JobConnect

Senior Associate - CASB

  • KPMG India
  • Noida, India
  • INR 2,500,000 – INR 4,000,000

Educational qualifications

•Bachelor’s degree in Computer Science, Information Security, Information Technology, or a related field.

•Master’s degree in Cybersecurity, Cloud Computing, or Information Systems is preferred.

•Equivalent practical experience may be considered for exceptional candidates.

Work experience

5–7 years of hands‑on experience in Cloud Security, Information Security, or Security Operations roles.

•Deep, proven experience working with:

Microsoft Defender for Cloud Apps (Microsoft CASB / MCAS)

Netskope Security Cloud / Netskope CASB

•Experience architecting, implementing, tuning, and maintaining CASB solutions at scale.

•Hands‑on involvement with CASB:

•Policy configuration (DLP, Access Control, Threat Protection)

•API integrations with SaaS applications

•Cloud app discovery and Shadow IT governance

•Session controls and conditional access workflows

•Experience working with SIEM tools (Microsoft Sentinel, Splunk, etc.) and integrating CASB logs.

•Involvement in cloud security incident detection, investigation, response, and reporting.

•Exposure to Cloud Security Posture Management (CSPM) tools and identity security solutions (Entra ID/Azure AD).

The ideal candidate will:

•Demonstrate expert-level understanding of cloud application security, SaaS risk assessment, data protection, and Zero Trust principles.

•Be able to design and mature CASB frameworks, including:

•Cloud governance workflows

•Risk‑based access enforcement

•Data classification and DLP tuning

•Provide leadership in CASB strategy, working with architecture and compliance teams.

•Drive improvements in cloud security posture using actionable insights and metrics.

•Conduct advanced investigations of cloud‑based threats, anomalies, and suspicious access behavior.

•Produce detailed documentation, SOPs, runbooks, and executive-level reports.

•Champion continuous improvement, automation, and best practices across cloud security operations.

Mandatory Certification Required:

(At least one required; multiple strongly preferred)

Core Certifications

·Microsoft SC-200 – Security Operations Analyst

·Microsoft SC-400 – Information Protection Administrator

·Netskope Certified Cloud Security Administrator (NCCSA)

·CCSK – Certificate of Cloud Security Knowledge

Preferred Advanced Certifications

·CCSP – Certified Cloud Security Professional

·CISSP – Certified Information Systems Security Professional

·AZ-500 – Microsoft Azure Security Engineer

·Netskope Certified Cloud Security Specialist (NCCSS)

Technical Skills Required:

CASB Technologies

·Expert-level skills in:

oMicrosoft Defender for Cloud Apps (MCAS)

oNetskope CASB and Netskope NewEdge Platform

·Ability to configure and optimize:

oDLP policies

oAccess and session controls

oDiscovery dashboards and custom reports

oAPI and real-time inline controls

·Strong knowledge of Shadow IT governance and SaaS risk scoring.

Technical Skills Required:

Cloud & Identity Security

·Strong understanding of:

oAzure AD / Entra ID

oConditional Access

oIdentity Governance

oOAuth, SAML, SCIM, and modern authentication protocols

·General understanding of AWS and GCP security features is beneficial.

Security Operations & Analytics

·Experience with SIEM platforms such as:

oMicrosoft Sentinel, Splunk, or equivalent

·Strong log analysis, threat detection, correlation, and incident handling skills.

·Knowledge of integration between CASB, DLP, EDR, and SOAR platforms.

Networking & Architecture

·Understanding of:

oZero Trust architecture

oSASE components

oSSL/TLS inspection

oReverse proxy technologies

oAPI security and cloud architecture principles

Behavioral / team skills

•Strong communication and stakeholder management skills, including ability to explain complex security concepts in simple terms.

•Analytical mindset with strong problem‑solving and decision‑making skills.

•High level of ownership, accountability, and attention to detail.

•Ability to handle multiple priorities in fast‑paced cloud and security environments.

•Collaborative mindset with a willingness to mentor junior team members.

•Proactive, structured, and self-driven approach to work.

•Strong documentation and presentation abilities.

