GSOC Security Engineering Lead
We tailor your resume to this role and apply for you in seconds.
Or apply on KPMG LLP's site yourselfJob details
- Location
- Albany or Albuquerque or Ashburn or Atlanta or Austin or Baltimore or Baton Rouge or Bentonville or Birmingham or Boise or Boston or Boulder or Buffalo or Charlotte or Chicago or Cincinnati or Cleveland or Columbus or Dallas or Denver or Des Moines or Detroit or El Segundo or Fort Worth or Fort Lauderdale or Greenville or Harrisburg or Hartford or Honolulu or Houston or Indianapolis or Irvine or Jackson or Jacksonville or Kansas City or Knoxville or Las Vegas or Lincoln or Los Angeles or Louisville or McLean or Melville or Memphis or Miami or Milwaukee or Minneapolis or Montvale or Morristown or Nashville or New Orleans or New York or Oklahoma City or Omaha or Orlando or Philadelphia or Phoenix or Pittsburgh or Portland or Providence or Raleigh or Richmond or Rochester or Sacramento or Salt Lake City or San Antonio or San Diego or San Francisco or San Juan or Santa Clara or Seattle or Shreveport or St. Louis or Stamford or Tallahassee or Tampa or Tempe or Virginia Beach or Washington or Winston-Salem
- Work type
- Onsite
- Compensation
- $198,000 - $368,000/yr
- Posted
- Sep 1, 2026
- Apply on
- uskpmgats.avature.net
About this role
Known for being a great place to work and build a career, KPMG provides audit, tax and advisory services for organizations in today's most important industries. Our growth is driven by delivering real results for our clients. It's also enabled by our culture, which encourages individual development, embraces an inclusive environment, rewards innovative excellence and supports our communities. With qualities like those, it's no wonder we're consistently ranked among the best companies to work for by Fortune Magazine, Consulting Magazine, Seramount, Fair360 and others. If you're as passionate about your future as we are, join our team.
KPMG is currently seeking a Director, Global Security Engineering Lead to join our Global Digital Group which is part of KPMG International.
Responsibilities:
- Own the engineering architecture, availability, performance, resilience, scalability and cost efficiency of the GSOC (Global Security Operations Center) technology estate; contribute to the platform strategy and translate it into a deliverable, prioritized technical roadmap
- Set and deliver the automation, orchestration, integration and content-as-code roadmap; drive DevOps maturity through CI/CD, infrastructure-as-code, automated testing, observability and release engineering, with measurable reduction in manual analyst effort and mean time to detect and respond
- Lead the design, evaluation and productionization of AI and agentic capabilities across detection, triage, investigation, enrichment and response
- Run a structured innovation pipeline from horizon scanning through proof-of-value to controlled adoption; partner with vendors, the wider GISG innovation community and KPMG member firms to test emerging capability, evidence benefit, and transition proven solutions into production or retire them decisively
- Establish and enforce design, build, testing, release, secure development, AI-usage and documentation standards; approve production readiness, own technical debt and risk remediation, and ensure the estate is auditable and evidence-ready for internal audit, regulatory and client assurance
- Lead, resource, coach and develop the global engineering team; own objectives, performance, career development, succession pipeline and engagement, and build the DevOps, cloud, data and AI engineering skills required for the future service
- Act with integrity, professionalism, and personal responsibility to uphold KPMG's respectful and courteous work environment
Qualifications:
- Minimum ten years of recent experience in security operations engineering, with proven success leading an engineering team in a 24x7 security operations center or managed security service
- Bachelor's degree from an accredited college or university in a related discipline such as computer science or information technology is required with minimum ten years of equivalent professional experience; certifications requirements: CISSP and either CCSP or CCSK, or equivalent industry experience; other certifications of importance: AZ-500 – Microsoft Azure Security Technologies, Google Professional Cloud Security Engineer, AWS Certified Security - Specialty MCSE: Cloud Platform and Infrastructure, AWS Certified Solutions Architect
- Proven ownership of SIEM and SOAR platform engineering at global scale, covering log source onboarding, data pipeline design, and the end-to-end detection content lifecycle
- Experience supporting CSIRT and major incident response, providing the tooling, telemetry and technical escalation that responders rely on under time pressure
- Deep knowledge of the Microsoft security stack, including Microsoft Sentinel, Defender XDR, Microsoft Entra ID and the wider Microsoft 365 security tooling suite
- Applicants must be authorized to work in the U.S. without the need for employment-based visa sponsorship now or in the future; KPMG LLP will not sponsor applicants for U.S. work visa status for this opportunity (no sponsorship is available for H-1B, L-1, TN, O-1, E-3, H-1B1, F-1, J-1, OPT, CPT or any other employment-based visa)