← Back to job listings

CASB - Senior Associate
KPMG Global Services · Noida, Uttar Pradesh, India
About The Role
Educational qualifications
- Bachelor’s degree in Computer Science, Information Security, Information Technology , or a related field.
- Master’s degree in Cybersecurity, Cloud Computing, or Information Systems is preferred.
- Equivalent practical experience may be considered for exceptional candidates.
- •
- Work experience
- 5–7 years of hands‑on experience in Cloud Security, Information Security, or Security Operations roles.
- Deep, proven experience working with:
- Microsoft Defender for Cloud Apps (Microsoft CASB / MCAS)
- Netskope Security Cloud / Netskope CASB
- Experience architecting, implementing, tuning, and maintaining CASB solutions at scale.
- Hands‑on involvement with CASB:
- Policy configuration (DLP, Access Control, Threat Protection)
- API integrations with SaaS applications
- Cloud app discovery and Shadow IT governance
- Session controls and conditional access workflows
- Experience working with SIEM tools (Microsoft Sentinel, Splunk, etc.) and integrating CASB logs.
- Involvement in cloud security incident detection, investigation, response, and reporting.
- Exposure to Cloud Security Posture Management (CSPM) tools and identity security solutions (Entra ID/Azure AD).
The ideal candidate will
- Demonstrate expert-level understanding of cloud application security , SaaS risk assessment, data protection, and Zero Trust principles.
- Be able to design and mature CASB frameworks, including:
- Cloud governance workflows
- Risk‑based access enforcement
- Data classification and DLP tuning
- Provide leadership in CASB strategy, working with architecture and compliance teams.
- Drive improvements in cloud security posture using actionable insights and metrics.
- Conduct advanced investigations of cloud‑based threats, anomalies, and suspicious access behavior.
- Produce detailed documentation, SOPs, runbooks, and executive-level reports.
- Champion continuous improvement, automation, and best practices across cloud security operations.
Mandatory Certification Required
(At least one required; multiple strongly preferred)
Core Certifications
- Microsoft SC-200 – Security Operations Analyst
- Microsoft SC-400 – Information Protection Administrator
- Netskope Certified Cloud Security Administrator (NCCSA)
- CCSK – Certificate of Cloud Security Knowledge
Preferred Advanced Certifications
- CCSP – Certified Cloud Security Professional
- CISSP – Certified Information Systems Security Professional
- AZ-500 – Microsoft Azure Security Engineer
- Netskope Certified Cloud Security Specialist (NCCSS)
Technical Skills Required
CASB Technologies
- Expert-level skills in:
- o Microsoft Defender for Cloud Apps (MCAS)
- o Netskope CASB and Netskope NewEdge Platform
- Ability to configure and optimize:
- o DLP policies
- o Access and session controls
- o Discovery dashboards and custom reports
- o API and real-time inline controls
- Strong knowledge of Shadow IT governance and SaaS risk scoring.
Technical Skills Required
Cloud & Identity Security
- Strong understanding of:
- o Azure AD / Entra ID
- o Conditional Access
- o Identity Governance
- o OAuth, SAML, SCIM, and modern authentication protocols
- General understanding of AWS and GCP security features is beneficial.
Security Operations & Analytics
- Experience with SIEM platforms such as:
o Microsoft Sentinel, Splunk, or equivalent
- Strong log analysis, threat detection, correlation, and incident handling skills.
- Knowledge of integration between CASB, DLP, EDR, and SOAR platforms.
Networking & Architecture
- Understanding of:
- o Zero Trust architecture
- o SASE components
- o SSL/TLS inspection
- o Reverse proxy technologies
- o API security and cloud architecture principles
- Behavioral / team skills
- Strong communication and stakeholder management skills, including ability to explain complex security concepts in simple terms.
- Analytical mindset with strong problem‑solving and decision‑making skills.
- High level of ownership, accountability, and attention to detail.
- Ability to handle multiple priorities in fast‑paced cloud and security environments.
- Collaborative mindset with a willingness to mentor junior team members.
- Proactive, structured, and self-driven approach to work.
- Strong documentation and presentation abilities.
Educational qualifications
- Bachelor’s degree in Computer Science, Information Security, Information Technology , or a related field.
- Master’s degree in Cybersecurity, Cloud Computing, or Information Systems is preferred.
