Skip to content
← Back to job listings

CASB - Senior Associate

KPMG Global Services · Noida, Uttar Pradesh, India

CybersecurityExternal listingfull-timeabout 3 hours ago

About The Role

Educational qualifications

  • Bachelor’s degree in Computer Science, Information Security, Information Technology , or a related field.
  • Master’s degree in Cybersecurity, Cloud Computing, or Information Systems is preferred.
  • Equivalent practical experience may be considered for exceptional candidates.
  • Work experience
  • 5–7 years of hands‑on experience in Cloud Security, Information Security, or Security Operations roles.
  • Deep, proven experience working with:
  • Microsoft Defender for Cloud Apps (Microsoft CASB / MCAS)
  • Netskope Security Cloud / Netskope CASB
  • Experience architecting, implementing, tuning, and maintaining CASB solutions at scale.
  • Hands‑on involvement with CASB:
  • Policy configuration (DLP, Access Control, Threat Protection)
  • API integrations with SaaS applications
  • Cloud app discovery and Shadow IT governance
  • Session controls and conditional access workflows
  • Experience working with SIEM tools (Microsoft Sentinel, Splunk, etc.) and integrating CASB logs.
  • Involvement in cloud security incident detection, investigation, response, and reporting.
  • Exposure to Cloud Security Posture Management (CSPM) tools and identity security solutions (Entra ID/Azure AD).

The ideal candidate will

  • Demonstrate expert-level understanding of cloud application security , SaaS risk assessment, data protection, and Zero Trust principles.
  • Be able to design and mature CASB frameworks, including:
  • Cloud governance workflows
  • Risk‑based access enforcement
  • Data classification and DLP tuning
  • Provide leadership in CASB strategy, working with architecture and compliance teams.
  • Drive improvements in cloud security posture using actionable insights and metrics.
  • Conduct advanced investigations of cloud‑based threats, anomalies, and suspicious access behavior.
  • Produce detailed documentation, SOPs, runbooks, and executive-level reports.
  • Champion continuous improvement, automation, and best practices across cloud security operations.

Mandatory Certification Required

(At least one required; multiple strongly preferred)

Core Certifications

  • Microsoft SC-200 – Security Operations Analyst
  • Microsoft SC-400 – Information Protection Administrator
  • Netskope Certified Cloud Security Administrator (NCCSA)
  • CCSK – Certificate of Cloud Security Knowledge

Preferred Advanced Certifications

  • CCSP – Certified Cloud Security Professional
  • CISSP – Certified Information Systems Security Professional
  • AZ-500 – Microsoft Azure Security Engineer
  • Netskope Certified Cloud Security Specialist (NCCSS)

Technical Skills Required

CASB Technologies

  • Expert-level skills in:
  • o Microsoft Defender for Cloud Apps (MCAS)
  • o Netskope CASB and Netskope NewEdge Platform
  • Ability to configure and optimize:
  • o DLP policies
  • o Access and session controls
  • o Discovery dashboards and custom reports
  • o API and real-time inline controls
  • Strong knowledge of Shadow IT governance and SaaS risk scoring.

Technical Skills Required

Cloud & Identity Security

  • Strong understanding of:
  • o Azure AD / Entra ID
  • o Conditional Access
  • o Identity Governance
  • o OAuth, SAML, SCIM, and modern authentication protocols
  • General understanding of AWS and GCP security features is beneficial.

Security Operations & Analytics

  • Experience with SIEM platforms such as:

o Microsoft Sentinel, Splunk, or equivalent

  • Strong log analysis, threat detection, correlation, and incident handling skills.
  • Knowledge of integration between CASB, DLP, EDR, and SOAR platforms.

Networking & Architecture

  • Understanding of:
  • o Zero Trust architecture
  • o SASE components
  • o SSL/TLS inspection
  • o Reverse proxy technologies
  • o API security and cloud architecture principles
  • Behavioral / team skills
  • Strong communication and stakeholder management skills, including ability to explain complex security concepts in simple terms.
  • Analytical mindset with strong problem‑solving and decision‑making skills.
  • High level of ownership, accountability, and attention to detail.
  • Ability to handle multiple priorities in fast‑paced cloud and security environments.
  • Collaborative mindset with a willingness to mentor junior team members.
  • Proactive, structured, and self-driven approach to work.
  • Strong documentation and presentation abilities.

