Cyber IAM Managed Service - Cloud Security ACON
KPMG Global Services- Location
- Noida, Uttar Pradesh, India
- Workplace
- —
- Employment
- Full Time
- Salary
- —
Posted yesterday
We are looking for a of Cloud Security resource with 2+ years of experience for one of our engagements. The resource must work from our Noida office and willing to work on shifts
Work experience
- 2–6 years in cloud security operations and engineering with progressive responsibility in securing enterprise cloud environments across AWS and Azure.
- Oversee enterprise-scale cloud security architecture, policy governance, and security operations across AWS and Azure environments.
- Lead implementation and management of cloud-native security controls including IAM, security groups, network segmentation, and encryption services.
- Manage day-to-day cloud security operations including monitoring, alert triage, incident response, and remediation coordination across AWS and Azure platforms.
- Drive cloud security posture improvement using CSPM tools (Wiz, Prisma Cloud, or similar); identify misconfigurations, prioritize findings, and track remediation to closure.
- Lead cross-functional teams in cloud security operations, vulnerability management, and compliance initiatives aligned with security standards.
- Drive adherence to defined SLAs and KPIs across cloud security operations; track, report, and continuously improve operational metrics and service delivery standards.
- Manage and track security incidents, service requests, and change management activities through ITSM/ticketing platforms such as ServiceNow, ensuring timely updates, escalations, and closures.
Architect secure cloud networking solutions
design VPC/VNet topologies, implement transit gateways, Azure Firewall, AWS Network Firewall, and Network Virtual Appliances (NVAs).
- Coordinate security incident response across global teams; develop and refine playbooks, SLAs, and escalation procedures for cloud environments.
- Develop and maintain executive dashboards presenting cloud security metrics, risk posture, and compliance status to senior leadership.
The ideal candidate will
- Demonstrate solid understanding of cloud security architectures across AWS and Azure, with a strong grasp of Zero Trust principles and defense-in-depth strategies.
- Design secure cloud topologies, define security governance workflows, and guide risk-based access controls.
- Produce clear SOPs, runbooks, security assessment reports, and technical design documents for cloud environments.
- Collaborate with compliance, architecture, DevOps, and operations teams to ensure security by design.
- Drive continuous improvements via automation, Infrastructure as Code (IaC), and actionable security metrics.
- Effectively manage day-to-day security operations while balancing strategic initiatives and stakeholder expectations.
- Demonstrate ability to define, monitor, and drive SLA/KPI compliance across security operations, ensuring consistent and measurable service delivery.
Mandatory Certification Required
(At least one required; multiple strongly preferred)
Core Certifications
AWS Certified Solutions Architect – Associate
- AZ-500 – Microsoft Certified Azure Security Engineer – Associate
Wiz Certified Cloud Fundamentals
Preferred Advanced Certifications
AWS Certified Security – Specialty
Microsoft Certified: Cloud and AI Security Engineer Associate
Certified Cloud Security Professional (CCSP)
- Certified Information Systems Security Professional (CISSP).
Technical Skills Required
Cloud Networking and Architecture
Hands-on experience designing AWS VPC architectures
security groups, NACLs, transit gateways, VPC peering, PrivateLink, and Direct Connect.
- Proficiency with Azure Virtual Networks (VNets), NSGs, Azure Firewall, User-Defined Routes (UDRs), Application Gateway, and ExpressRoute.
- Understanding of hybrid cloud connectivity, micro-segmentation, and secure network architectures across AWS and Azure.
- Familiarity with Zero Trust architecture principles and cloud-native security design patterns.
Security Operations & Analytics
- Hands-on experience managing day-to-day cloud security operations including monitoring security alerts, triaging incidents, and coordinating remediation activities across AWS and Azure.
- Strong ability to perform security assessments, configuration reviews, and compliance checks within AWS and Azure environments.
- Experience investigating findings in cloud environments, conducting root cause analysis, and implementing preventive controls.
- Proficiency in reviewing and responding to security findings from CSPM tools (Wiz, Prisma Cloud, or similar) and ensuring timely resolution within defined SLAs.
- Experience working with ITSM/ticketing tools such as ServiceNow to log, track, prioritize, and close security incidents and service requests in line with defined SLAs and KPIs.
DevSecOps & Automation
- Familiarity with Infrastructure as Code (Terraform, CloudFormation, ARM templates) and integrating security controls into IaC pipelines.
- Understanding of CI/CD security integration, container security (Docker, Kubernetes), and API security.
- Experience with automation scripting (Python, PowerShell, Lambda, or Azure Functions) to support and improve security operations.
Behavioral / team skills
- Strong communication and stakeholder management skills, including ability to explain complex security concepts in simple terms.
- Analytical mindset with strong problem‑solving and decision‑making skills.
- High level of ownership, accountability, and attention to detail.
- Ability to handle multiple priorities in fast‑paced cloud and security environments.
- Collaborative mindset with a willingness to mentor junior team members.
- Proactive, structured, and self-driven approach to work.
- Strong documentation and presentation abilities.
Work experience
- 2–6 years in cloud security operations and engineering with progressive responsibility in securing enterprise cloud environments across AWS and Azure.
- Oversee enterprise-scale cloud security architecture, policy governance, and security operations across AWS and Azure environments.
- Lead implementation and management of cloud-native security controls including IAM, security groups, network segmentation, and encryption services.
- Manage day-to-day cloud security operations including monitoring, alert triage, incident response, and remediation coordination across AWS and Azure platforms.
- Drive cloud security posture improvement using CSPM tools (Wiz, Prisma Cloud, or similar); identify misconfigurations, prioritize findings, and track remediation to closure.
