Logo
KPMG US

Manager, Global CSIRT Senior Analyst

KPMG US, Boston, Massachusetts, us, 02298

Save Job

Overview

KPMG is currently seeking a Manager to join our Global Technology & Knowledge Group which is part of KPMG International. Known for being a great place to work and build a career, KPMG provides audit, tax and advisory services for organizations in today’s most important industries. Our growth is driven by delivering real results for our clients and supported by a culture that encourages development, embraces inclusion, rewards innovative excellence, and supports our communities. If you’re passionate about your future, consider joining our team. Responsibilities

Triage alerts reported by the Global Security Operations Center (GSOC), Global functions and KPMGs network of member firms, including clients, suppliers, and from security tooling like Data Loss Prevention (DLP), Cloud Access Security Broker (CASB), Extended Detection and Response (XDR), and Security Information and Event Management (SIEM). Contribute to root cause analysis to determine the origin and impact of incidents and support the preparation of detailed reports. Collaborate with teams across Legal, HR, Compliance, Global Enterprise Technology (GET), Global Functions, RSD and key Member Firms to ensure appropriate incident handling and communications aligned to best practices. Identify gaps in detection and response processes and recommend improvements, including development and refinement of playbooks and standard operating procedures (SOPs) for cyber and data-related incidents. Support security awareness initiatives related to data handling and incident management and reporting. Provide delivery of training to first-line responders and KPMG member firm security teams on incident escalation procedures. Qualifications

Minimum five years of recent experience in incident response, preferably focusing on data protection and privacy incidents within highly regulated industries. Bachelor’s, Master’s, or PhD in computing, information security, or a related field (or equivalent professional experience); relevant certifications (e.g., CISSP, CISM, GCIH, GCFA, GCIA, or CIPP) are highly desirable. Technical expertise in cybersecurity and incident response; experience with email security, cloud platforms, endpoint protection, DLP, CASB, SIEM, XDR and other security monitoring tools. Strong background in incident response, data protection, and regulatory compliance with ability to work cross-functionally to mitigate risks and enhance data security posture. Familiarity with data protection regulations (e.g., GDPR, HIPAA, CCPA). Applicants must be authorized to work in the U.S. without the need for employment-based visa sponsorship now or in the future; no visa sponsorship is available for this opportunity. KPMG LLP and its affiliates comply with all local/state regulations regarding salary ranges and equal employment opportunities. We recruit on a rolling basis, and all qualified applicants are considered for employment without regard to race, color, religion, age, sex, sexual orientation, gender identity, national origin, citizenship status, disability, protected veteran status, or any other category protected by applicable laws.

#J-18808-Ljbffr