Educational qualifications

•Bachelor’s degree in Computer Science, Information Security, Information Technology, or a related field.

•Master’s degree in Cybersecurity, Cloud Computing, or Information Systems is preferred.

•Equivalent practical experience may be considered for exceptional candidates.

Work experience

5–7 years of hands‑on experience in Cloud Security, Information Security, or Security Operations roles.

•Deep, proven experience working with:

Microsoft Defender for Cloud Apps (Microsoft CASB / MCAS)

Netskope Security Cloud / Netskope CASB

•Experience architecting, implementing, tuning, and maintaining CASB solutions at scale.

•Hands‑on involvement with CASB:

•Policy configuration (DLP, Access Control, Threat Protection)

•API integrations with SaaS applications

•Cloud app discovery and Shadow IT governance

•Session controls and conditional access workflows

•Experience working with SIEM tools (Microsoft Sentinel, Splunk, etc.) and integrating CASB logs.

•Involvement in cloud security incident detection, investigation, response, and reporting.

•Exposure to Cloud Security Posture Management (CSPM) tools and identity security solutions (Entra ID/Azure AD).

The ideal candidate will:

•Demonstrate expert-level understanding of cloud application security, SaaS risk assessment, data protection, and Zero Trust principles.

•Be able to design and mature CASB frameworks, including:

•Cloud governance workflows

•Risk‑based access enforcement

•Data classification and DLP tuning

•Provide leadership in CASB strategy, working with architecture and compliance teams.

•Drive improvements in cloud security posture using actionable insights and metrics.

•Conduct advanced investigations of cloud‑based threats, anomalies, and suspicious access behavior.

•Produce detailed documentation, SOPs, runbooks, and executive-level reports.

•Champion continuous improvement, automation, and best practices across cloud security operations.

Mandatory Certification Required:

(At least one required; multiple strongly preferred)

Core Certifications

·Microsoft SC-200 – Security Operations Analyst

·Microsoft SC-400 – Information Protection Administrator

·Netskope Certified Cloud Security Administrator (NCCSA)

·CCSK – Certificate of Cloud Security Knowledge

Preferred Advanced Certifications

·CCSP – Certified Cloud Security Professional

·CISSP – Certified Information Systems Security Professional

·AZ-500 – Microsoft Azure Security Engineer

·Netskope Certified Cloud Security Specialist (NCCSS)

Technical Skills Required:

CASB Technologies

·Expert-level skills in:

oMicrosoft Defender for Cloud Apps (MCAS)

oNetskope CASB and Netskope NewEdge Platform

·Ability to configure and optimize:

oDLP policies

oAccess and session controls

oDiscovery dashboards and custom reports

oAPI and real-time inline controls

·Strong knowledge of Shadow IT governance and SaaS risk scoring.

Technical Skills Required:

Cloud & Identity Security

·Strong understanding of:

oAzure AD / Entra ID

oConditional Access

oIdentity Governance

oOAuth, SAML, SCIM, and modern authentication protocols

·General understanding of AWS and GCP security features is beneficial.

Security Operations & Analytics

·Experience with SIEM platforms such as:

oMicrosoft Sentinel, Splunk, or equivalent

·Strong log analysis, threat detection, correlation, and incident handling skills.

·Knowledge of integration between CASB, DLP, EDR, and SOAR platforms.

Networking & Architecture

·Understanding of:

oZero Trust architecture

oSASE components

oSSL/TLS inspection

oReverse proxy technologies

oAPI security and cloud architecture principles

Behavioral / team skills

•Strong communication and stakeholder management skills, including ability to explain complex security concepts in simple terms.

•Analytical mindset with strong problem‑solving and decision‑making skills.

•High level of ownership, accountability, and attention to detail.

•Ability to handle multiple priorities in fast‑paced cloud and security environments.

•Collaborative mindset with a willingness to mentor junior team members.

•Proactive, structured, and self-driven approach to work.

•Strong documentation and presentation abilities.

Educational qualifications

•Bachelor’s degree in Computer Science, Information Security, Information Technology, or a related field.

