← Back to job listings

CASB - Senior Associate
KPMG Global Services · Noida, Uttar Pradesh, India
About The Role
Educational qualifications
- Bachelor’s degree in Computer Science, Information Security, Information Technology , or a related field.
- Master’s degree in Cybersecurity, Cloud Computing, or Information Systems is preferred.
- Equivalent practical experience may be considered for exceptional candidates.
- •
- Work experience
- 5–7 years of hands‑on experience in Cloud Security, Information Security, or Security Operations roles.
- Deep, proven experience working with:
- Microsoft Defender for Cloud Apps (Microsoft CASB / MCAS)
- Netskope Security Cloud / Netskope CASB
- Experience architecting, implementing, tuning, and maintaining CASB solutions at scale.
- Hands‑on involvement with CASB:
- Policy configuration (DLP, Access Control, Threat Protection)
- API integrations with SaaS applications
- Cloud app discovery and Shadow IT governance
- Session controls and conditional access workflows
- Experience working with SIEM tools (Microsoft Sentinel, Splunk, etc.) and integrating CASB logs.
- Involvement in cloud security incident detection, investigation, response, and reporting.
- Exposure to Cloud Security Posture Management (CSPM) tools and identity security solutions (Entra ID/Azure AD).
The ideal candidate will
- Demonstrate expert-level understanding of cloud application security , SaaS risk assessment, data protection, and Zero Trust principles.
- Be able to design and mature CASB frameworks, including:
- Cloud governance workflows
- Risk‑based access enforcement
- Data classification and DLP tuning
- Provide leadership in CASB strategy, working with architecture and compliance teams.
- Drive improvements in cloud security posture using actionable insights and metrics.
- Conduct advanced investigations of cloud‑based threats, anomalies, and suspicious access behavior.
- Produce detailed documentation, SOPs, runbooks, and executive-level reports.
- Champion continuous improvement, automation, and best practices across cloud security operations.
Mandatory Certification Required
(At least one required; multiple strongly preferred)
Core Certifications
- Microsoft SC-200 – Security Operations Analyst
- Microsoft SC-400 – Information Protection Administrator
- Netskope Certified Cloud Security Administrator (NCCSA)
- CCSK – Certificate of Cloud Security Knowledge
Preferred Advanced Certifications
- CCSP – Certified Cloud Security Professional
- CISSP – Certified Information Systems Security Professional
- AZ-500 – Microsoft Azure Security Engineer
- Netskope Certified Cloud Security Specialist (NCCSS)
Technical Skills Required
CASB Technologies
- Expert-level skills in:
- o Microsoft Defender for Cloud Apps (MCAS)
- o Netskope CASB and Netskope NewEdge Platform
- Ability to configure and optimize:
- o DLP policies
- o Access and session controls
- o Discovery dashboards and custom reports
- o API and real-time inline controls
- Strong knowledge of Shadow IT governance and SaaS risk scoring.
Technical Skills Required
Cloud & Identity Security
- Strong understanding of:
- o Azure AD / Entra ID
- o Conditional Access
- o Identity Governance
- o OAuth, SAML, SCIM, and modern authentication protocols
- General understanding of AWS and GCP security features is beneficial.
Security Operations & Analytics
- Experience with SIEM platforms such as:
o Microsoft Sentinel, Splunk, or equivalent
- Strong log analysis, threat detection, correlation, and incident handling skills.
- Knowledge of integration between CASB, DLP, EDR, and SOAR platforms.
Networking & Architecture
- Understanding of:
- o Zero Trust architecture
- o SASE components
- o SSL/TLS inspection
- o Reverse proxy technologies
- o API security and cloud architecture principles
- Behavioral / team skills
- Strong communication and stakeholder management skills, including ability to explain complex security concepts in simple terms.
- Analytical mindset with strong problem‑solving and decision‑making skills.
- High level of ownership, accountability, and attention to detail.
- Ability to handle multiple priorities in fast‑paced cloud and security environments.
- Collaborative mindset with a willingness to mentor junior team members.
- Proactive, structured, and self-driven approach to work.
- Strong documentation and presentation abilities.
Educational qualifications
- Bachelor’s degree in Computer Science, Information Security, Information Technology , or a related field.
- Master’s degree in Cybersecurity, Cloud Computing, or Information Systems is preferred.
- Equivalent practical experience may be considered for exceptional candidates.
