logo

Junior Information Security Analyst

Astana/Almaty · Central Services/QRM
Apply

Responsibilities

  • Assist senior team members in conducting risk analysis and examinations of projects and vendors under close supervision.
  • Support the team in performing GAP analyses between global and local information security policies by gathering data and documenting findings.
  • Contribute to the development and maintenance of information security documentation (policies, procedures) by incorporating feedback and ensuring version control.
  • Provide support for the implementation and configuration of security tools like SIEM (Wazuh) and WAF under the guidance of a senior engineer.
  • Assist with vulnerability management processes by running scans, compiling initial reports, and tracking remediation efforts.
  • Participate in the incident response process by performing initial triage, documenting events in tickets, and following established playbooks.
  • Help monitor IT infrastructure security by reviewing alert dashboards and escalating issues to senior analysts.
  • Support the maintenance of the information security risk register by updating records and generating basic heat maps.

Requirements

  • Education: Bachelor's degree in InfoSec, CS, IT, or related field. Equivalent certifications (e.g., CompTIA Security+) with demonstrated passion also accepted.
  • Experience: Up to 1 year in an InfoSec role, or relevant experience via internships, labs, or personal projects.
  • Knowledge: Foundational understanding of core security tech: antivirus, firewalls, and network attack principles.
  • Skills: Strong technical writing ability and proficiency in English (Intermediate level or higher). Competency with MS PowerPoint and basic data handling (e.g., Excel).

Preferred Qualifications

  • Familiarity with security frameworks (e.g., ISO 27001, NIST, PCI DSS, OWASP Top 10).
  • Basic knowledge of risk management concepts and tools (e.g., SIEM, WAF, vulnerability scanners).
  • Basic scripting skills (e.g., Python, Bash, PowerShell).
  • Understanding of Secure Development Lifecycle (SDLC) principles.

Conditions

  • An international corporate culture in which personal growth, mutual trust and lifelong learning are being fostered. 
  • A team of passionate colleagues to reach higher goals and support each other.
  • Continuous development and professional growth with a clear career path, opportunities for professional certifications, and a comprehensive range of soft skills development topics to meet your personal needs and ambitions. 
  • “Together” is one of our KPMG-values, so you can count on a wide range of social activities like team buildings, get-togethers & sport initiatives together with your colleagues. 
  • A competitive and attractive compensation package with comprehensive benefits like extended vacation days, sick leaves without medical certificate, health and life insurances and many more. 
  • An inclusive workspace that encourages diversity and pursues mutual respect for each other’s beliefs and backgrounds. 
  • A flexible, hybrid working schedule where employees can work on different locations: at home, at the office, or at a client’s site.

Join KPMG and discover a career that will help you thrive, learn, and do work that matters. Apply now!

Share this job opening

Application:

By applying to this job opening you confirm your consent to processing your personal data and accept KPMG Caucasus & Central Asia Privacy Policy