Junior Information Security Analyst

KPMG

  • Алматы
  • Постоянная работа
  • Полная занятость
  • 11 ч. назад
Responsibilities:
  • Assist senior team members in conducting risk analysis and examinations of projects and vendors under close supervision.
  • Support the team in performing GAP analyses between global and local information security policies by gathering data and documenting findings.
  • Contribute to the development and maintenance of information security documentation (policies, procedures) by incorporating feedback and ensuring version control.
  • Provide support for the implementation and configuration of security tools like SIEM (Wazuh) and WAF under the guidance of a senior engineer.
  • Assist with vulnerability management processes by running scans, compiling initial reports, and tracking remediation efforts.
  • Participate in the incident response process by performing initial triage, documenting events in tickets, and following established playbooks.
  • Help monitor IT infrastructure security by reviewing alert dashboards and escalating issues to senior analysts.
  • Support the maintenance of the information security risk register by updating records and generating basic heat maps.
Requirements:
  • Education: Bachelor's degree in InfoSec, CS, IT, or related field. Equivalent certifications (e.g., CompTIA Security+) with demonstrated passion also accepted.
  • Experience: 1+ year in an InfoSec role, or relevant experience via internships, labs, or personal projects.
  • Knowledge: Foundational understanding of core security tech: antivirus, firewalls, and network attack principles.
  • Skills: Strong technical writing ability and proficiency in English (Upper Intermediate level or higher).
Preferred Qualifications
  • Familiarity with security frameworks (e.g., ISO 27001, NIST, PCI DSS, OWASP Top 10).
  • Basic knowledge of risk management concepts and tools (e.g., SIEM, WAF, vulnerability scanners).
  • Basic scripting skills (e.g., Python, Bash, PowerShell).
  • Understanding of Secure Development Lifecycle (SDLC) principles.
KPMG is a global network of professional firms providing Audit, Tax and Advisory services. We have 219,000 outstanding professionals working together to deliver value in 147 countries worldwide.KPMG has been working in Kazakhstan since 1996, and our essential principle has always been to use the firm’s global intellectual capital, combined with the practical experience of our local professionals. We have about 600 employees and full operating offices in Almaty, Nur-Sultan, Atyrau and Bishkek.Our global experience is thus complemented by the skills of local professionals, an invaluable asset for any client operating in or considering a move into a new and unfamiliar market. Our teams can offer realistic but internationally strategic sophisticated recommendations in line with local market conditions.

HeadHunter