KPMG Ukraine

CASB - Senior Associate

KPMG Ukraine  •  Noida, IN (Onsite)  •  2 hours ago
Apply
AI can make mistakes so check important info. Chat history is never stored.

Job Description

Educational qualifications

Bachelor’s degree in Computer Science, Information Security, Information Technology, or a related field.
Master’s degree in Cybersecurity, Cloud Computing, or Information Systems is preferred.
Equivalent practical experience may be considered for exceptional candidates.

Work experience

5–7 years of hands‑on experience in Cloud Security, Information Security, or Security Operations roles.
Deep, proven experience working with:
Microsoft Defender for Cloud Apps (Microsoft CASB / MCAS)
Netskope Security Cloud / Netskope CASB
Experience architecting, implementing, tuning, and maintaining CASB solutions at scale.
Hands‑on involvement with CASB:
Policy configuration (DLP, Access Control, Threat Protection)
API integrations with SaaS applications
Cloud app discovery and Shadow IT governance
Session controls and conditional access workflows
Experience working with SIEM tools (Microsoft Sentinel, Splunk, etc.) and integrating CASB logs.
Involvement in cloud security incident detection, investigation, response, and reporting.
Exposure to Cloud Security Posture Management (CSPM) tools and identity security solutions (Entra ID/Azure AD).

The ideal candidate will:

Demonstrate expert-level understanding of cloud application security, SaaS risk assessment, data protection, and Zero Trust principles.
Be able to design and mature CASB frameworks, including:
Cloud governance workflows
Risk‑based access enforcement
Data classification and DLP tuning
Provide leadership in CASB strategy, working with architecture and compliance teams.
Drive improvements in cloud security posture using actionable insights and metrics.
Conduct advanced investigations of cloud‑based threats, anomalies, and suspicious access behavior.
Produce detailed documentation, SOPs, runbooks, and executive-level reports.
Champion continuous improvement, automation, and best practices across cloud security operations.

Mandatory Certification Required:

(At least one required; multiple strongly preferred)

Core Certifications

·Microsoft SC-200 – Security Operations Analyst
·Microsoft SC-400 – Information Protection Administrator
·Netskope Certified Cloud Security Administrator (NCCSA)
·CCSK – Certificate of Cloud Security Knowledge

Preferred Advanced Certifications

·CCSP – Certified Cloud Security Professional
·CISSP – Certified Information Systems Security Professional
·AZ-500 – Microsoft Azure Security Engineer
·Netskope Certified Cloud Security Specialist (NCCSS)

Technical Skills Required:

CASB Technologies

·Expert-level skills in:
oMicrosoft Defender for Cloud Apps (MCAS)
oNetskope CASB and Netskope NewEdge Platform
·Ability to configure and optimize:
oDLP policies
oAccess and session controls
oDiscovery dashboards and custom reports
oAPI and real-time inline controls
·Strong knowledge of Shadow IT governance and SaaS risk scoring.

Technical Skills Required:

Cloud & Identity Security

·Strong understanding of:
oAzure AD / Entra ID
oConditional Access
oIdentity Governance
oOAuth, SAML, SCIM, and modern authentication protocols
·General understanding of AWS and GCP security features is beneficial.

Security Operations & Analytics

·Experience with SIEM platforms such as:
oMicrosoft Sentinel, Splunk, or equivalent
·Strong log analysis, threat detection, correlation, and incident handling skills.
·Knowledge of integration between CASB, DLP, EDR, and SOAR platforms.

Networking & Architecture

·Understanding of:
oZero Trust architecture
oSASE components
oSSL/TLS inspection
oReverse proxy technologies
oAPI security and cloud architecture principles

Behavioral / team skills

Strong communication and stakeholder management skills, including ability to explain complex security concepts in simple terms.
Analytical mindset with strong problem‑solving and decision‑making skills.
High level of ownership, accountability, and attention to detail.
Ability to handle multiple priorities in fast‑paced cloud and security environments.
Collaborative mindset with a willingness to mentor junior team members.
Proactive, structured, and self-driven approach to work.
Strong documentation and presentation abilities.

Educational qualifications

Bachelor’s degree in Computer Science, Information Security, Information Technology, or a related field.
Master’s degree in Cybersecurity, Cloud Computing, or Information Systems is preferred.
Equivalent practical experience may be considered for exceptional candidates.

