
oAPI and real-time inline controls
- Strong knowledge of Shadow IT governance and SaaS risk scoring.
Technical Skills Required
Cloud & Identity Security
Strong understanding of
o
Azure AD / Entra ID
oConditional Access
oIdentity Governance
oOAuth, SAML, SCIM, and modern authentication protocols
- General understanding of AWS and GCP security features is beneficial.
Security Operations & Analytics
Experience with SIEM platforms such as
o
Microsoft Sentinel, Splunk, or equivalent
- Strong log analysis, threat detection, correlation, and incident handling skills.
- Knowledge of integration between CASB, DLP, EDR, and SOAR platforms.
Networking & Architecture
Understanding of
oZero Trust architecture
oSASE components
oSSL/TLS inspection
oReverse proxy technologies
oAPI security and cloud architecture principles
Behavioral / team skills
- Strong communication and stakeholder management skills, including ability to explain complex security concepts in simple terms.
- Analytical mindset with strong problem‑solving and decision‑making skills.
- High level of ownership, accountability, and attention to detail.
- Ability to handle multiple priorities in fast‑paced cloud and security environments.
- Collaborative mindset with a willingness to mentor junior team members.
- Proactive, structured, and self-driven approach to work.
- Strong documentation and presentation abilities.
Educational qualifications
- Bachelor’s degree in Computer Science, Information Security, Information Technology, or a related field.
- Master’s degree in Cybersecurity, Cloud Computing, or Information Systems is preferred.
- Equivalent practical experience may be considered for exceptional candidates.
Work experience
- 5–7 years of hands‑on experience in Cloud Security, Information Security, or Security Operations roles.
Deep, proven experience working with
- Microsoft Defender for Cloud Apps (Microsoft CASB / MCAS)
Netskope Security Cloud / Netskope CASB
- Experience architecting, implementing, tuning, and maintaining CASB solutions at scale.
Hands‑on involvement with CASB
- Policy configuration (DLP, Access Control, Threat Protection)
- API integrations with SaaS applications
- Cloud app discovery and Shadow IT governance
- Session controls and conditional access workflows
- Experience working with SIEM tools (Microsoft Sentinel, Splunk, etc.) and integrating CASB logs.
- Involvement in cloud security incident detection, investigation, response, and reporting.
- Exposure to Cloud Security Posture Management (CSPM) tools and identity security solutions (Entra ID/Azure AD).
The ideal candidate will
- Demonstrate expert-level understanding of cloud application security, SaaS risk assessment, data protection, and Zero Trust principles.
- Be able to design and mature
CASB frameworks, including
- Cloud governance workflows
- Risk‑based access enforcement
- Data classification and DLP tuning
- Provide leadership in CASB strategy, working with architecture and compliance teams.
- Drive improvements in cloud security posture using actionable insights and metrics.
- Conduct advanced investigations of cloud‑based threats, anomalies, and suspicious access behavior.
- Produce detailed documentation, SOPs, runbooks, and executive-level reports.
- Champion continuous improvement, automation, and best practices across cloud security operations.
Mandatory Certification Required
(At least one required; multiple strongly preferred)
Core Certifications
- Microsoft SC-200 – Security Operations Analyst
- Microsoft SC-400 – Information Protection Administrator
Netskope Certified Cloud Security Administrator (NCCSA)
CCSK – Certificate of Cloud Security Knowledge
Preferred Advanced Certifications
CCSP – Certified Cloud Security Professional
CISSP – Certified Information Systems Security Professional
AZ-500 – Microsoft Azure Security Engineer
Netskope Certified Cloud Security Specialist (NCCSS)
Technical Skills Required
CASB Technologies
Expert-level skills in
o
Microsoft Defender for Cloud Apps (MCAS)
o
Netskope CASB and Netskope NewEdge Platform
Ability to configure and optimize
oDLP policies
oAccess and session controls
oDiscovery dashboards and custom reports
oAPI and real-time inline controls
- Strong knowledge of Shadow IT governance and SaaS risk scoring.
Technical Skills Required
Cloud & Identity Security
Strong understanding of
o
Azure AD / Entra ID
oConditional Access
oIdentity Governance
oOAuth, SAML, SCIM, and modern authentication protocols
- General understanding of AWS and GCP security features is beneficial.
Security Operations & Analytics
Experience with SIEM platforms such as
o
Microsoft Sentinel, Splunk, or equivalent
- Strong log analysis, threat detection, correlation, and incident handling skills.
- Knowledge of integration between CASB, DLP, EDR, and SOAR platforms.
Networking & Architecture
Understanding of
oZero Trust architecture
oSASE components
oSSL/TLS inspection
oReverse proxy technologies
oAPI security and cloud architecture principles
Behavioral / team skills
- Strong communication and stakeholder management skills, including ability to explain complex security concepts in simple terms.
- Analytical mindset with strong problem‑solving and decision‑making skills.
- High level of ownership, accountability, and attention to detail.
- Ability to handle multiple priorities in fast‑paced cloud and security environments.
- Collaborative mindset with a willingness to mentor junior team members.
- Proactive, structured, and self-driven approach to work.
- Strong documentation and presentation abilities.
Skills
- Microsoft Defender
- SIEM
- Splunk
- Microsoft Entra ID
- Zero Trust
- SOPS
- CISSP
- Azure
- SAML
- SCIM
- AWS
- GCP
- EDR
- TLS
More jobs at KPMG Global Services
All 141KGS - Cyber Cloud- AWS/Azure/GCP Cloud Security - Associate Consultant - Hyderabad
KPMG Global Services · Hyderabad, Telangana, India · today
Senior Analyst
KPMG Global Services · Gurgaon, Haryana, India · Bangalore, Karnataka, India · today
Manager
KPMG Global Services · Gurgaon, Haryana, India · today
Cyber IAM Managed Service - Cloud Security ACON
KPMG Global Services · Noida, Uttar Pradesh, India · today
Associate Consultant - Databricks AWS DE
KPMG Global Services · Bangalore, Karnataka, India · today
Similar roles
Network Security Engineer
Uvation · India · today
Senior Security Engineer
Cba · Bangalore - Manyata Tech Park Road · today
Cyber Security Engineer
IF1184 GE Vernova Hitachi Nuclear Energy Americas · Noida · Bengaluru · Pallavaram · today
Associate Cybersecurity Analyst
Vi · IN - Bengaluru, India · today
Senior Security Engineer
Ambient.ai · Bengaluru · today
Director - IT
Bristlecone · Pune, Maharashtra, India · yesterday