Third Party Information Security Analyst
SUMITOMO MITSUI TRUST BANK, LIMITED
Job Description
Job Description
This role is located in New York City and will require a hybrid work schedule of at least 2 days in office per week.
This role is for Officer level candidates.
About the Bank
Sumitomo Mitsui Trust Bank, Limited was established through the merger of The Sumitomo Trust and Banking Co., Ltd with Chuo Mitsui Trust and Banking, Ltd. on April 1, 2012. We are one of the largest asset managers in Asia and number one among Japanese financial institutions by AUM, with approximately $850 Billion USD in AUM. The Bank provides an assortment of financial solutions and manages a broad spectrum of financial products across its global branches.Department Overview:
The Americas Division (“AD”) was established in the Sumitomo Mitsui Trust Bank, Limited, New York Branch) (“SMTBNY”) to perform corporate functions and supervise U.S. entities. Established under the AD are the “Global Banking Unit (“GBU”), Americas Division” and “Global Markets Unit (“GMU”), Americas Division” which performs business functions. Information Risk Governance (“IRG”) provides oversight to information and cyber security risk by maintaining and improving branch wide framework that is in-line with the Head Office and regulatory requirements and addresses Confidentiality, Integrity, and Availability for information assets. IRG establishes appropriate policies, procedures, measurement, and monitoring processes to proactively assess and evaluate and cyber security and information security risks inherent in the Branch Operations. IRG is directly involved in all information and cyber security related projects, matters and issues.
Your Role Overview:The Third Party Information Security Analyst supports the Bank’s Third Party Risk Management function by focusing on assessing and monitoring information security risks associated with 3rd, 4th, Nth parties. This role assists with vendor due diligence, security reviews, information security risk assessments, and ongoing monitoring activities to ensure these third party relationships align with the organization’s security requirements.
Your Duties and Responsibilities:
- Conduct initial and continuous information security risk assessments of third (Nth) parties.
- Review third party provided security documentation including SOC reports, ISO 27001 certifications, security questionnaires, and Business Continuity and Disaster Recovery documentation.
- Document assessment findings and risk ratings in the Bank’s TPRM platform and maintain an up-to-date tracking sheet that provides management with clear visibility into the status, due date, and completion of each assessment and related follow-up actions.
- For vendor due-diligence, with a focus on information security risks, coordinate with relevant Teams (Administration, Legal, etc.) for vendor onboarding and offboarding activities
- Perform on-going monitoring of information security-related incidents involving third-parties and coordinate with relevant stakeholders to facilitate requests for necessary information from the relevant third-parties and support the assessment of potential impact to the Bank.
- Participate in internal audits and external examinations related to the information security risk domains of third party risk management
- Assist in maintaining information security-related TPRM policies and procedures.
- Performs other duties and responsibilities as assigned by management.
- 3+ Years of experience with risk assessment methodologies and techniques as well as Third Party Risk Management Lifecycle.
- Prior experience with financial industry structure and concepts a plus.
- Prior experience working on a Third Party Risk Management (TPRM) platform, such as Prevalent.
- Prior experience working with and assessing information security-related documentation such as SOC 2 reports, ISO 27001 certification, etc.
- Strong knowledge of information security and risk management frameworks, including NIST Cybersecurity Framework, ISO/IEC 27001, and the Cyber Risk Institute Profile.
- Strong Microsoft Office skills
- Strong verbal and written communication skills.
- Strong analytical skills
- Self-motivated with good time management skills.
- The Employee Benefits package includes: Paid Time Off, medical, HSA, vision, dental, FSA, 401(k), profit sharing, legal plan, cancer indemnity plan, disability insurance, life insurance, employee assistance program, commuter benefits, business travel accident, paid volunteer day, paid memberships, paid seminars, and tuition assistance.
- We offer many socialization opportunities for wellness, financial wellbeing, runs/walks, team building, happy hours, and activities to support the Sustainable Developmental Goals.