•Master’s degree in Cybersecurity, Cloud Computing, or Information Systems is preferred.

•Equivalent practical experience may be considered for exceptional candidates.

Work experience

5–7 years of hands‑on experience in Cloud Security, Information Security, or Security Operations roles.

•Deep, proven experience working with:

Microsoft Defender for Cloud Apps (Microsoft CASB / MCAS)

Netskope Security Cloud / Netskope CASB

•Experience architecting, implementing, tuning, and maintaining CASB solutions at scale.

•Hands‑on involvement with CASB:

•Policy configuration (DLP, Access Control, Threat Protection)

•API integrations with SaaS applications

•Cloud app discovery and Shadow IT governance

•Session controls and conditional access workflows

•Experience working with SIEM tools (Microsoft Sentinel, Splunk, etc.) and integrating CASB logs.

•Involvement in cloud security incident detection, investigation, response, and reporting.

•Exposure to Cloud Security Posture Management (CSPM) tools and identity security solutions (Entra ID/Azure AD).

The ideal candidate will:

•Demonstrate expert-level understanding of cloud application security, SaaS risk assessment, data protection, and Zero Trust principles.

•Be able to design and mature CASB frameworks, including:

•Cloud governance workflows

•Risk‑based access enforcement

•Data classification and DLP tuning

•Provide leadership in CASB strategy, working with architecture and compliance teams.

•Drive improvements in cloud security posture using actionable insights and metrics.

•Conduct advanced investigations of cloud‑based threats, anomalies, and suspicious access behavior.

•Produce detailed documentation, SOPs, runbooks, and executive-level reports.

•Champion continuous improvement, automation, and best practices across cloud security operations.

Mandatory Certification Required:

(At least one required; multiple strongly preferred)

Core Certifications

·Microsoft SC-200 – Security Operations Analyst

·Microsoft SC-400 – Information Protection Administrator

·Netskope Certified Cloud Security Administrator (NCCSA)

·CCSK – Certificate of Cloud Security Knowledge

Preferred Advanced Certifications

·CCSP – Certified Cloud Security Professional

·CISSP – Certified Information Systems Security Professional

·AZ-500 – Microsoft Azure Security Engineer

·Netskope Certified Cloud Security Specialist (NCCSS)

Technical Skills Required:

CASB Technologies

·Expert-level skills in:

oMicrosoft Defender for Cloud Apps (MCAS)

oNetskope CASB and Netskope NewEdge Platform

·Ability to configure and optimize:

oDLP policies

oAccess and session controls

oDiscovery dashboards and custom reports

oAPI and real-time inline controls

·Strong knowledge of Shadow IT governance and SaaS risk scoring.

Technical Skills Required:

Cloud & Identity Security

·Strong understanding of:

oAzure AD / Entra ID

oConditional Access

oIdentity Governance

oOAuth, SAML, SCIM, and modern authentication protocols

·General understanding of AWS and GCP security features is beneficial.

Security Operations & Analytics

·Experience with SIEM platforms such as:

oMicrosoft Sentinel, Splunk, or equivalent

·Strong log analysis, threat detection, correlation, and incident handling skills.

·Knowledge of integration between CASB, DLP, EDR, and SOAR platforms.

Networking & Architecture

·Understanding of:

oZero Trust architecture

oSASE components

oSSL/TLS inspection

oReverse proxy technologies

oAPI security and cloud architecture principles

Behavioral / team skills

•Strong communication and stakeholder management skills, including ability to explain complex security concepts in simple terms.

•Analytical mindset with strong problem‑solving and decision‑making skills.

•High level of ownership, accountability, and attention to detail.

•Ability to handle multiple priorities in fast‑paced cloud and security environments.

•Collaborative mindset with a willingness to mentor junior team members.

•Proactive, structured, and self-driven approach to work.

•Strong documentation and presentation abilities.

Skills

  • Microsoft Defender for Cloud Apps
  • Netskope
  • SIEM
  • Cloud Access Security Broker (CASB)
  • Data Loss Prevention (DLP)
  • Zero Trust
  • Microsoft Sentinel

Related jobs

KPMG IndiaApply for this job