Jump to content

GMS - Senior - Cloud Access Security | ErnstYoung Job


 Share

Job Opportunity Details

Type

Full Time

Salary

Not Telling

Work from home

No

Weekly Working Hours

Not Telling

Positions

Not Telling

Working Location

Chennai, Chennai, TN, 600032, India   [ View map ]

Job Description

At EY, you’ll have the chance to build a career as unique as you are, with the global scale, support, inclusive culture and technology to become the best version of you. And we’re counting on your unique voice and perspective to help EY become even better, too. Join us and build an exceptional experience for yourself, and a better working world for all. 

 

 

 

 

CMS- Cloud Access Security Broker- Senior

 

Responsibilities:

 

  • Triage SaaS alerts in Microsoft Defender portal incident/alert queues and attach context (user, app, IP, activity type).
  • Monitor Cloud Discovery findings and flag newly discovered high-risk / unsanctioned apps (Shadow IT) for review.
  • Maintain ticket updates, evidence capture, and shift handoffs; follow runbooks for SaaS incidents.
  • Lead investigations for suspicious SaaS activity, risky OAuth apps, and anomalous data access.
  • Pivot across Cloud Apps entities/activities to scope impact, identify root cause, and recommend containment actions (session revocation guidance, app governance steps, permission review, etc.).
  • Tune policies (reduce false positives), define sanctioned vs unsanctioned workflows, and produce monthly SaaS risk reports.

 

 

Required:

 

  • Familiarity triaging security alerts in the Defender portal and working in ITSM systems.
  • Strong SaaS security concepts: risky user behavior, data exfil indicators, and admin activity red flags.
  • Demonstrated understanding of how Cloud Apps connects to SaaS (API-based visibility and controls).
  • Strong incident investigation skills in Defender portal workflows for Cloud Apps.
  • Demonstrated knowledge of SaaS identity risk patterns and OAuth permission abuse.
  • Working understanding of API connector behavior and constraints.

 

 

Preferred Requirements:

 

  • Minimum 3+ years of Cloud technology, specifically in CASB or Security engineering roles
  • Awareness of Cloud Discovery log-based / API-based ingestion concepts (syslog/FTP pipelines) at a high level.
  • Analyst who can combine CASB and web security operations into one role while maintaining strong SaaS risk visibility and policy tuning discipline.

 

 

EY | Building a better working world 


 
EY exists to build a better working world, helping to create long-term value for clients, people and society and build trust in the capital markets.  


 
Enabled by data and technology, diverse EY teams in over 150 countries provide trust through assurance and help clients grow, transform and operate.  


 
Working across assurance, consulting, law, strategy, tax and transactions, EY teams ask better questions to find new answers for the complex issues facing our world today.  


More Information

Application Details

  • Organization Details
    Ernst & Young
 Share


User Feedback

Recommended Comments

There are no comments to display.

Join the conversation

You are posting as a guest. If you have an account, sign in now to post with your account.
Note: Your post will require moderator approval before it will be visible.

Guest
Add a comment...

×  Pasted as rich text.   Paste as plain text instead

  Only 75 emoji are allowed.

×  Your link has been automatically embedded.   Display as a link instead

×  Your previous content has been restored.   Clear editor

×  You cannot paste images directly. Upload or insert images from URL.

Loading...
×
×
  • Create New...