Security Posture Management Manager
Role details
Job location
Tech stack
Job description
We are organized under five 'domains': Technology Portfolio Delivery, Global Enterprise Technology, Technology Strategy & Blueprint, Global Information Security Group and Business Operations. This is an exciting time for us as we continue to drive technology excellence at the heart of Collective Strategy v3.0, and our GT&K colleagues all play a pivotal role in making this a success. About this Team As part of the Global Information Security Group (GISG), the Information Security Services (ISS) team which includes the Global Security Operations Center (GSOC) helps defend KPMG and its clients from cyber-attacks, through timely detection, investigation and remediation of potential threats. Role summary The Security Posture Management Manager will drive modernization and continuous improvement within the services aligned with Security Posture Management:
- Identity Security Posture Management
- Data Security Posture Management
- AI Agent Security Posture Management
- SaaS Security Posture Management
- Cloud Security Posture Management
- Vulnerability Posture Management
This role focuses on analyzing the data provided, designing processes to support the identification of security postures across the discipline's supported by the service, communicating the postures and with any necessary escalations and supporting the management of the escalations. The individual will focus on strategies to reduce the postures to an acceptable level, monitoring the posture level and identifying any potential themes on why postures have altered. The individual will demonstrate measurable value to executive leadership by aligning initiatives with strategic business objectives., Data Analysis
- Monitor Security Posture across the disciplines above and automating to be more effective whilst reducing any relevant potential attack surfaces identified.
- Assess applicability of AI/ML, predictive analytics, and orchestration platforms for reducing security posture and insecure configuration prioritization and remediation.
- Mapping potential attack surfaces to identify actual attack surfaces.
Process Innovation
- Identify gaps in current workflows and propose enhancements.
- Assist with the development of proof-of-concept (PoC) projects for new tools and processes, ensuring compatibility with enterprise architecture.
Integration & Implementation
- Support the design for new technologies with existing monitoring, ticketing, and reporting systems (e.g., MDC, Qualys, ServiceNow).
- Collaborate across all ISS services to leverage all available data and operationalize automation use cases to reduce security posture with automated remediation actions where appropriate.
Stakeholder Engagement
- Communicate technical concepts and business value to executive leadership and non-technical stakeholders.
- Prepare ROI analyses and business cases for proposed innovations.
Requirements
- Experince in cloud-centric cybersecurity coupled with a focus on vulnerability management or threat management.
- Bachelor's degree in a related field (e.g. Computer Sciences, Computer Engineering, Information Technology and Security) or equivalent work experience
- Proven track record of leading innovation or transformation projects in security operations.
- Experience presenting technical solutions and ROI to technical and executive audiences.
- Strategic thinker with strong problem-solving and conceptual skills.
- Ability to work independently and influence cross-functional teams.
Core Skills
- Strong understanding of vulnerability management lifecycle (identification, prioritization, remediation).
- Understanding of identity lifecycle management
- Understanding of Data lifecycle management
- Understand of various Security Posture management tooling - CSPM, SSPM, Qualys
- Familiarity with CVSS scoring, EPSS predictive models, and MITRE ATT&CK framework.
- Knowledge of cloud security (Azure, GCP, AWS) and container security (Kubernetes, Docker).
Programming & Automation
- Experience with CI/CD pipelines and integration of security tools.
- Experience with API integration
- Experience with agentic AI
Data Analytics
- Ability to leverage data visualization and analytics tools for reporting trends and risk metrics (PowerBI, Azure Workbooks).