Associate Director, Cortex/XSOAR Operations
Baltimore, Anne Arundel County, Maryland, 21276, USA
Listed on 2026-01-18
-
IT/Tech
Cybersecurity
Known for being a great place to work and build a career, KPMG provides audit, tax and advisory services for organizations in today's most important industries. Our growth is driven by delivering real results for our clients. It's also enabled by our culture, which encourages individual development, embraces an inclusive environment, rewards innovative excellence and supports our communities. With qualities like those, it's no wonder we're consistently ranked among the best companies to work for by Fortune Magazine, Consulting Magazine, Seramount, Fair
360 and others. If you're as passionate about your future as we are, join our team.
KPMG is currently seeking an Associate Director, Cyber Operations to join our Enterprise Security Services organization. This is a remote work opportunity.
Responsibilities- Assume full product ownership of the Cortex extended security orchestration and automation platform (XSOAR), defining its strategic vision and automation roadmap, and reporting on key performance metrics to champion the value of security automation to leadership
- Own and govern the entire CI/CD pipeline for security automation, from initial code authoring and source control through automated testing and production deployment, to ensure all security automations are released with speed, quality, and security
- Execute 24x7x365 security monitoring and incident response by developing and implementing, through code, advanced automation playbooks in Cortex XSOAR to streamline event processing, triage and remediation, threat hunting, vulnerability management, and reporting
- Spearhead the technical integration of disparate security platforms into Cortex XSOAR, with the strategic goal of centralizing security operations for comprehensive orchestration and automated response to enable and deliver AI-enabled security operations
- Lead small to medium-sized projects by managing project deadlines and team deliverables, while also serving as a formal performance manager responsible for supervising, coaching, and mentoring junior staff
- Drive strategic alignment across federated technology groups by fostering collaboration and serving as the key security automation subject matter professional, guiding the development of business cases and reporting on key performance indicators to executive leadership
- Act with integrity, professionalism, and personal responsibility to uphold KPMG's respectful and courteous work environment
- Minimum eight years of recent combined project and operational experience in cybersecurity operations and incident response, including demonstratable expertise with Cortex SOAR platforms, preferably within a highly regulated industry such as financial or professional services
- Bachelor's degree from an accredited college or university is preferred; preferred Cybersecurity certifications include but not limited to CISSP, CCSP, CCSK, GSEC, GCIH, GCFE, GCFA, SC-200, CEH, and AZ-900
- Experience coding and implementing processes, including playbooks and procedures, defining security monitoring rules, and providing management oversight of security tooling
- Demonstrated ability to lead and collaborate effectively in a complex, matrixed environment, supported by excellent communication skills and hands‑on technical expertise across enterprise systems including Linux, Windows, Active Directory, and modern SIEM platforms (e.g., Microsoft Sentinel)
- Skilled in developing resource plans and project estimation
- Experience with Palo Alto Cortex product or other SOAR platforms preferred
- Must be authorized to work in the U.S. without the need for employment‑based visa sponsorship now or in the future. KPMG LLP will not sponsor applicants for U.S. work visa status for this opportunity (no sponsorship is available for H‑1B, L‑1, TN, O‑1, E‑3, H‑1B1, F‑1, J‑1, OPT, CPT or any other employment‑based visa)
KPMG offers a comprehensive, competitive benefits package, with options designed to help you make the best decisions for yourself, your family, and your lifestyle. Available benefits are based on eligibility. Our Total Rewards package includes a variety of medical and dental plans, vision coverage, disability…
(If this job is in fact in your jurisdiction, then you may be using a Proxy or VPN to access this site, and to progress further, you should change your connectivity to another mobile device or PC).