- Lead cross-functional teams in cloud security operations, vulnerability management, and compliance initiatives aligned with security standards.
- Drive adherence to defined SLAs and KPIs across cloud security operations; track, report, and continuously improve operational metrics and service delivery standards.
- Manage and track security incidents, service requests, and change management activities through ITSM/ticketing platforms such as ServiceNow, ensuring timely updates, escalations, and closures.
Architect secure cloud networking solutions
design VPC/VNet topologies, implement transit gateways, Azure Firewall, AWS Network Firewall, and Network Virtual Appliances (NVAs).
- Coordinate security incident response across global teams; develop and refine playbooks, SLAs, and escalation procedures for cloud environments.
- Develop and maintain executive dashboards presenting cloud security metrics, risk posture, and compliance status to senior leadership.
The ideal candidate will
- Demonstrate solid understanding of cloud security architectures across AWS and Azure, with a strong grasp of Zero Trust principles and defense-in-depth strategies.
- Design secure cloud topologies, define security governance workflows, and guide risk-based access controls.
- Produce clear SOPs, runbooks, security assessment reports, and technical design documents for cloud environments.
- Collaborate with compliance, architecture, DevOps, and operations teams to ensure security by design.
- Drive continuous improvements via automation, Infrastructure as Code (IaC), and actionable security metrics.
- Effectively manage day-to-day security operations while balancing strategic initiatives and stakeholder expectations.
- Demonstrate ability to define, monitor, and drive SLA/KPI compliance across security operations, ensuring consistent and measurable service delivery.
Mandatory Certification Required
(At least one required; multiple strongly preferred)
Core Certifications
AWS Certified Solutions Architect – Associate
- AZ-500 – Microsoft Certified Azure Security Engineer – Associate
Wiz Certified Cloud Fundamentals
Preferred Advanced Certifications
AWS Certified Security – Specialty
Microsoft Certified: Cloud and AI Security Engineer Associate
Certified Cloud Security Professional (CCSP)
- Certified Information Systems Security Professional (CISSP).
Technical Skills Required
Cloud Networking and Architecture
Hands-on experience designing AWS VPC architectures
security groups, NACLs, transit gateways, VPC peering, PrivateLink, and Direct Connect.
- Proficiency with Azure Virtual Networks (VNets), NSGs, Azure Firewall, User-Defined Routes (UDRs), Application Gateway, and ExpressRoute.
- Understanding of hybrid cloud connectivity, micro-segmentation, and secure network architectures across AWS and Azure.
- Familiarity with Zero Trust architecture principles and cloud-native security design patterns.
Security Operations & Analytics
- Hands-on experience managing day-to-day cloud security operations including monitoring security alerts, triaging incidents, and coordinating remediation activities across AWS and Azure.
- Strong ability to perform security assessments, configuration reviews, and compliance checks within AWS and Azure environments.
- Experience investigating findings in cloud environments, conducting root cause analysis, and implementing preventive controls.
- Proficiency in reviewing and responding to security findings from CSPM tools (Wiz, Prisma Cloud, or similar) and ensuring timely resolution within defined SLAs.
- Experience working with ITSM/ticketing tools such as ServiceNow to log, track, prioritize, and close security incidents and service requests in line with defined SLAs and KPIs.
DevSecOps & Automation
- Familiarity with Infrastructure as Code (Terraform, CloudFormation, ARM templates) and integrating security controls into IaC pipelines.
- Understanding of CI/CD security integration, container security (Docker, Kubernetes), and API security.
- Experience with automation scripting (Python, PowerShell, Lambda, or Azure Functions) to support and improve security operations.
Behavioral / team skills
- Strong communication and stakeholder management skills, including ability to explain complex security concepts in simple terms.
- Analytical mindset with strong problem‑solving and decision‑making skills.
- High level of ownership, accountability, and attention to detail.
- Ability to handle multiple priorities in fast‑paced cloud and security environments.
- Collaborative mindset with a willingness to mentor junior team members.
- Proactive, structured, and self-driven approach to work.
- Strong documentation and presentation abilities.
Skills
- IAM
- AWS
- Azure
- Wiz
- Prisma Cloud
- ServiceNow
- VPC
- Azure Firewall
- Zero Trust
- SOPS
- CISSP
- Terraform
- AWS CloudFormation
- ARM Templates
- Docker
- Kubernetes
- Python
- PowerShell
- AWS Lambda
- Azure Functions
More jobs at KPMG Global Services
All 143AWS Cloud Engineer Consultant
KPMG Global Services · Pune, Maharashtra, India · India · Hyderabad, Telangana, India +1 · today
Assistant Manager - IT Controls
KPMG Global Services · Bangalore, Karnataka, India · today
KGS - Cyber Cloud- AWS/Azure/GCP Cloud Security - Associate Consultant - Hyderabad
KPMG Global Services · Hyderabad, Telangana, India · today
Digital Finance - PowerBI Developer - Senior
KPMG Global Services · Bangalore, Karnataka, India · today
DEX-SIAM Manager
KPMG Global Services · Bangalore, Karnataka, India · today
Similar roles
Service Order Management Sr. Specialist
Smiths Group · Bengaluru, KA, India · yesterday
Technical Support Services
Sutherland · Hyderabad, TS, India · 5d ago
Survey Programming Consultant
Cint · Gurugram, HR, India · 10d ago
Associate - Custom Analytics
Intuitive · Bengaluru, KA, India · 10d ago
Automation Developer
Avery Dennison · Bengaluru, KA, India · 10d ago
Associate QA Consultant, Amazon Connect / Contact Center QA
NeuraFlash, Part of Accenture · India (Bengaluru, Chennai, Gurugram, Hyderabad, Noida, · Pune Only) · 14d ago