- •
- Work experience
- 5–7 years of hands‑on experience in Cloud Security, Information Security, or Security Operations roles.
- Deep, proven experience working with:
- Microsoft Defender for Cloud Apps (Microsoft CASB / MCAS)
- Netskope Security Cloud / Netskope CASB
- Experience architecting, implementing, tuning, and maintaining CASB solutions at scale.
- Hands‑on involvement with CASB:
- Policy configuration (DLP, Access Control, Threat Protection)
- API integrations with SaaS applications
- Cloud app discovery and Shadow IT governance
- Session controls and conditional access workflows
- Experience working with SIEM tools (Microsoft Sentinel, Splunk, etc.) and integrating CASB logs.
- Involvement in cloud security incident detection, investigation, response, and reporting.
- Exposure to Cloud Security Posture Management (CSPM) tools and identity security solutions (Entra ID/Azure AD).
The ideal candidate will
- Demonstrate expert-level understanding of cloud application security , SaaS risk assessment, data protection, and Zero Trust principles.
- Be able to design and mature CASB frameworks, including:
- Cloud governance workflows
- Risk‑based access enforcement
- Data classification and DLP tuning
- Provide leadership in CASB strategy, working with architecture and compliance teams.
- Drive improvements in cloud security posture using actionable insights and metrics.
- Conduct advanced investigations of cloud‑based threats, anomalies, and suspicious access behavior.
- Produce detailed documentation, SOPs, runbooks, and executive-level reports.
- Champion continuous improvement, automation, and best practices across cloud security operations.
Mandatory Certification Required
(At least one required; multiple strongly preferred)
Core Certifications
- Microsoft SC-200 – Security Operations Analyst
- Microsoft SC-400 – Information Protection Administrator
- Netskope Certified Cloud Security Administrator (NCCSA)
- CCSK – Certificate of Cloud Security Knowledge
Preferred Advanced Certifications
- CCSP – Certified Cloud Security Professional
- CISSP – Certified Information Systems Security Professional
- AZ-500 – Microsoft Azure Security Engineer
- Netskope Certified Cloud Security Specialist (NCCSS)
Technical Skills Required
CASB Technologies
- Expert-level skills in:
- o Microsoft Defender for Cloud Apps (MCAS)
- o Netskope CASB and Netskope NewEdge Platform
- Ability to configure and optimize:
- o DLP policies
- o Access and session controls
- o Discovery dashboards and custom reports
- o API and real-time inline controls
- Strong knowledge of Shadow IT governance and SaaS risk scoring.
Technical Skills Required
Cloud & Identity Security
- Strong understanding of:
- o Azure AD / Entra ID
- o Conditional Access
- o Identity Governance
- o OAuth, SAML, SCIM, and modern authentication protocols
- General understanding of AWS and GCP security features is beneficial.
Security Operations & Analytics
- Experience with SIEM platforms such as:
o Microsoft Sentinel, Splunk, or equivalent
- Strong log analysis, threat detection, correlation, and incident handling skills.
- Knowledge of integration between CASB, DLP, EDR, and SOAR platforms.
Networking & Architecture
- Understanding of:
- o Zero Trust architecture
- o SASE components
- o SSL/TLS inspection
- o Reverse proxy technologies
- o API security and cloud architecture principles
- Behavioral / team skills
- Strong communication and stakeholder management skills, including ability to explain complex security concepts in simple terms.
- Analytical mindset with strong problem‑solving and decision‑making skills.
- High level of ownership, accountability, and attention to detail.
- Ability to handle multiple priorities in fast‑paced cloud and security environments.
- Collaborative mindset with a willingness to mentor junior team members.
- Proactive, structured, and self-driven approach to work.
- Strong documentation and presentation abilities.
Educational qualifications
- Bachelor’s degree in Computer Science, Information Security, Information Technology , or a related field.
- Master’s degree in Cybersecurity, Cloud Computing, or Information Systems is preferred.
- Equivalent practical experience may be considered for exceptional candidates.
- •
- Work experience
- 5–7 years of hands‑on experience in Cloud Security, Information Security, or Security Operations roles.
- Deep, proven experience working with:
- Microsoft Defender for Cloud Apps (Microsoft CASB / MCAS)
- Netskope Security Cloud / Netskope CASB
- Experience architecting, implementing, tuning, and maintaining CASB solutions at scale.