Check out our LinkedIn for our employee experience:
We are an equal employment opportunity employer. All qualified applicants will receive consideration for employment without regard to race, color, religion, gender, national origin, disability status, protected veteran status or any other characteristic protected by law. SuMi Trust provides reasonable accommodations for employees and applicants with disabilities consistent with applicable law. If you need a reasonable accommodation during the application
$90k - $105k
...including financial advisers, employers, third-party administrators, financial... ...Looking For? The Vestwell Corporate Information Technology team is looking for an experienced... ...and detail-oriented Information Security compliance analyst to be responsible for monitoring the...SuggestedContract workFor subcontractorWork at officeLocal area$191k - $305k
About this role:Wells Fargo is seeking a Senior Lead Information Security Analyst in Cybersecurity to join the IAM Strategic Enablement & Adoption... ...more.Wells Fargo Recruitment and Hiring Requirements:a. Third-Party recordings are prohibited unless authorized by Wells...SuggestedFull timeWork experience placementRelocation package- We are looking for an IT Security Analyst to help protect enterprise systems, data, and cloud... ...organization. Support regulatory, audit, and third-party risk assessment activities. Produce... ..., and improvement initiatives. Stay informed on attacker techniques, industry...Suggested
- ...and Mandarin is MANDATORY given global team. Lead and Manage Security Operations: Oversee day-to-day security operations, including... ...within the banking industry. Education: Bachelor’s degree in Information Security, Computer Science, or a related field. Advanced certifications...Suggested
- Define, develop, and/or implement Technology Controls / Information Security policies, programs, and tools Provide specialized expertise and guidance on assessing risks, identifying gaps, and developing security solutions to mitigate risks and protect the Bank Participate...SuggestedWork at office
- ...would love to talk with you regarding the next step in your career. Come join our team! Zantech is looking for a talented Information Security Analyst - SME to provide specialized cybersecurity expertise supporting risk management operations, conduct security assessments...Contract work
- ...business in Baltimore, known for delivering sophisticated IT (Information Technology) and Health solutions with a commitment to ethics,... ...considered for this position. Responsibilities Implement and assess security controls in accordance with FISMA, FedRAMP, IRS IRM 10.8, and...For contractorsLocal areaRemote work
$137.8k - $180.8k
The Opportunity As a Mastery Level Security Operations Center (SOC) analyst you'll have an opportunity to be part of a growing team of highly technical... ...a Variable Incentive Compensation component. For more information about our extensive benefits offerings please check...Temporary workRemote work- Information Security Analyst At Gifthealth, we're revolutionizing the way people experience healthcare by simplifying the process of managing prescriptions and health services. Our mission is to provide a seamless, personalized, and efficient healthcare experience for...Full time
- ...growing healthcare technology company is looking for an IT & Security Analyst to join its Security team. This is a hands-on role with real... ...Required Experience: Bachelor's degree in Cybersecurity, Information Technology, Computer Science, or a related field. Demonstrated...
$110.5k - $149.5k
Information Security Analyst Principal This position is listed on behalf of a partner company, who manages all applications and next steps. Our partner is looking for an Information Security Analyst Principal based in the United States. This is a senior cybersecurity role...Full timeTemporary workRemote workMonday to FridayFlexible hours- Job Title: Information Security Analyst Job Summary: We are seeking a highly motivated Information Security Analyst to safeguard the organization's information systems, networks, applications, and data assets from cyber threats. The ideal candidate will be responsible...Full timeRemote work
- Security Administration and Operations Candidate must be authorized to work without sponsorship... ...Security, Scripting Automation, Information Security, Endpoint Security Our Impact:... ...Business Analysis. Additional Skills: Business Analyst. This is a high PRIORITY requisition....Remote jobWeekend workAfternoon shift
- Information Security Analyst 2 Start Date: 09/01/2020 End Date: 03/01/2021 Work Location: Bismark North Dakota 58503 Client: State of North Dakota Pay Rate: $35/hr on w2 all inclusive CYAD Web Application Security Scanning NDIT has 1 contract position open for a Web Application...Contract workRemote workWork from home
- Position 1: Information Security Analyst Location: Stamford, Connecticut (Onsite / Hybrid as required) Engagement Type: Contract / Consulting Assignment 12 Months Role Overview We are seeking an experienced Information Security Analyst to support and strengthen the City...Contract work
$87k - $92k
