At a Glance
- Tasks: Drive innovation in cybersecurity and enhance security posture management.
- Company: Join KPMG International, a global leader in professional services.
- Benefits: Flexible working arrangements, competitive salary, and opportunities for career growth.
- Other info: Inclusive workplace with a commitment to diversity and personal development.
- Why this job: Be at the forefront of cybersecurity innovation and make a real impact.
- Qualifications: Experience in cloud-centric cybersecurity and strong problem-solving skills.
The predicted salary is between 36000 - 60000 £ per year.
About KPMG International
Together with more than 276,000 colleagues in 138 countries throughout our member firms, people at KPMG imagine big ideas and bring solutions to life for clients both big and small. A role with KPMG International will open a world of opportunity in your career.
KPMG International helps set the strategy and protects the reputation of this global organization of independent professional services firms providing Audit, Tax and Advisory services. We deliver value to our member firms and drive positive change in the communities we serve. By joining us you will gain a unique understanding of how a global organization operates and work on projects that impact the whole organization.
About this Global Group Global Technology & Knowledge
The core services provided by Global Technology & Knowledge are more crucial than ever to our future, as we enable KPMG’s digital transformation, provide trusted technology services, ensure security across the network and accelerate our Collective Strategy.
We are organized under five ‘domains’: Technology Portfolio Delivery, Global Enterprise Technology, Technology Strategy & Blueprint, Global Information Security Group and Business Operations.
This is an exciting time for us as we continue to drive technology excellence at the heart of Collective Strategy v3.0, and our GT&K colleagues all play a pivotal role in making this a success.
About this Team
As part of the Global Information Security Group (GISG), the Information Security Services (ISS) team which includes the Global Security Operations Center (GSOC) helps defend KPMG and its clients from cyber-attacks, through timely detection, investigation and remediation of potential threats.
Role summary
The Security Posture Management Innovation Engineer will drive modernization and continuous improvement within the services aligned with Security Posture Management:
- Identity Security Posture Management
- Data Security Posture Management
- AI Agent Security Posture Management
- SaaS Security Posture Management
- Cloud Security Posture Management
- Vulnerability Posture Management
This role focuses on researching emerging technologies, designing innovative processes, and integrating new solutions into existing systems to enhance efficiency, scalability, and security posture. The individual will demonstrate measurable value to executive leadership by aligning initiatives with strategic business objectives.
Key Accountabilities
- Technology Research & Evaluation
- Monitor emerging cybersecurity technologies, frameworks, and automation tools relevant to attack surface management.
- Assess applicability of AI/ML, predictive analytics, and orchestration platforms for vulnerability and insecure configuration prioritization and remediation.
- Process Innovation
- Identify gaps in current workflows and propose enhancements.
- Assist with the development of proof-of-concept (PoC) projects for new tools and processes, ensuring compatibility with enterprise architecture.
- Integration & Implementation
- Design integration strategies for new technologies with existing monitoring, ticketing, and reporting systems (e.g., MDC, Qualys, ServiceNow).
- Collaborate with engineering and IT teams to operationalize automation for vulnerability detection and remediation.
- Stakeholder Engagement
- Communicate technical concepts and business value to executive leadership and non-technical stakeholders.
- Prepare ROI analyses and business cases for proposed innovations.
Experience / Knowledge / Qualification
- Strong experience in cloud-centric cybersecurity with a focus on vulnerability management or threat management.
- Bachelor’s degree in a related field (e.g. Computer Sciences, Computer Engineering, Information Technology and Security) or equivalent work experience.
- Proven track record of leading innovation or transformation projects in security operations.
- Experience presenting technical solutions and ROI to technical and executive audiences.
- Strategic thinker with strong problem-solving and conceptual skills.
- Ability to work independently and influence cross-functional teams.
Core Skills
- Strong understanding of vulnerability management lifecycle (identification, prioritization, remediation).
- Understanding of identity lifecycle management.
- Understanding of Data lifecycle management.
- Understand various Security Posture management tooling – CSPM, SSPM, Qualys.