- Equivalent practical experience may be considered for exceptional candidates.
- •
- Work experience
- 5–7 years of hands‑on experience in Cloud Security, Information Security, or Security Operations roles.
- Deep, proven experience working with:
- Microsoft Defender for Cloud Apps (Microsoft CASB / MCAS)
- Netskope Security Cloud / Netskope CASB
- Experience architecting, implementing, tuning, and maintaining CASB solutions at scale.
- Hands‑on involvement with CASB:
- Policy configuration (DLP, Access Control, Threat Protection)
- API integrations with SaaS applications
- Cloud app discovery and Shadow IT governance
- Session controls and conditional access workflows
- Experience working with SIEM tools (Microsoft Sentinel, Splunk, etc.) and integrating CASB logs.
- Involvement in cloud security incident detection, investigation, response, and reporting.
- Exposure to Cloud Security Posture Management (CSPM) tools and identity security solutions (Entra ID/Azure AD).
The ideal candidate will
- Demonstrate expert-level understanding of cloud application security , SaaS risk assessment, data protection, and Zero Trust principles.
- Be able to design and mature CASB frameworks, including:
- Cloud governance workflows
- Risk‑based access enforcement
- Data classification and DLP tuning
- Provide leadership in CASB strategy, working with architecture and compliance teams.
- Drive improvements in cloud security posture using actionable insights and metrics.
- Conduct advanced investigations of cloud‑based threats, anomalies, and suspicious access behavior.
- Produce detailed documentation, SOPs, runbooks, and executive-level reports.
- Champion continuous improvement, automation, and best practices across cloud security operations.
Mandatory Certification Required
(At least one required; multiple strongly preferred)
Core Certifications
- Microsoft SC-200 – Security Operations Analyst
- Microsoft SC-400 – Information Protection Administrator
- Netskope Certified Cloud Security Administrator (NCCSA)
- CCSK – Certificate of Cloud Security Knowledge
Preferred Advanced Certifications
- CCSP – Certified Cloud Security Professional
- CISSP – Certified Information Systems Security Professional
- AZ-500 – Microsoft Azure Security Engineer
- Netskope Certified Cloud Security Specialist (NCCSS)
Technical Skills Required
CASB Technologies
- Expert-level skills in:
- o Microsoft Defender for Cloud Apps (MCAS)
- o Netskope CASB and Netskope NewEdge Platform
- Ability to configure and optimize:
- o DLP policies
- o Access and session controls
- o Discovery dashboards and custom reports
- o API and real-time inline controls
- Strong knowledge of Shadow IT governance and SaaS risk scoring.
Technical Skills Required
Cloud & Identity Security
- Strong understanding of:
- o Azure AD / Entra ID
- o Conditional Access
- o Identity Governance
- o OAuth, SAML, SCIM, and modern authentication protocols
- General understanding of AWS and GCP security features is beneficial.
Security Operations & Analytics
- Experience with SIEM platforms such as:
o Microsoft Sentinel, Splunk, or equivalent
- Strong log analysis, threat detection, correlation, and incident handling skills.
- Knowledge of integration between CASB, DLP, EDR, and SOAR platforms.
Networking & Architecture
- Understanding of:
- o Zero Trust architecture
- o SASE components
- o SSL/TLS inspection
- o Reverse proxy technologies
- o API security and cloud architecture principles
- Behavioral / team skills
- Strong communication and stakeholder management skills, including ability to explain complex security concepts in simple terms.
- Analytical mindset with strong problem‑solving and decision‑making skills.
- High level of ownership, accountability, and attention to detail.
- Ability to handle multiple priorities in fast‑paced cloud and security environments.
- Collaborative mindset with a willingness to mentor junior team members.
- Proactive, structured, and self-driven approach to work.
- Strong documentation and presentation abilities.
Educational qualifications
- Bachelor’s degree in Computer Science, Information Security, Information Technology , or a related field.
- Master’s degree in Cybersecurity, Cloud Computing, or Information Systems is preferred.
- Equivalent practical experience may be considered for exceptional candidates.
- •
- Work experience
- 5–7 years of hands‑on experience in Cloud Security, Information Security, or Security Operations roles.
- Deep, proven experience working with:
- Microsoft Defender for Cloud Apps (Microsoft CASB / MCAS)
- Netskope Security Cloud / Netskope CASB
- Experience architecting, implementing, tuning, and maintaining CASB solutions at scale.