Work experience

5–7 years of hands‑on experience in Cloud Security, Information Security, or Security Operations roles.
Deep, proven experience working with:
Microsoft Defender for Cloud Apps (Microsoft CASB / MCAS)
Netskope Security Cloud / Netskope CASB
Experience architecting, implementing, tuning, and maintaining CASB solutions at scale.
Hands‑on involvement with CASB:
Policy configuration (DLP, Access Control, Threat Protection)
API integrations with SaaS applications
Cloud app discovery and Shadow IT governance
Session controls and conditional access workflows
Experience working with SIEM tools (Microsoft Sentinel, Splunk, etc.) and integrating CASB logs.
Involvement in cloud security incident detection, investigation, response, and reporting.
Exposure to Cloud Security Posture Management (CSPM) tools and identity security solutions (Entra ID/Azure AD).

The ideal candidate will:

Demonstrate expert-level understanding of cloud application security, SaaS risk assessment, data protection, and Zero Trust principles.
Be able to design and mature CASB frameworks, including:
Cloud governance workflows
Risk‑based access enforcement
Data classification and DLP tuning
Provide leadership in CASB strategy, working with architecture and compliance teams.
Drive improvements in cloud security posture using actionable insights and metrics.
Conduct advanced investigations of cloud‑based threats, anomalies, and suspicious access behavior.
Produce detailed documentation, SOPs, runbooks, and executive-level reports.
Champion continuous improvement, automation, and best practices across cloud security operations.

Mandatory Certification Required:

(At least one required; multiple strongly preferred)

Core Certifications

·Microsoft SC-200 – Security Operations Analyst
·Microsoft SC-400 – Information Protection Administrator
·Netskope Certified Cloud Security Administrator (NCCSA)
·CCSK – Certificate of Cloud Security Knowledge

Preferred Advanced Certifications

·CCSP – Certified Cloud Security Professional
·CISSP – Certified Information Systems Security Professional
·AZ-500 – Microsoft Azure Security Engineer
·Netskope Certified Cloud Security Specialist (NCCSS)

Technical Skills Required:

CASB Technologies

·Expert-level skills in:
oMicrosoft Defender for Cloud Apps (MCAS)
oNetskope CASB and Netskope NewEdge Platform
·Ability to configure and optimize:
oDLP policies
oAccess and session controls
oDiscovery dashboards and custom reports
oAPI and real-time inline controls
·Strong knowledge of Shadow IT governance and SaaS risk scoring.

Technical Skills Required:

Cloud & Identity Security

·Strong understanding of:
oAzure AD / Entra ID
oConditional Access
oIdentity Governance
oOAuth, SAML, SCIM, and modern authentication protocols
·General understanding of AWS and GCP security features is beneficial.

Security Operations & Analytics

·Experience with SIEM platforms such as:
oMicrosoft Sentinel, Splunk, or equivalent
·Strong log analysis, threat detection, correlation, and incident handling skills.
·Knowledge of integration between CASB, DLP, EDR, and SOAR platforms.

Networking & Architecture

·Understanding of:
oZero Trust architecture
oSASE components
oSSL/TLS inspection
oReverse proxy technologies
oAPI security and cloud architecture principles

Behavioral / team skills

Strong communication and stakeholder management skills, including ability to explain complex security concepts in simple terms.
Analytical mindset with strong problem‑solving and decision‑making skills.
High level of ownership, accountability, and attention to detail.
Ability to handle multiple priorities in fast‑paced cloud and security environments.
Collaborative mindset with a willingness to mentor junior team members.
Proactive, structured, and self-driven approach to work.
Strong documentation and presentation abilities.

Educational qualifications

Bachelor’s degree in Computer Science, Information Security, Information Technology, or a related field.
Master’s degree in Cybersecurity, Cloud Computing, or Information Systems is preferred.
Equivalent practical experience may be considered for exceptional candidates.

Work experience

5–7 years of hands‑on experience in Cloud Security, Information Security, or Security Operations roles.
Deep, proven experience working with:
Microsoft Defender for Cloud Apps (Microsoft CASB / MCAS)
Netskope Security Cloud / Netskope CASB
Experience architecting, implementing, tuning, and maintaining CASB solutions at scale.
Hands‑on involvement with CASB:
Policy configuration (DLP, Access Control, Threat Protection)
API integrations with SaaS applications
Cloud app discovery and Shadow IT governance
Session controls and conditional access workflows
Experience working with SIEM tools (Microsoft Sentinel, Splunk, etc.) and integrating CASB logs.
Involvement in cloud security incident detection, investigation, response, and reporting.
Exposure to Cloud Security Posture Management (CSPM) tools and identity security solutions (Entra ID/Azure AD).