Information Security Analyst Posting Details Job # 042836 Department Code 20703-6034 Department Information Technology Services Job Title Information Security Analyst Location Syracuse, NY Campus Syracuse, NY Commitment to On-Campus Experience Syracuse University...Full timeSummer workRemote work$75k - $95k
Information Security Analyst Location: United States Job Type: Full-Time | Non-Exempt | Remote Eligible Salary Range: $75,000 - $95,000 per year About Commercial Bank of California Commercial Bank of California (CBC) is the largest Latino-owned bank in California and a...Full timeLocal areaRemote workFlexible hours- As a full-time remote Senior Information Security Analyst focusing on vulnerability management, the candidate will manage the vulnerability management program, conduct scans, oversee penetration testing, and report findings while advocating for security enhancements across...Full timeWork experience placementRemote work
- ...Division” which performs business functions. Information Risk Governance (“IRG”) provides oversight to information and cyber security risk by maintaining and improving branch... ...Overview: The Security Operations Center (SOC) Analyst is responsible for monitoring, detecting,...Work at officeWork from homeFlexible hours2 days per week
$78.9k - $123.3k
...continuous monitoring activities within a Federal environment. This role is responsible for managing the security authorization lifecycle for one or more information systems, ensuring compliance with Federal cybersecurity requirements, and maintaining the documentation...Permanent employmentFull timeContract workPart timeWork at officeLocal areaRemote work- Data Security Analyst 1 Austin, TX 78751 (Remote within TX) 12 months Contract with possibility to extension Responsible for administering... ...- Knowledge of critical infrastructure systems with information communication technology that were designed without system security...Contract workRemote work
- ...Division” which performs business functions. Information Risk Governance (“IRG”) provides oversight to information and cyber security risk by maintaining and improving branch... ...Role Overview: The Information Security Risk Analyst is responsible for supporting the...Work at officeWork from homeFlexible hours2 days per week
$75k - $95k
...the role: We are seeking an Application Security Analyst to build security into how we ship... ...software, and to help our small but growing Information Security team with day-to-day work.... ...Secure AI APIs, plugins, and third-party integrations Tune security controls across...Work at officeRemote workFlexible hours$75k - $110k
...per year About the Role The Application Security Analyst helps embed security into the software... ...architecture, deployment patterns, third-party components, and cloud configurations.... ...Eager to Learn: Proactively seeks out information, embraces learning new things and enjoys...Local areaImmediate startRemote workFlexible hours$75k - $85k
...IT Security Analyst Who is Gen II? Gen II is a leading fund administration provider focused entirely on serving private capital asset... ...with IT support to remediate issues Support the Chief Information Security Officer in developing an IT security assurance program...Full timeWork at officeFlexible hours1 day per week- Job-ID31409788Reference25-31660Title : SOC Analyst Location : New York City, Boston MA, Atlanta GA Shift : 3PM to 12AM EST Mon -... ...rotationDescription: The SOC Analyst serves as the first line of defense for information security operationsmonitoring, investigating, and responding to...Shift work
- Network Security Analyst Austin, Texas, United States Requirement Details: Internal job ID: TWK_2002 State of Texas Austin, TX 78701 NOTE... ...CCSP), EC-Council Certified Incident Handler (ECIH), Certified Information Security Manager (CISM), Certified Information System...Local areaRemote work
- Senior Consultant - Epic Security Analyst - Remote Join to apply for the Senior Consultant - Epic Security Analyst - Remote role at Nordic... ...type Employment type Full-time Job function Job function Information Technology Industries IT Services and IT Consulting Referrals...Remote jobFull timeContract workLocal area
$65k - $75k
...Position Details Position Details Advertising/Posting Title Security Operations Analyst Posting Summary Conduct in-depth analyses of operational... ...to the confidentiality, integrity, and availability of information within the University of Vermont’s digital environment....Full timeWork at officeRemote workAfternoon shift- Required: 3+ years of offense and defense application security experience with demonstrated hands-on expertise in SAST and SCA tools such... ...with security threat intelligence sources and how they inform application-layer defenses. Experience partnering with development...
Do you want to receive more vacancies?
Subscribe and receive similar vacancies to Third Party Information Security Analyst. Be the first to apply!
- entry level information security analyst New York, NY
- data protection analyst New York, NY
- data analyst intern New York, NY
- regulatory reporting analyst New York, NY
- junior healthcare data analyst New York, NY
- senior data management analyst New York, NY
- data analyst - r python sql New York, NY
- data visualization analyst New York, NY
- data analyst New York, NY
- oracle data analyst New York, NY



