Description
The Consulting business at KPMG Global Services (KGS) is a diverse team of more than 6400 professionals. We work with KPMG Firms worldwide to transform the businesses of clients across industries through the latest technology and innovation. Our technology professionals combine deep industry knowledge with strong technical experience to navigate through complex challenges and deliver real value for our clients.
Through your work, you’ll build a global network and unlock opportunities that you may not have thought possible with access to great support, vast resources, and an inclusive, supportive environment to help you reach your full potential.
Responsibilities
• Lead security engineering and development for Cyber Defense and Agentic Security Operations engagements
• Develop agentic security detections leveraging Google SecOps, Microsoft Security, and CrowdStrike NG SIEM
• Develop automated SOAR playbooks levering Google SecOps / SIEMPLIFY
• Develop user stories and workflow automation in incident management tools like ServiceNow SIR
• Vulnerability and exploitability analysis of vulnerability scanning data
• Innovate next generation cyber defense solutions that help minimize impact, decrease likelihood, and increase adaptability to cyber threats
• Innovate cyber threat management and security automation products leveraging AI and machine learning leveraging frontier models like Anthropic and OpenAI.
• Willingness to take a critical eye to security tooling capabilities and present defendable, technical justifications for decisions and designs
Qualifications:
• A minimum of five years of experience in Information Security or in a technology related field
• Bachelor's degree from an accredited college/university or equivalent experience; cyber security, cyber defense, and/or technical infrastructure certifications
• Team members are expected to navigate technology integrations across client environments, optimizing layers of defense while managing technology friction
• Ability to collaborate, learn and work with cross functional teams like system administrators, data scientists, architects, and cyber security engineers to customize cyber defense solutions
- Security engineering tool experience in Google SecOps, Microsoft Security, ServiceNow SecOps, or CrowdStrike
Qualifications
Educational qualifications
•Bachelor’s degree in Computer Science / Cyber Security / IT or related field•Relevant certifications (preferred): Google Professional Cloud Security Engineer; Google Security Operations/Chronicle training
Work experience
•5-7 years of experience in:•Incident Response / SOC / Threat Hunting / SIEM Engineering / Cloud Architecture•Experience in global client engagements (US/UK/Europe) preferred.
Mandatory technical & functional skills•Strong understanding of:•Enterprise security architecture and its alignment to business and IT strategies.•Incident Response lifecycle and SOC workflows•MITRE ATT&CK; mapping for detections, hunts, and reporting.•Hands-on experience in:•SIEM tools (Google SecOps)•EDR tools (Microsoft Defender, SentinelOne, CrowdStrike - exposure)•Knowledge of:•SIEM Engineering/YARA-L concepts, SOC/SOAR•SCC concepts and integration patterns into SecOps workflows.•Robust:•Analytical and problem-solving skills•Technical report writing and documentation skills•Communication and stakeholder engagement skills Preferred technical & functional skills•Exposure to:•Threat intelligence integration/enrichment (STIX/TAXII, MISP, VirusTotal, commercial feeds) and IOC lifecycle management.•EDR/identity/network telemetry•Cloud Security Controls•Familiarity with:•Content-as-code, CI/CD for detections/parsers/playbooks; API-driven configuration management.•Experience in:•Threat hunting and hypothesis-driven analysis using Chronicle UDM Search and entity pivots.
📌 Consultant-SecOps – Cyber Threat Management (Bengaluru)
🏢 BSR
📍 Bengaluru