JobHabor

Cyber IAM Managed Service - Cloud Security ACON

KPMG Global Services
Location
Noida, Uttar Pradesh, India
Workplace
Employment
Full Time
Salary
Apply on the employer’s site

Posted yesterday

We are looking for a of Cloud Security resource with 2+ years of experience for one of our engagements. The resource must work from our Noida office and willing to work on shifts

Work experience

  • 2–6 years in cloud security operations and engineering with progressive responsibility in securing enterprise cloud environments across AWS and Azure.
  • Oversee enterprise-scale cloud security architecture, policy governance, and security operations across AWS and Azure environments.
  • Lead implementation and management of cloud-native security controls including IAM, security groups, network segmentation, and encryption services.
  • Manage day-to-day cloud security operations including monitoring, alert triage, incident response, and remediation coordination across AWS and Azure platforms.
  • Drive cloud security posture improvement using CSPM tools (Wiz, Prisma Cloud, or similar); identify misconfigurations, prioritize findings, and track remediation to closure.
  • Lead cross-functional teams in cloud security operations, vulnerability management, and compliance initiatives aligned with security standards.
  • Drive adherence to defined SLAs and KPIs across cloud security operations; track, report, and continuously improve operational metrics and service delivery standards.
  • Manage and track security incidents, service requests, and change management activities through ITSM/ticketing platforms such as ServiceNow, ensuring timely updates, escalations, and closures.

Architect secure cloud networking solutions

design VPC/VNet topologies, implement transit gateways, Azure Firewall, AWS Network Firewall, and Network Virtual Appliances (NVAs).

  • Coordinate security incident response across global teams; develop and refine playbooks, SLAs, and escalation procedures for cloud environments.
  • Develop and maintain executive dashboards presenting cloud security metrics, risk posture, and compliance status to senior leadership.

The ideal candidate will

  • Demonstrate solid understanding of cloud security architectures across AWS and Azure, with a strong grasp of Zero Trust principles and defense-in-depth strategies.
  • Design secure cloud topologies, define security governance workflows, and guide risk-based access controls.
  • Produce clear SOPs, runbooks, security assessment reports, and technical design documents for cloud environments.
  • Collaborate with compliance, architecture, DevOps, and operations teams to ensure security by design.
  • Drive continuous improvements via automation, Infrastructure as Code (IaC), and actionable security metrics.
  • Effectively manage day-to-day security operations while balancing strategic initiatives and stakeholder expectations.
  • Demonstrate ability to define, monitor, and drive SLA/KPI compliance across security operations, ensuring consistent and measurable service delivery.

Mandatory Certification Required

(At least one required; multiple strongly preferred)

Core Certifications

AWS Certified Solutions Architect – Associate

  • AZ-500 – Microsoft Certified Azure Security Engineer – Associate

Wiz Certified Cloud Fundamentals

Preferred Advanced Certifications

AWS Certified Security – Specialty

Microsoft Certified: Cloud and AI Security Engineer Associate

Certified Cloud Security Professional (CCSP)

  • Certified Information Systems Security Professional (CISSP).

Technical Skills Required

Cloud Networking and Architecture

Hands-on experience designing AWS VPC architectures

security groups, NACLs, transit gateways, VPC peering, PrivateLink, and Direct Connect.

  • Proficiency with Azure Virtual Networks (VNets), NSGs, Azure Firewall, User-Defined Routes (UDRs), Application Gateway, and ExpressRoute.
  • Understanding of hybrid cloud connectivity, micro-segmentation, and secure network architectures across AWS and Azure.
  • Familiarity with Zero Trust architecture principles and cloud-native security design patterns.

Security Operations & Analytics

  • Hands-on experience managing day-to-day cloud security operations including monitoring security alerts, triaging incidents, and coordinating remediation activities across AWS and Azure.
  • Strong ability to perform security assessments, configuration reviews, and compliance checks within AWS and Azure environments.
  • Experience investigating findings in cloud environments, conducting root cause analysis, and implementing preventive controls.
  • Proficiency in reviewing and responding to security findings from CSPM tools (Wiz, Prisma Cloud, or similar) and ensuring timely resolution within defined SLAs.
  • Experience working with ITSM/ticketing tools such as ServiceNow to log, track, prioritize, and close security incidents and service requests in line with defined SLAs and KPIs.

DevSecOps & Automation

  • Familiarity with Infrastructure as Code (Terraform, CloudFormation, ARM templates) and integrating security controls into IaC pipelines.
  • Understanding of CI/CD security integration, container security (Docker, Kubernetes), and API security.
  • Experience with automation scripting (Python, PowerShell, Lambda, or Azure Functions) to support and improve security operations.

Behavioral / team skills

  • Strong communication and stakeholder management skills, including ability to explain complex security concepts in simple terms.
  • Analytical mindset with strong problem‑solving and decision‑making skills.
  • High level of ownership, accountability, and attention to detail.
  • Ability to handle multiple priorities in fast‑paced cloud and security environments.
  • Collaborative mindset with a willingness to mentor junior team members.
  • Proactive, structured, and self-driven approach to work.
  • Strong documentation and presentation abilities.

