Padmi

Cyber Security Expert

IndiaPosted 30 days ago
CybersecurityJuniorFull Time; Regular
Apply at KPMG Assurance and Consulting Services LLP

Opens the source posting on shine.com

Source description

About the role

View original

Key Responsibilities Security Architecture & Requirements Definition Assess cyber security requirements for proposed solutions, including application security, infrastructure security, network security, data security, identity management, access controls, and audit requirements. Define Security-by-Design requirements to be incorporated into project deliverables and procurement documents. Recommend security controls covering authentication, authorization, encryption, key management, logging, monitoring, audit trails, incident response, and business continuity requirements. Review solution architectures and identify potential cyber security risks, vulnerabilities, and mitigation measures. Security Compliance & Governance Define requirements for compliance with applicable security standards, regulations, and industry best practices. Establish cyber security governance requirements covering policies, procedures, controls, and security monitoring mechanisms. Define privacy, data protection, data retention, auditability, and role-based access control (RBAC) requirements. Support identification and management of cyber security risks throughout the project lifecycle. Security Testing & Assurance Define requirements for Vulnerability Assessment and Penetration Testing (VAPT), source code review, security audits, security certification, and periodic security assessments. Establish security testing methodologies, acceptance criteria, and compliance validation mechanisms. Review security assessment reports and recommend remediation measures. Support security sign-offs and implementation readiness reviews. Technology & Platform Security Define security requirements for APIs, integrations, databases, dashboards, cloud environments, hosting infrastructure, mobile applications, web applications, and third-party interfaces. Review security controls related to cloud deployments, network segmentation, endpoint security, privileged access management, and data protection. Ensure security requirements are integrated across solution architecture, infrastructure, and application layers. Procurement & Bid Evaluation Support Support preparation of security-related sections of RFPs, technical specifications, compliance matrices, service level requirements, testing frameworks, and evaluation criteria. Review bidder submissions from a cyber security perspective and provide observations on compliance, risks, and security maturity. Support technical evaluations, bidder presentations, clarifications, and contract finalization activities. Advise project stakeholders on security-related contractual obligations and service requirements. Stakeholder Management Collaborate with business teams, technology teams, system integrators, security teams, and external stakeholders. Conduct workshops and discussions to gather security requirements and recommend suitable controls. Provide expert guidance on emerging cyber threats, security technologies, and regulatory developments relevant to the project. .

One address, no account. We’ll tell you when matching roles go live.

More at KPMG Assurance and Consulting Services LLP

Related open roles

View all roles