Third Party Information Security Analyst
SUMITOMO MITSUI TRUST BANK, LIMITED
Job Description
Job Description
This role is located in New York City and will require a hybrid work schedule of at least 2 days in office per week.
This role is for Officer level candidates.
About the Bank
Sumitomo Mitsui Trust Bank, Limited was established through the merger of The Sumitomo Trust and Banking Co., Ltd with Chuo Mitsui Trust and Banking, Ltd. on April 1, 2012. We are one of the largest asset managers in Asia and number one among Japanese financial institutions by AUM, with approximately $850 Billion USD in AUM. The Bank provides an assortment of financial solutions and manages a broad spectrum of financial products across its global branches.Department Overview:
The Americas Division (“AD”) was established in the Sumitomo Mitsui Trust Bank, Limited, New York Branch) (“SMTBNY”) to perform corporate functions and supervise U.S. entities. Established under the AD are the “Global Banking Unit (“GBU”), Americas Division” and “Global Markets Unit (“GMU”), Americas Division” which performs business functions. Information Risk Governance (“IRG”) provides oversight to information and cyber security risk by maintaining and improving branch wide framework that is in-line with the Head Office and regulatory requirements and addresses Confidentiality, Integrity, and Availability for information assets. IRG establishes appropriate policies, procedures, measurement, and monitoring processes to proactively assess and evaluate and cyber security and information security risks inherent in the Branch Operations. IRG is directly involved in all information and cyber security related projects, matters and issues.
Your Role Overview:The Third Party Information Security Analyst supports the Bank’s Third Party Risk Management function by focusing on assessing and monitoring information security risks associated with 3rd, 4th, Nth parties. This role assists with vendor due diligence, security reviews, information security risk assessments, and ongoing monitoring activities to ensure these third party relationships align with the organization’s security requirements.
Your Duties and Responsibilities:
- Conduct initial and continuous information security risk assessments of third (Nth) parties.
- Review third party provided security documentation including SOC reports, ISO 27001 certifications, security questionnaires, and Business Continuity and Disaster Recovery documentation.
- Document assessment findings and risk ratings in the Bank’s TPRM platform and maintain an up-to-date tracking sheet that provides management with clear visibility into the status, due date, and completion of each assessment and related follow-up actions.
- For vendor due-diligence, with a focus on information security risks, coordinate with relevant Teams (Administration, Legal, etc.) for vendor onboarding and offboarding activities
- Perform on-going monitoring of information security-related incidents involving third-parties and coordinate with relevant stakeholders to facilitate requests for necessary information from the relevant third-parties and support the assessment of potential impact to the Bank.
- Participate in internal audits and external examinations related to the information security risk domains of third party risk management
- Assist in maintaining information security-related TPRM policies and procedures.
- Performs other duties and responsibilities as assigned by management.
- 3+ Years of experience with risk assessment methodologies and techniques as well as Third Party Risk Management Lifecycle.
- Prior experience with financial industry structure and concepts a plus.
- Prior experience working on a Third Party Risk Management (TPRM) platform, such as Prevalent.
- Prior experience working with and assessing information security-related documentation such as SOC 2 reports, ISO 27001 certification, etc.
- Strong knowledge of information security and risk management frameworks, including NIST Cybersecurity Framework, ISO/IEC 27001, and the Cyber Risk Institute Profile.
- Strong Microsoft Office skills
- Strong verbal and written communication skills.
- Strong analytical skills
- Self-motivated with good time management skills.
- The Employee Benefits package includes: Paid Time Off, medical, HSA, vision, dental, FSA, 401(k), profit sharing, legal plan, cancer indemnity plan, disability insurance, life insurance, employee assistance program, commuter benefits, business travel accident, paid volunteer day, paid memberships, paid seminars, and tuition assistance.
- We offer many socialization opportunities for wellness, financial wellbeing, runs/walks, team building, happy hours, and activities to support the Sustainable Developmental Goals.