Educational qualifications

  • Bachelor’s degree in Computer Science, Information Security, Information Technology , or a related field.
  • Master’s degree in Cybersecurity, Cloud Computing, or Information Systems is preferred.
  • Equivalent practical experience may be considered for exceptional candidates.
  • Work experience
  • 5–7 years of hands‑on experience in Cloud Security, Information Security, or Security Operations roles.
  • Deep, proven experience working with:
  • Microsoft Defender for Cloud Apps (Microsoft CASB / MCAS)
  • Netskope Security Cloud / Netskope CASB
  • Experience architecting, implementing, tuning, and maintaining CASB solutions at scale.
  • Hands‑on involvement with CASB:
  • Policy configuration (DLP, Access Control, Threat Protection)
  • API integrations with SaaS applications
  • Cloud app discovery and Shadow IT governance
  • Session controls and conditional access workflows
  • Experience working with SIEM tools (Microsoft Sentinel, Splunk, etc.) and integrating CASB logs.
  • Involvement in cloud security incident detection, investigation, response, and reporting.
  • Exposure to Cloud Security Posture Management (CSPM) tools and identity security solutions (Entra ID/Azure AD).

The ideal candidate will

  • Demonstrate expert-level understanding of cloud application security , SaaS risk assessment, data protection, and Zero Trust principles.
  • Be able to design and mature CASB frameworks, including:
  • Cloud governance workflows
  • Risk‑based access enforcement
  • Data classification and DLP tuning
  • Provide leadership in CASB strategy, working with architecture and compliance teams.
  • Drive improvements in cloud security posture using actionable insights and metrics.
  • Conduct advanced investigations of cloud‑based threats, anomalies, and suspicious access behavior.
  • Produce detailed documentation, SOPs, runbooks, and executive-level reports.
  • Champion continuous improvement, automation, and best practices across cloud security operations.

Mandatory Certification Required

(At least one required; multiple strongly preferred)

Core Certifications

  • Microsoft SC-200 – Security Operations Analyst
  • Microsoft SC-400 – Information Protection Administrator
  • Netskope Certified Cloud Security Administrator (NCCSA)
  • CCSK – Certificate of Cloud Security Knowledge

Preferred Advanced Certifications

  • CCSP – Certified Cloud Security Professional
  • CISSP – Certified Information Systems Security Professional
  • AZ-500 – Microsoft Azure Security Engineer
  • Netskope Certified Cloud Security Specialist (NCCSS)

Technical Skills Required

CASB Technologies

  • Expert-level skills in:
  • o Microsoft Defender for Cloud Apps (MCAS)
  • o Netskope CASB and Netskope NewEdge Platform
  • Ability to configure and optimize:
  • o DLP policies
  • o Access and session controls
  • o Discovery dashboards and custom reports
  • o API and real-time inline controls
  • Strong knowledge of Shadow IT governance and SaaS risk scoring.

Technical Skills Required

Cloud & Identity Security

  • Strong understanding of:
  • o Azure AD / Entra ID
  • o Conditional Access
  • o Identity Governance
  • o OAuth, SAML, SCIM, and modern authentication protocols
  • General understanding of AWS and GCP security features is beneficial.

Security Operations & Analytics

  • Experience with SIEM platforms such as:

o Microsoft Sentinel, Splunk, or equivalent

  • Strong log analysis, threat detection, correlation, and incident handling skills.
  • Knowledge of integration between CASB, DLP, EDR, and SOAR platforms.

Networking & Architecture

  • Understanding of:
  • o Zero Trust architecture
  • o SASE components
  • o SSL/TLS inspection
  • o Reverse proxy technologies
  • o API security and cloud architecture principles
  • Behavioral / team skills
  • Strong communication and stakeholder management skills, including ability to explain complex security concepts in simple terms.
  • Analytical mindset with strong problem‑solving and decision‑making skills.
  • High level of ownership, accountability, and attention to detail.
  • Ability to handle multiple priorities in fast‑paced cloud and security environments.
  • Collaborative mindset with a willingness to mentor junior team members.
  • Proactive, structured, and self-driven approach to work.
  • Strong documentation and presentation abilities.

