Specialist Director, Cloud Security
About the role
KPMG Advisory is at the forefront of transformation, offering excellent opportunities for individuals to advance their careers and expertise. In this ever-changing market environment, our professionals must be adaptable and thrive in a collaborative, team-driven culture. As a Specialist Director, Cloud Security, you will provide strategic leadership for cloud security governance across AWS and Azure environments, embedding security into platform strategy and enterprise cloud transformation initiatives.
Responsibilities
- Provide strategic leadership for cloud security governance across AWS and Azure environments, including oversight of security posture, risk remediation, compliance, and continuous monitoring programs.
- Lead enterprise cloud asset, firewall, and security exception governance programs, including inventory accountability, lifecycle management, policy compliance, risk acceptance, and regulatory oversight.
- Drive accountability across engineering, infrastructure, application, and business teams to prioritize and remediate material cloud security risks.
- Define and oversee cloud security KPI/KRI reporting, executive dashboards, risk committee materials, compliance metrics, and governance performance measures.
- Set the strategic direction for secure adoption of cloud and AI-enabled technologies by establishing security baselines, guardrails, policies, and control frameworks.
- Partner with cloud, cybersecurity, architecture, and business leaders to embed security into platform strategy, architecture decisions, and enterprise cloud transformation initiatives.
- Provide management coordination and oversight of Cyber Managed Services delivery across multiple engagements, ensuring high-quality service execution through effective collaboration with clients, KPMG stakeholders, and global delivery teams.
- Lead operational governance for managed services, including incident, problem, and service request management, driving timely triage, escalation, resolution, stakeholder communications, and adherence to service level commitments.
- Oversee change and release management processes, operational escalations, and offshore/onshore delivery coordination, proactively managing risks, dependencies, resource requirements, and continuous service improvement initiatives.
- Act with integrity, professionalism, and personal responsibility to uphold KPMG's respectful and courteous work environment.
Qualifications
- Minimum of eight years of cybersecurity experience, including leadership in cloud security, governance, risk management, security operations, or cloud architecture within complex enterprise environments.
- Bachelor's degree in Cybersecurity, Information Technology, Computer Science, Engineering, or a related discipline from an accredited college or university.
- Experience providing strategic oversight for enterprise-scale AWS and Azure environments, including multi-account governance models and CSPM/CNAPP security programs.
- Experience leading enterprise vulnerability management, risk management, compliance, control governance, cloud security programs, executive reporting, and risk-based prioritization initiatives.
- Demonstrated ability to influence senior stakeholders, lead cross-functional remediation efforts, and drive measurable risk reduction across large-scale technology environments.
- Technical knowledge of AWS, Azure, IAM, Wiz, CSPM/CNAPP platforms, ServiceNow CMDB, firewall governance, Tufin, enterprise risk management, and security control frameworks.
Must be authorized to work in the U.S. without the need for employment-based visa sponsorship now or in the future. Travel is required as needed based on business and client requirements.
Pay
California Salary Range: $169,005 – $370,530. Salary is determined based on relevant factors including applicant's skills, job responsibilities, prior relevant experience, certain degrees and certifications, and market considerations.
Benefits
KPMG offers a comprehensive Total Rewards package, including:
- Medical, dental, and vision coverage.
- Disability and life insurance.
- 401(k) plans.
- Personal well-being benefits to support mental health.
- Personal Time Off per fiscal year, based on job classification, standard work hours, and years of service.
- Two annual breaks where employees are not required to use Personal Time Off: one at year-end and one around the July 4th holiday.
- Paid holidays as published annually.