Check out our LinkedIn for our employee experience:
We are an equal employment opportunity employer. All qualified applicants will receive consideration for employment without regard to race, color, religion, gender, national origin, disability status, protected veteran status or any other characteristic protected by law. SuMi Trust provides reasonable accommodations for employees and applicants with disabilities consistent with applicable law. If you need a reasonable accommodation during the application
$90k - $105k
...including financial advisers, employers, third-party administrators, financial... ...Looking For? The Vestwell Corporate Information Technology team is looking for an experienced... ...and detail-oriented Information Security compliance analyst to be responsible for monitoring the...SuggestedContract workFor subcontractorWork at officeLocal area- We are looking for an IT Security Analyst to help protect enterprise systems, data, and cloud... ...organization. Support regulatory, audit, and third-party risk assessment activities. Produce... ..., and improvement initiatives. Stay informed on attacker techniques, industry...Suggested
$94.1k - $164.8k
Job Summary: The Information Security GRC Analyst III managed day to day, short and long term information security risks and ensures activities... ...information security risks Review and report on vendor/third party risk to support vendor risk management activities Engage...SuggestedHourly payTemporary workWork experience placementWork at office- ...Division” which performs business functions. Information Risk Governance (“IRG”) provides oversight to information and cyber security risk by maintaining and improving branch... ...Overview: The Security Operations Center (SOC) Analyst is responsible for monitoring, detecting,...SuggestedWork at officeWork from homeFlexible hours2 days per week
$110.5k - $149.5k
Information Security Analyst Principal This position is listed on behalf of a partner company, who manages all applications and next steps. Our partner is looking for an Information Security Analyst Principal based in the United States. This is a senior cybersecurity role...SuggestedFull timeTemporary workRemote workMonday to FridayFlexible hours- Information Security, Analyst Risk & Compliance GDPR/CCPA Compliance Contract Reports To: Sr. Program Manager of Risk & Compliance Location: Sephora Field Support Center (FSC) - San Francisco or Remote US based Position Summary: We are creating an innovative, highly-skilled...Contract workRemote work
$85.2k - $115k
...-driven digital work platform, built to support flexible, secure, work-from anywhere experiences. We integrate industry-leading... ...Management organization at Omnissa is looking for an Information Security Analyst who is passionate about redefining, reimagining, and contributing...Work experience placementLocal areaFlexible hours- Job Title: Information Security Analyst Job Summary: We are seeking a highly motivated Information Security Analyst to safeguard the organization's information systems, networks, applications, and data assets from cyber threats. The ideal candidate will be responsible...Full timeRemote work
- Security Administration and Operations Candidate must be authorized to work without sponsorship... ...Security, Scripting Automation, Information Security, Endpoint Security Our Impact:... ...Business Analysis. Additional Skills: Business Analyst. This is a high PRIORITY requisition....Remote jobWeekend workAfternoon shift
- ...Assist in implementing and maintaining security controls in compliance with FISMA, FedRAMP... ...activity and elevate findings to senior analysts. Assist in validating encryption... ...Requirements: Bachelor’s degree in Cybersecurity, Information Systems, Computer Science, or a related...For contractorsLocal areaRemote work
- Information Security Analyst CyberVadis is a company in the Information Security industry and we are hiring Information Security Analysts to help us keep growing. The Information Security Analyst will audit compliance of security policies, processes and procedures of different...Permanent employmentFull timeWork at officeImmediate startRemote workTrial periodFlexible hours
- Define, develop, and/or implement Technology Controls / Information Security policies, programs, and tools Provide specialized expertise and guidance on assessing risks, identifying gaps, and developing security solutions to mitigate risks and protect the Bank Participate...Work at office
- ...would love to talk with you regarding the next step in your career. Come join our team! Zantech is looking for a talented Information Security Analyst - SME to provide specialized cybersecurity expertise supporting risk management operations, conduct security assessments...Contract work
- Information Security Analyst 2 Start Date: 09/01/2020 End Date: 03/01/2021 Work Location: Bismark North Dakota 58503 Client: State of North Dakota Pay Rate: $35/hr on w2 all inclusive CYAD Web Application Security Scanning NDIT has 1 contract position open for a Web Application...Contract workRemote workWork from home
- Position 1: Information Security Analyst Location: Stamford, Connecticut (Onsite / Hybrid as required) Engagement Type: Contract / Consulting Assignment 12 Months Role Overview We are seeking an experienced Information Security Analyst to support and strengthen the City...Contract work
$87k - $92k
Information Security Analyst Posting Details Job # 042836 Department Code 20703-6034 Department Information Technology Services Job Title Information Security Analyst Location Syracuse, NY Campus Syracuse, NY Commitment to On-Campus Experience Syracuse University...Full timeSummer workRemote work- Job Title This position may be offered to a candidate authorized to work in the US for his/her/their stated employer, without any restrictions which would prevent the candidate from working on the proposed assignment for the duration of the assignment period. Location: ...Remote work
- ...Division” which performs business functions. Information Risk Governance (“IRG”) provides oversight to information and cyber security risk by maintaining and improving branch... ...Role Overview: The Information Security Risk Analyst is responsible for supporting the...Work at officeWork from homeFlexible hours2 days per week
- Job Title This position may be offered to a candidate authorized to work in the US for his/her/their stated employer, without any restrictions which would prevent the candidate from working on the proposed assignment for the duration of the assignment period. Must Haves...Remote job
- ...growing healthcare technology company is looking for an IT & Security Analyst to join its Security team. This is a hands-on role with real... ...Required Experience: Bachelor's degree in Cybersecurity, Information Technology, Computer Science, or a related field. Demonstrated...
