KPMG Ukraine

Managed Service - Cloud Security ACON

KPMG Ukraine  •  Noida, IN (Onsite)  •  2 hours ago
Apply
AI can make mistakes so check important info. Chat history is never stored.

Job Description

We are looking for a of Cloud Security resource with 2+ years of experience for one of our engagements. The resource must work from our Noida office and willing to work on shifts

Work experience

  • 2–6 years in cloud security operations and engineering with progressive responsibility in securing enterprise cloud environments across AWS and Azure.
  • Oversee enterprise-scale cloud security architecture, policy governance, and security operations across AWS and Azure environments.
  • Lead implementation and management of cloud-native security controls including IAM, security groups, network segmentation, and encryption services.
  • Manage day-to-day cloud security operations including monitoring, alert triage, incident response, and remediation coordination across AWS and Azure platforms.
  • Drive cloud security posture improvement using CSPM tools (Wiz, Prisma Cloud, or similar); identify misconfigurations, prioritize findings, and track remediation to closure.
  • Lead cross-functional teams in cloud security operations, vulnerability management, and compliance initiatives aligned with security standards.
  • Drive adherence to defined SLAs and KPIs across cloud security operations; track, report, and continuously improve operational metrics and service delivery standards.
  • Manage and track security incidents, service requests, and change management activities through ITSM/ticketing platforms such as ServiceNow, ensuring timely updates, escalations, and closures.
  • Architect secure cloud networking solutions: design VPC/VNet topologies, implement transit gateways, Azure Firewall, AWS Network Firewall, and Network Virtual Appliances (NVAs).
  • Coordinate security incident response across global teams; develop and refine playbooks, SLAs, and escalation procedures for cloud environments.
  • Develop and maintain executive dashboards presenting cloud security metrics, risk posture, and compliance status to senior leadership.

The ideal candidate will:

  • Demonstrate solid understanding of cloud security architectures across AWS and Azure, with a strong grasp of Zero Trust principles and defense-in-depth strategies.
  • Design secure cloud topologies, define security governance workflows, and guide risk-based access controls.
  • Produce clear SOPs, runbooks, security assessment reports, and technical design documents for cloud environments.
  • Collaborate with compliance, architecture, DevOps, and operations teams to ensure security by design.
  • Drive continuous improvements via automation, Infrastructure as Code (IaC), and actionable security metrics.
  • Effectively manage day-to-day security operations while balancing strategic initiatives and stakeholder expectations.
  • Demonstrate ability to define, monitor, and drive SLA/KPI compliance across security operations, ensuring consistent and measurable service delivery.

Mandatory Certification Required:

(At least one required; multiple strongly preferred)

Core Certifications

·AWS Certified Solutions Architect – Associate

·AZ-500 – Microsoft Certified Azure Security Engineer – Associate

·Wiz Certified Cloud Fundamentals

Preferred Advanced Certifications

·AWS Certified Security – Specialty

·Microsoft Certified: Cloud and AI Security Engineer Associate

·Certified Cloud Security Professional (CCSP)

·Certified Information Systems Security Professional (CISSP).

Technical Skills Required:

Cloud Networking and Architecture:

  • Hands-on experience designing AWS VPC architectures: security groups, NACLs, transit gateways, VPC peering, PrivateLink, and Direct Connect.
  • Proficiency with Azure Virtual Networks (VNets), NSGs, Azure Firewall, User-Defined Routes (UDRs), Application Gateway, and ExpressRoute.
  • Understanding of hybrid cloud connectivity, micro-segmentation, and secure network architectures across AWS and Azure.
  • Familiarity with Zero Trust architecture principles and cloud-native security design patterns.

Security Operations & Analytics:

  • Hands-on experience managing day-to-day cloud security operations including monitoring security alerts, triaging incidents, and coordinating remediation activities across AWS and Azure.
  • Strong ability to perform security assessments, configuration reviews, and compliance checks within AWS and Azure environments.
  • Experience investigating findings in cloud environments, conducting root cause analysis, and implementing preventive controls.
  • Proficiency in reviewing and responding to security findings from CSPM tools (Wiz, Prisma Cloud, or similar) and ensuring timely resolution within defined SLAs.
  • Experience working with ITSM/ticketing tools such as ServiceNow to log, track, prioritize, and close security incidents and service requests in line with defined SLAs and KPIs.

DevSecOps & Automation:

  • Familiarity with Infrastructure as Code (Terraform, CloudFormation, ARM templates) and integrating security controls into IaC pipelines.
  • Understanding of CI/CD security integration, container security (Docker, Kubernetes), and API security.
  • Experience with automation scripting (Python, PowerShell, Lambda, or Azure Functions) to support and improve security operations.

Behavioral / team skills

  • Strong communication and stakeholder management skills, including ability to explain complex security concepts in simple terms.
  • Analytical mindset with strong problem‑solving and decision‑making skills.
  • High level of ownership, accountability, and attention to detail.
  • Ability to handle multiple priorities in fast‑paced cloud and security environments.
  • Collaborative mindset with a willingness to mentor junior team members.
  • Proactive, structured, and self-driven approach to work.
  • Strong documentation and presentation abilities.