- Hands‑on involvement with CASB:
- Policy configuration (DLP, Access Control, Threat Protection)
- API integrations with SaaS applications
- Cloud app discovery and Shadow IT governance
- Session controls and conditional access workflows
- Experience working with SIEM tools (Microsoft Sentinel, Splunk, etc.) and integrating CASB logs.
- Involvement in cloud security incident detection, investigation, response, and reporting.
- Exposure to Cloud Security Posture Management (CSPM) tools and identity security solutions (Entra ID/Azure AD).
The ideal candidate will
- Demonstrate expert-level understanding of cloud application security , SaaS risk assessment, data protection, and Zero Trust principles.
- Be able to design and mature CASB frameworks, including:
- Cloud governance workflows
- Risk‑based access enforcement
- Data classification and DLP tuning
- Provide leadership in CASB strategy, working with architecture and compliance teams.
- Drive improvements in cloud security posture using actionable insights and metrics.
- Conduct advanced investigations of cloud‑based threats, anomalies, and suspicious access behavior.
- Produce detailed documentation, SOPs, runbooks, and executive-level reports.
- Champion continuous improvement, automation, and best practices across cloud security operations.
Mandatory Certification Required
(At least one required; multiple strongly preferred)
Core Certifications
- Microsoft SC-200 – Security Operations Analyst
- Microsoft SC-400 – Information Protection Administrator
- Netskope Certified Cloud Security Administrator (NCCSA)
- CCSK – Certificate of Cloud Security Knowledge
Preferred Advanced Certifications
- CCSP – Certified Cloud Security Professional
- CISSP – Certified Information Systems Security Professional
- AZ-500 – Microsoft Azure Security Engineer
- Netskope Certified Cloud Security Specialist (NCCSS)
Technical Skills Required
CASB Technologies
- Expert-level skills in:
- o Microsoft Defender for Cloud Apps (MCAS)
- o Netskope CASB and Netskope NewEdge Platform
- Ability to configure and optimize:
- o DLP policies
- o Access and session controls
- o Discovery dashboards and custom reports
- o API and real-time inline controls
- Strong knowledge of Shadow IT governance and SaaS risk scoring.
Technical Skills Required
Cloud & Identity Security
- Strong understanding of:
- o Azure AD / Entra ID
- o Conditional Access
- o Identity Governance
- o OAuth, SAML, SCIM, and modern authentication protocols
- General understanding of AWS and GCP security features is beneficial.
Security Operations & Analytics
- Experience with SIEM platforms such as:
o Microsoft Sentinel, Splunk, or equivalent
- Strong log analysis, threat detection, correlation, and incident handling skills.
- Knowledge of integration between CASB, DLP, EDR, and SOAR platforms.
Networking & Architecture
- Understanding of:
- o Zero Trust architecture
- o SASE components
- o SSL/TLS inspection
- o Reverse proxy technologies
- o API security and cloud architecture principles
- Behavioral / team skills
- Strong communication and stakeholder management skills, including ability to explain complex security concepts in simple terms.
- Analytical mindset with strong problem‑solving and decision‑making skills.
- High level of ownership, accountability, and attention to detail.
- Ability to handle multiple priorities in fast‑paced cloud and security environments.
- Collaborative mindset with a willingness to mentor junior team members.
- Proactive, structured, and self-driven approach to work.
- Strong documentation and presentation abilities.
Similar roles you might like
See all →KG
Cyber IAM Managed Service - Saviynt Consultant AR
KPMG Global Services
Salary not disclosedPosted today
KG
Cloud Operations - Consultant
KPMG Global Services
Salary not disclosedPosted today
KG
Cyber IAM Managed Service - Saviynt Assistant Manager AR
KPMG Global Services
Salary not disclosedPosted today
V
Security Engineer III
verizon
Salary not disclosedPosted today
V
Analyst IV-Threat Intel
verizon
Salary not disclosedPosted today
S
Staff Security Incident Response Commander_Hyderabad/Bangalore/Remote
ServiceNow
Salary not disclosedPosted today
HD
IT Security Engineer
Hitachi Digital Global India Private Limited
Salary not disclosedPosted today
I
Security Analyst II
Iaings
Salary not disclosedPosted today
This is an external listing. JobSpring does not represent or verify the employer. Report this listing