$137.8k - $180.8k
The Opportunity As a Mastery Level Security Operations Center (SOC) analyst you'll have an opportunity to be part of a growing team of highly technical... ...a Variable Incentive Compensation component. For more information about our extensive benefits offerings please check...Temporary workRemote work- Information Security Analyst At Gifthealth, we're revolutionizing the way people experience healthcare by simplifying the process of managing prescriptions and health services. Our mission is to provide a seamless, personalized, and efficient healthcare experience for...Full time
$78.9k - $123.3k
...continuous monitoring activities within a Federal environment. This role is responsible for managing the security authorization lifecycle for one or more information systems, ensuring compliance with Federal cybersecurity requirements, and maintaining the documentation...Permanent employmentFull timeContract workPart timeWork at officeLocal areaRemote work- As a full-time remote Senior Information Security Analyst focusing on vulnerability management, the candidate will manage the vulnerability management program, conduct scans, oversee penetration testing, and report findings while advocating for security enhancements across...Full timeWork experience placementRemote work
$75k - $95k
Information Security Analyst Location: United States Job Type: Full-Time | Non-Exempt | Remote Eligible Salary Range: $75,000 - $95,000 per year About Commercial Bank of California Commercial Bank of California (CBC) is the largest Latino-owned bank in California and a...Full timeLocal areaRemote workFlexible hours- Data Security Analyst 1 Austin, TX 78751 (Remote within TX) 12 months Contract with possibility to extension Responsible for administering... ...- Knowledge of critical infrastructure systems with information communication technology that were designed without system security...Contract workRemote work
$75k - $85k
...IT Security AnalystGen II is a leading fund administration provider focused entirely on... ...well-being.Job Description:The Security Analyst is an integral part of the Gen II Technology... ...to remediate issuesSupport the Chief Information Security Officer in developing an IT security...Work at officeFlexible hours1 day per week- ...Senior Security AnalystThe Senior Security Analyst will contribute to the successful delivery of information security services, including monitoring, diagnosing and resolving security events and incidents. The role provides technical expertise in recommending, developing...
- ...Corpay is seeking a Senior PCI Analyst to join their Information Security division. This role can be based in either the Brentwood, TN or Atlanta, GA office. The Analyst will manage PCI compliance, coordinate audits, and work with IT to ensure security requirements are...Work at office
- Job-ID31409788Reference25-31660Title : SOC Analyst Location : New York City, Boston MA, Atlanta GA Shift : 3PM to 12AM EST Mon -... ...rotationDescription: The SOC Analyst serves as the first line of defense for information security operationsmonitoring, investigating, and responding to...Shift work
Do you want to receive more vacancies?
Subscribe and receive similar vacancies to Third Party Information Security Analyst. Be the first to apply!
- report analyst New York, NY
- senior data management analyst New York, NY
- data analyst full time New York, NY
- data integrity analyst New York, NY
- salesforce data analyst New York, NY
- clinical data analyst New York, NY
- entry level data analyst no experience New York, NY
- entry level data analyst New York, NY
- data protection analyst New York, NY
- regulatory reporting analyst New York, NY