Work experience

  • 2–6 years in cloud security operations and engineering with progressive responsibility in securing enterprise cloud environments across AWS and Azure.
  • Oversee enterprise-scale cloud security architecture, policy governance, and security operations across AWS and Azure environments.
  • Lead implementation and management of cloud-native security controls including IAM, security groups, network segmentation, and encryption services.
  • Manage day-to-day cloud security operations including monitoring, alert triage, incident response, and remediation coordination across AWS and Azure platforms.
  • Drive cloud security posture improvement using CSPM tools (Wiz, Prisma Cloud, or similar); identify misconfigurations, prioritize findings, and track remediation to closure.
  • Lead cross-functional teams in cloud security operations, vulnerability management, and compliance initiatives aligned with security standards.
  • Drive adherence to defined SLAs and KPIs across cloud security operations; track, report, and continuously improve operational metrics and service delivery standards.
  • Manage and track security incidents, service requests, and change management activities through ITSM/ticketing platforms such as ServiceNow, ensuring timely updates, escalations, and closures.
  • Architect secure cloud networking solutions: design VPC/VNet topologies, implement transit gateways, Azure Firewall, AWS Network Firewall, and Network Virtual Appliances (NVAs).
  • Coordinate security incident response across global teams; develop and refine playbooks, SLAs, and escalation procedures for cloud environments.
  • Develop and maintain executive dashboards presenting cloud security metrics, risk posture, and compliance status to senior leadership.

The ideal candidate will:

  • Demonstrate solid understanding of cloud security architectures across AWS and Azure, with a strong grasp of Zero Trust principles and defense-in-depth strategies.
  • Design secure cloud topologies, define security governance workflows, and guide risk-based access controls.
  • Produce clear SOPs, runbooks, security assessment reports, and technical design documents for cloud environments.
  • Collaborate with compliance, architecture, DevOps, and operations teams to ensure security by design.
  • Drive continuous improvements via automation, Infrastructure as Code (IaC), and actionable security metrics.
  • Effectively manage day-to-day security operations while balancing strategic initiatives and stakeholder expectations.
  • Demonstrate ability to define, monitor, and drive SLA/KPI compliance across security operations, ensuring consistent and measurable service delivery.

Mandatory Certification Required:

(At least one required; multiple strongly preferred)

Core Certifications

·AWS Certified Solutions Architect – Associate

·AZ-500 – Microsoft Certified Azure Security Engineer – Associate

·Wiz Certified Cloud Fundamentals

Preferred Advanced Certifications

·AWS Certified Security – Specialty

·Microsoft Certified: Cloud and AI Security Engineer Associate

·Certified Cloud Security Professional (CCSP)

·Certified Information Systems Security Professional (CISSP).

Technical Skills Required:

Cloud Networking and Architecture:

  • Hands-on experience designing AWS VPC architectures: security groups, NACLs, transit gateways, VPC peering, PrivateLink, and Direct Connect.
  • Proficiency with Azure Virtual Networks (VNets), NSGs, Azure Firewall, User-Defined Routes (UDRs), Application Gateway, and ExpressRoute.
  • Understanding of hybrid cloud connectivity, micro-segmentation, and secure network architectures across AWS and Azure.
  • Familiarity with Zero Trust architecture principles and cloud-native security design patterns.

Security Operations & Analytics:

  • Hands-on experience managing day-to-day cloud security operations including monitoring security alerts, triaging incidents, and coordinating remediation activities across AWS and Azure.
  • Strong ability to perform security assessments, configuration reviews, and compliance checks within AWS and Azure environments.
  • Experience investigating findings in cloud environments, conducting root cause analysis, and implementing preventive controls.
  • Proficiency in reviewing and responding to security findings from CSPM tools (Wiz, Prisma Cloud, or similar) and ensuring timely resolution within defined SLAs.
  • Experience working with ITSM/ticketing tools such as ServiceNow to log, track, prioritize, and close security incidents and service requests in line with defined SLAs and KPIs.

DevSecOps & Automation:

  • Familiarity with Infrastructure as Code (Terraform, CloudFormation, ARM templates) and integrating security controls into IaC pipelines.
  • Understanding of CI/CD security integration, container security (Docker, Kubernetes), and API security.
  • Experience with automation scripting (Python, PowerShell, Lambda, or Azure Functions) to support and improve security operations.

Behavioral / team skills

  • Strong communication and stakeholder management skills, including ability to explain complex security concepts in simple terms.
  • Analytical mindset with strong problem‑solving and decision‑making skills.
  • High level of ownership, accountability, and attention to detail.
  • Ability to handle multiple priorities in fast‑paced cloud and security environments.
  • Collaborative mindset with a willingness to mentor junior team members.
  • Proactive, structured, and self-driven approach to work.
  • Strong documentation and presentation abilities.
KPMG Ukraine

About KPMG Ukraine

KPMG – це міжнародна мережа фірм, що надають аудиторські, податкові та консультаційні послуги. В офісах KPMG у 143 країнах світу працюють понад 273,000 співробітників (FY23). Кожна фірма KPMG є незалежною юридичною особою і представляє себе як таку.

KPMG працює в Україні з 1992 року. KPMG в Україні надає аудиторські, податкові, бухгалтерські та консультаційні послуги для місцевих і міжнародних компаній. Нашою метою завжди було використання глобального інтелектуального потенціалу фірми в поєднанні з практичним досвідом наших українських професіоналів, щоб допомогти провідним компаніям досягти своїх цілей.

Офіси компанії знаходяться у Києві та Львові.

______________

KPMG is a global network of professional services firms providing audit, tax and advisory services. We operate in 143 countries and territories, and in FY23, collectively employed more than 273,000 people working in member firms around the world.

KPMG in Ukraine provides audit, tax, accounting and advisory services to local and international businesses. KPMG has been working in Ukraine since 1992, and our goal has always been to use the firm's global intellectual potential, combined with the practical experience of our Ukrainian professionals, to help leading companies to achieve their goals.

In Ukraine KPMG has its offices in Kyiv and Lviv.

Industry
Consulting & Advisory
Company Size
201-500 employees
Headquarters
Kyiv, UA
Year Founded
1992
Website
kpmg.com
Social Media