Work experience

  • 2–6 years in cloud security operations and engineering with progressive responsibility in securing enterprise cloud environments across AWS and Azure.
  • Oversee enterprise-scale cloud security architecture, policy governance, and security operations across AWS and Azure environments.
  • Lead implementation and management of cloud-native security controls including IAM, security groups, network segmentation, and encryption services.
  • Manage day-to-day cloud security operations including monitoring, alert triage, incident response, and remediation coordination across AWS and Azure platforms.
  • Drive cloud security posture improvement using CSPM tools (Wiz, Prisma Cloud, or similar); identify misconfigurations, prioritize findings, and track remediation to closure.
  • Lead cross-functional teams in cloud security operations, vulnerability management, and compliance initiatives aligned with security standards.
  • Drive adherence to defined SLAs and KPIs across cloud security operations; track, report, and continuously improve operational metrics and service delivery standards.
  • Manage and track security incidents, service requests, and change management activities through ITSM/ticketing platforms such as ServiceNow, ensuring timely updates, escalations, and closures.

Architect secure cloud networking solutions

design VPC/VNet topologies, implement transit gateways, Azure Firewall, AWS Network Firewall, and Network Virtual Appliances (NVAs).

  • Coordinate security incident response across global teams; develop and refine playbooks, SLAs, and escalation procedures for cloud environments.
  • Develop and maintain executive dashboards presenting cloud security metrics, risk posture, and compliance status to senior leadership.

The ideal candidate will

  • Demonstrate solid understanding of cloud security architectures across AWS and Azure, with a strong grasp of Zero Trust principles and defense-in-depth strategies.
  • Design secure cloud topologies, define security governance workflows, and guide risk-based access controls.
  • Produce clear SOPs, runbooks, security assessment reports, and technical design documents for cloud environments.
  • Collaborate with compliance, architecture, DevOps, and operations teams to ensure security by design.
  • Drive continuous improvements via automation, Infrastructure as Code (IaC), and actionable security metrics.
  • Effectively manage day-to-day security operations while balancing strategic initiatives and stakeholder expectations.
  • Demonstrate ability to define, monitor, and drive SLA/KPI compliance across security operations, ensuring consistent and measurable service delivery.

Mandatory Certification Required

(At least one required; multiple strongly preferred)

Core Certifications

AWS Certified Solutions Architect – Associate

  • AZ-500 – Microsoft Certified Azure Security Engineer – Associate

Wiz Certified Cloud Fundamentals

Preferred Advanced Certifications

AWS Certified Security – Specialty

Microsoft Certified: Cloud and AI Security Engineer Associate

Certified Cloud Security Professional (CCSP)

  • Certified Information Systems Security Professional (CISSP).

Technical Skills Required

Cloud Networking and Architecture

Hands-on experience designing AWS VPC architectures

security groups, NACLs, transit gateways, VPC peering, PrivateLink, and Direct Connect.

  • Proficiency with Azure Virtual Networks (VNets), NSGs, Azure Firewall, User-Defined Routes (UDRs), Application Gateway, and ExpressRoute.
  • Understanding of hybrid cloud connectivity, micro-segmentation, and secure network architectures across AWS and Azure.
  • Familiarity with Zero Trust architecture principles and cloud-native security design patterns.

Security Operations & Analytics

  • Hands-on experience managing day-to-day cloud security operations including monitoring security alerts, triaging incidents, and coordinating remediation activities across AWS and Azure.
  • Strong ability to perform security assessments, configuration reviews, and compliance checks within AWS and Azure environments.
  • Experience investigating findings in cloud environments, conducting root cause analysis, and implementing preventive controls.
  • Proficiency in reviewing and responding to security findings from CSPM tools (Wiz, Prisma Cloud, or similar) and ensuring timely resolution within defined SLAs.
  • Experience working with ITSM/ticketing tools such as ServiceNow to log, track, prioritize, and close security incidents and service requests in line with defined SLAs and KPIs.

DevSecOps & Automation

  • Familiarity with Infrastructure as Code (Terraform, CloudFormation, ARM templates) and integrating security controls into IaC pipelines.
  • Understanding of CI/CD security integration, container security (Docker, Kubernetes), and API security.
  • Experience with automation scripting (Python, PowerShell, Lambda, or Azure Functions) to support and improve security operations.

Behavioral / team skills

  • Strong communication and stakeholder management skills, including ability to explain complex security concepts in simple terms.
  • Analytical mindset with strong problem‑solving and decision‑making skills.
  • High level of ownership, accountability, and attention to detail.
  • Ability to handle multiple priorities in fast‑paced cloud and security environments.
  • Collaborative mindset with a willingness to mentor junior team members.
  • Proactive, structured, and self-driven approach to work.
  • Strong documentation and presentation abilities.

Skills

  • IAM
  • AWS
  • Azure
  • Wiz
  • Prisma Cloud
  • ServiceNow
  • VPC
  • Azure Firewall
  • Zero Trust
  • SOPS
  • CISSP
  • Terraform
  • AWS CloudFormation
  • ARM Templates
  • Docker
  • Kubernetes
  • Python
  • PowerShell
  • AWS Lambda
  • Azure Functions

More jobs at KPMG Global Services

All 143

Similar roles