- Hands‑on involvement with CASB:
- Policy configuration (DLP, Access Control, Threat Protection)
- API integrations with SaaS applications
- Cloud app discovery and Shadow IT governance
- Session controls and conditional access workflows
- Experience working with SIEM tools (Microsoft Sentinel, Splunk, etc.) and integrating CASB logs.
- Involvement in cloud security incident detection, investigation, response, and reporting.
- Exposure to Cloud Security Posture Management (CSPM) tools and identity security solutions (Entra ID/Azure AD).
The ideal candidate will
- Demonstrate expert-level understanding of cloud application security , SaaS risk assessment, data protection, and Zero Trust principles.
- Be able to design and mature CASB frameworks, including:
- Cloud governance workflows
- Risk‑based access enforcement
- Data classification and DLP tuning
- Provide leadership in CASB strategy, working with architecture and compliance teams.
- Drive improvements in cloud security posture using actionable insights and metrics.
- Conduct advanced investigations of cloud‑based threats, anomalies, and suspicious access behavior.
- Produce detailed documentation, SOPs, runbooks, and executive-level reports.
- Champion continuous improvement, automation, and best practices across cloud security operations.
Mandatory Certification Required
(At least one required; multiple strongly preferred)
Core Certifications
- Microsoft SC-200 – Security Operations Analyst
- Microsoft SC-400 – Information Protection Administrator
- Netskope Certified Cloud Security Administrator (NCCSA)
- CCSK – Certificate of Cloud Security Knowledge
Preferred Advanced Certifications
- CCSP – Certified Cloud Security Professional
- CISSP – Certified Information Systems Security Professional
- AZ-500 – Microsoft Azure Security Engineer
- Netskope Certified Cloud Security Specialist (NCCSS)
Technical Skills Required
CASB Technologies
- Expert-level skills in:
- o Microsoft Defender for Cloud Apps (MCAS)
- o Netskope CASB and Netskope NewEdge Platform
- Ability to configure and optimize:
- o DLP policies
- o Access and session controls
- o Discovery dashboards and custom reports
- o API and real-time inline controls
- Strong knowledge of Shadow IT governance and SaaS risk scoring.
Technical Skills Required
Cloud & Identity Security
- Strong understanding of:
- o Azure AD / Entra ID
- o Conditional Access
- o Identity Governance
- o OAuth, SAML, SCIM, and modern authentication protocols
- General understanding of AWS and GCP security features is beneficial.
Security Operations & Analytics
- Experience with SIEM platforms such as:
o Microsoft Sentinel, Splunk, or equivalent
- Strong log analysis, threat detection, correlation, and incident handling skills.
- Knowledge of integration between CASB, DLP, EDR, and SOAR platforms.
Networking & Architecture
- Understanding of:
- o Zero Trust architecture
- o SASE components
- o SSL/TLS inspection
- o Reverse proxy technologies
- o API security and cloud architecture principles
- Behavioral / team skills
- Strong communication and stakeholder management skills, including ability to explain complex security concepts in simple terms.
- Analytical mindset with strong problem‑solving and decision‑making skills.
- High level of ownership, accountability, and attention to detail.
- Ability to handle multiple priorities in fast‑paced cloud and security environments.
- Collaborative mindset with a willingness to mentor junior team members.
- Proactive, structured, and self-driven approach to work.
- Strong documentation and presentation abilities.
Similar roles you might like
See all →2K
Global Security Verification Manager
282 KONE Elevator India P.Ltd
Salary not disclosedPosted today
KG
Cyber IAM Managed Service - Saviynt Consultant AR
KPMG Global Services
Salary not disclosedPosted today
KG
Cloud Operations - Consultant
KPMG Global Services
Salary not disclosedPosted today
KG
Cyber IAM Managed Service - Saviynt Assistant Manager AR
KPMG Global Services
Salary not disclosedPosted today
V
Security Engineer III
verizon
Salary not disclosedPosted today
V
Analyst IV-Threat Intel
verizon
Salary not disclosedPosted today
S
Staff Security Incident Response Commander_Hyderabad/Bangalore/Remote
ServiceNow
Salary not disclosedPosted today
HD
IT Security Engineer
Hitachi Digital Global India Private Limited
Salary not disclosedPosted today
This is an external listing. JobSpring does not represent or verify the employer. Report this listing