- Familiarity with CVSS scoring, EPSS predictive models, and MITRE ATT&CK framework.
- Knowledge of cloud security (Azure, GCP, AWS) and container security (Kubernetes, Docker).
- Exposure to Wiz.
Programming & Automation
- Experience with CI/CD pipelines and integration of security tools.
- Experience with API integration.
- Experience with agentic AI.
Data Analytics
- Ability to leverage data visualization and analytics tools for reporting trends and risk metrics (PowerBI, Azure Workbooks).
Agile/Flexible Working
At KPMG International, we are supportive of helping you to achieve a balance between your home and work demands. We are happy to discuss individual requirements and our range of flexible working arrangements could be of interest.
KPMG International's commitment to inclusion & diversity
At KPMG International, we recognise that we need inclusion and diversity to be successful. We want to attract, retain and develop diverse talent at all levels.
Applying with a disability
KPMG International is proud to be an inclusive place to work and we are committed to ensuring that you are treated fairly throughout our recruitment process.
Locations
Cyber Security Innovation Engineer in Hampshire, Portsmouth employer: KPMG UK
Contact Detail:
KPMG UK Recruiting Team
StudySmarter Expert Advice 🤫
We think this is how you could land Cyber Security Innovation Engineer in Hampshire, Portsmouth
✨Tip Number 1
Network like a pro! Reach out to current employees at KPMG through LinkedIn or other platforms. Ask them about their experiences and any tips they might have for landing a role in the Global Information Security Group.
✨Tip Number 2
Prepare for those interviews by brushing up on your technical knowledge and understanding of the latest cybersecurity trends. Be ready to discuss how you can contribute to KPMG's mission of driving technology excellence.
✨Tip Number 3
Showcase your problem-solving skills! During interviews, share specific examples of how you've tackled challenges in previous roles, especially related to vulnerability management or cloud security.
✨Tip Number 4
Don’t forget to apply through our website! It’s the best way to ensure your application gets seen by the right people. Plus, it shows you're serious about joining the KPMG team.
We think you need these skills to ace Cyber Security Innovation Engineer in Hampshire, Portsmouth
Some tips for your application 🫡
Tailor Your CV: Make sure your CV is tailored to the Cyber Security Innovation Engineer role. Highlight relevant experience in cloud-centric cybersecurity and any innovative projects you've led. We want to see how your skills align with our needs!
Craft a Compelling Cover Letter: Your cover letter is your chance to shine! Use it to explain why you're passionate about cybersecurity and how you can contribute to KPMG's mission. Be sure to mention specific technologies or processes you’re excited about.
Showcase Your Technical Skills: Don’t hold back on showcasing your technical skills! Mention your experience with vulnerability management, cloud security, and any relevant tools like CSPM or Qualys. We love seeing candidates who are up-to-date with the latest tech!
Apply Through Our Website: We encourage you to apply through our website for a smoother application process. It’s the best way to ensure your application gets the attention it deserves. Plus, you’ll find all the info you need about the role there!
How to prepare for a job interview at KPMG UK
✨Know Your Cybersecurity Stuff
Make sure you brush up on the latest trends in cloud security and vulnerability management. Familiarise yourself with tools like CSPM and SSPM, and be ready to discuss how they can enhance security posture. This will show that you're not just a candidate, but someone who’s genuinely passionate about the field.
✨Showcase Your Problem-Solving Skills
Prepare examples of how you've identified gaps in workflows and proposed innovative solutions in your previous roles. KPMG is looking for strategic thinkers, so be ready to demonstrate your ability to think critically and creatively about cybersecurity challenges.
✨Communicate Like a Pro
Practice explaining complex technical concepts in simple terms. You’ll need to engage with both technical and non-technical stakeholders, so being able to articulate your ideas clearly will set you apart. Think about how you would present a business case for a new tool or process.
✨Get Familiar with Their Culture
Research KPMG's values around inclusion, diversity, and flexible working. Be prepared to discuss how you align with these values and how you can contribute to their culture. Showing that you understand and appreciate their ethos can make a big difference in your interview.