The ideal candidate will:

Demonstrate expert-level understanding of cloud application security, SaaS risk assessment, data protection, and Zero Trust principles.
Be able to design and mature CASB frameworks, including:
Cloud governance workflows
Risk‑based access enforcement
Data classification and DLP tuning
Provide leadership in CASB strategy, working with architecture and compliance teams.
Drive improvements in cloud security posture using actionable insights and metrics.
Conduct advanced investigations of cloud‑based threats, anomalies, and suspicious access behavior.
Produce detailed documentation, SOPs, runbooks, and executive-level reports.
Champion continuous improvement, automation, and best practices across cloud security operations.

Mandatory Certification Required:

(At least one required; multiple strongly preferred)

Core Certifications

·Microsoft SC-200 – Security Operations Analyst
·Microsoft SC-400 – Information Protection Administrator
·Netskope Certified Cloud Security Administrator (NCCSA)
·CCSK – Certificate of Cloud Security Knowledge

Preferred Advanced Certifications

·CCSP – Certified Cloud Security Professional
·CISSP – Certified Information Systems Security Professional
·AZ-500 – Microsoft Azure Security Engineer
·Netskope Certified Cloud Security Specialist (NCCSS)

Technical Skills Required:

CASB Technologies

·Expert-level skills in:
oMicrosoft Defender for Cloud Apps (MCAS)
oNetskope CASB and Netskope NewEdge Platform
·Ability to configure and optimize:
oDLP policies
oAccess and session controls
oDiscovery dashboards and custom reports
oAPI and real-time inline controls
·Strong knowledge of Shadow IT governance and SaaS risk scoring.

Technical Skills Required:

Cloud & Identity Security

·Strong understanding of:
oAzure AD / Entra ID
oConditional Access
oIdentity Governance
oOAuth, SAML, SCIM, and modern authentication protocols
·General understanding of AWS and GCP security features is beneficial.

Security Operations & Analytics

·Experience with SIEM platforms such as:
oMicrosoft Sentinel, Splunk, or equivalent
·Strong log analysis, threat detection, correlation, and incident handling skills.
·Knowledge of integration between CASB, DLP, EDR, and SOAR platforms.

Networking & Architecture

·Understanding of:
oZero Trust architecture
oSASE components
oSSL/TLS inspection
oReverse proxy technologies
oAPI security and cloud architecture principles

Behavioral / team skills

Strong communication and stakeholder management skills, including ability to explain complex security concepts in simple terms.
Analytical mindset with strong problem‑solving and decision‑making skills.
High level of ownership, accountability, and attention to detail.
Ability to handle multiple priorities in fast‑paced cloud and security environments.
Collaborative mindset with a willingness to mentor junior team members.
Proactive, structured, and self-driven approach to work.
Strong documentation and presentation abilities.
KPMG Ukraine

About KPMG Ukraine

KPMG – це міжнародна мережа фірм, що надають аудиторські, податкові та консультаційні послуги. В офісах KPMG у 143 країнах світу працюють понад 273,000 співробітників (FY23). Кожна фірма KPMG є незалежною юридичною особою і представляє себе як таку.

KPMG працює в Україні з 1992 року. KPMG в Україні надає аудиторські, податкові, бухгалтерські та консультаційні послуги для місцевих і міжнародних компаній. Нашою метою завжди було використання глобального інтелектуального потенціалу фірми в поєднанні з практичним досвідом наших українських професіоналів, щоб допомогти провідним компаніям досягти своїх цілей.

Офіси компанії знаходяться у Києві та Львові.

______________

KPMG is a global network of professional services firms providing audit, tax and advisory services. We operate in 143 countries and territories, and in FY23, collectively employed more than 273,000 people working in member firms around the world.

KPMG in Ukraine provides audit, tax, accounting and advisory services to local and international businesses. KPMG has been working in Ukraine since 1992, and our goal has always been to use the firm's global intellectual potential, combined with the practical experience of our Ukrainian professionals, to help leading companies to achieve their goals.

In Ukraine KPMG has its offices in Kyiv and Lviv.

Industry
Consulting & Advisory
Company Size
201-500 employees
Headquarters
Kyiv, UA
Year Founded
1992
Website
kpmg.com
Social Media