Educational qualifications

  • Bachelor’s degree in Computer Science, Information Security, Information Technology , or a related field.
  • Master’s degree in Cybersecurity, Cloud Computing, or Information Systems is preferred.
  • Equivalent practical experience may be considered for exceptional candidates.
  • Work experience
  • 5–7 years of hands‑on experience in Cloud Security, Information Security, or Security Operations roles.
  • Deep, proven experience working with:
  • Microsoft Defender for Cloud Apps (Microsoft CASB / MCAS)
  • Netskope Security Cloud / Netskope CASB
  • Experience architecting, implementing, tuning, and maintaining CASB solutions at scale.
  • Hands‑on involvement with CASB:
  • Policy configuration (DLP, Access Control, Threat Protection)
  • API integrations with SaaS applications
  • Cloud app discovery and Shadow IT governance
  • Session controls and conditional access workflows
  • Experience working with SIEM tools (Microsoft Sentinel, Splunk, etc.) and integrating CASB logs.
  • Involvement in cloud security incident detection, investigation, response, and reporting.
  • Exposure to Cloud Security Posture Management (CSPM) tools and identity security solutions (Entra ID/Azure AD).

The ideal candidate will

  • Demonstrate expert-level understanding of cloud application security , SaaS risk assessment, data protection, and Zero Trust principles.
  • Be able to design and mature CASB frameworks, including:
  • Cloud governance workflows
  • Risk‑based access enforcement
  • Data classification and DLP tuning
  • Provide leadership in CASB strategy, working with architecture and compliance teams.
  • Drive improvements in cloud security posture using actionable insights and metrics.
  • Conduct advanced investigations of cloud‑based threats, anomalies, and suspicious access behavior.
  • Produce detailed documentation, SOPs, runbooks, and executive-level reports.
  • Champion continuous improvement, automation, and best practices across cloud security operations.

Mandatory Certification Required

(At least one required; multiple strongly preferred)

Core Certifications

  • Microsoft SC-200 – Security Operations Analyst
  • Microsoft SC-400 – Information Protection Administrator
  • Netskope Certified Cloud Security Administrator (NCCSA)
  • CCSK – Certificate of Cloud Security Knowledge

Preferred Advanced Certifications

  • CCSP – Certified Cloud Security Professional
  • CISSP – Certified Information Systems Security Professional
  • AZ-500 – Microsoft Azure Security Engineer
  • Netskope Certified Cloud Security Specialist (NCCSS)

Technical Skills Required

CASB Technologies

  • Expert-level skills in:
  • o Microsoft Defender for Cloud Apps (MCAS)
  • o Netskope CASB and Netskope NewEdge Platform
  • Ability to configure and optimize:
  • o DLP policies
  • o Access and session controls
  • o Discovery dashboards and custom reports
  • o API and real-time inline controls
  • Strong knowledge of Shadow IT governance and SaaS risk scoring.

Technical Skills Required

Cloud & Identity Security

  • Strong understanding of:
  • o Azure AD / Entra ID
  • o Conditional Access
  • o Identity Governance
  • o OAuth, SAML, SCIM, and modern authentication protocols
  • General understanding of AWS and GCP security features is beneficial.

Security Operations & Analytics

  • Experience with SIEM platforms such as:

o Microsoft Sentinel, Splunk, or equivalent

  • Strong log analysis, threat detection, correlation, and incident handling skills.
  • Knowledge of integration between CASB, DLP, EDR, and SOAR platforms.

Networking & Architecture

  • Understanding of:
  • o Zero Trust architecture
  • o SASE components
  • o SSL/TLS inspection
  • o Reverse proxy technologies
  • o API security and cloud architecture principles
  • Behavioral / team skills
  • Strong communication and stakeholder management skills, including ability to explain complex security concepts in simple terms.
  • Analytical mindset with strong problem‑solving and decision‑making skills.
  • High level of ownership, accountability, and attention to detail.
  • Ability to handle multiple priorities in fast‑paced cloud and security environments.
  • Collaborative mindset with a willingness to mentor junior team members.
  • Proactive, structured, and self-driven approach to work.
  • Strong documentation and presentation abilities.

This is an external listing. JobSpring does not represent or verify the employer. Report this listing