×
Register Here to Apply for Jobs or Post Jobs. X

Cyber Security and Governance

Job in Bengaluru, 560001, Bangalore, Karnataka, India
Listing for: KPMG India
Full Time position
Listed on 2026-08-11
Job specializations:
  • IT/Tech
    Cybersecurity, Information Security & Data Protection, IT Consultant, IT Business Analyst
Job Description & How to Apply Below
Location: Bengaluru

The Consulting business at KPMG Global Services (KGS) is a diverse team of more than 6400 professionals. We work with KPMG Firms worldwide to transform the businesses of clients across industries through the latest technology and innovation. Our technology professionals combine deep industry knowledge with strong technical experience to navigate through complex challenges and deliver real value for our clients.

Responsibilities:

• Deliver end-to-end cyber strategy, governance, risk, and compliance engagements across domains including cyber maturity assessment, risk quantification, policy and standards, risk frameworks, and regulatory assessments

• Perform cyber maturity and risk quantification assessments using industry frameworks (e.g., NIST, ISO), including current state analysis, gap identification, target state definition, and translation of cyber risks into business insights

• Develop cybersecurity policies, standards, and procedures, and support design and implementation of risk management frameworks, including governance structures, risk taxonomy, and regulatory alignment

• Execute cyber framework, compliance and risk assessments, including control mapping, design and effectiveness testing, and support remediation and control optimization

• Support third-party risk assessments and related program enhancements, with working familiarity in data privacy regulations and privacy risk considerations

• Prepare high-quality, client-ready deliverables aligned to engagement objectives and firm standards

• Work closely with client stakeholders to conduct workshops, interviews, and walkthroughs, and communicate findings and recommendations in a clear and structured manner

• Oversee and guide consultants, review work outputs for quality, and support engagement planning, lead execution, tracking, and adherence to timelines and delivery standards

• Support proposal development, contribute to enhancement of methodologies and tools, and leverage data-driven and AI-enabled capabilities to improve efficiency of analysis and reporting

• Stay updated on emerging cyber threats, regulatory changes, and industry practices, and contribute to knowledge sharing and capability development within the team.

Qualifications:

Educational qualifications

• Bachelor's degree in Information/ Cyber Security, Computer Science, Engineering, Business or related fields, from an accredited college/university or equivalent experience

• Preferred Professional

Certifications:

CISSP, CISM, CISA, CRISC, ISO 27001 LA, ISO 22301 LA, ISO 42001 LA

Work experience:

• 5.5 – 8 years of relevant cybersecurity experience, with focus on strategy, governance, risk, and compliance in a consulting environment.

• Proven experience in a client-facing role with demonstrated ability in leading projects and supervising team members.

Mandatory technical & functional skills:

• Strong knowledge and hands-on experience with cybersecurity frameworks and standards including ISO 27001, ISO 22301, NIST CSF / NIST 800-53, CIS, and Cybersecurity Maturity Model

• Demonstrable experience in delivering three or more of the following: cyber maturity assessments, cyber risk quantification, cybersecurity development, or policy/standards/ framework development and third-party security risk assessment

• Experience in performing framework and compliance assessments, including control mapping, gap analysis, and evaluation of control design and effectiveness

• Proven experience in developing and reviewing cybersecurity policies, standards, procedures, and frameworks

• Ability to identify gaps and risks, translate and communicate technical cyber findings and risks into business-aligned insights and actionable recommendations for technical and business stakeholders

• Strong understanding of IT and enterprise environments, including infrastructure, applications, and key security domains (e.g., IAM, data security, cloud security)

• Proficiency in managing multiple engagements and deliverables, with experience in project planning, execution, stakeholder coordination, and quality review of outputs

• Ability to assess complex environments, deliver pragmatic solutions, supported by working knowledge of…
Note that applications are not being accepted from your jurisdiction for this job currently via this jobsite. Candidate preferences are the decision of the Employer or Recruiting Agent, and are controlled by them alone.
To Search, View & Apply for jobs on this site that accept applications from your location or country, tap here to make a Search:
 
 
 
Search for further Jobs Here:
(Try combinations for better Results! Or enter less keywords for broader Results)
Location
Increase/decrease your Search Radius (miles)
0
200
Filters
Education Level
Experience Level (years)
Posted in last:
Salary