Sign up to access all features of our service.
  • Job search
  • Favorites
  • Create a CV
    New
  • Salaries
  • Subscriptions

Third Party Information Security Analyst

SUMITOMO MITSUI TRUST BANK, LIMITED

Job Description

Job Description


This role is located in New York City and will require a hybrid work schedule of at least 2 days in office per week.

This role is for Officer level candidates.

About the Bank

Sumitomo Mitsui Trust Bank, Limited was established through the merger of The Sumitomo Trust and Banking Co., Ltd with Chuo Mitsui Trust and Banking, Ltd. on April 1, 2012. We are one of the largest asset managers in Asia and number one among Japanese financial institutions by AUM, with approximately $850 Billion USD in AUM. The Bank provides an assortment of financial solutions and manages a broad spectrum of financial products across its global branches.
Department Overview:

The Americas Division (“AD”) was established in the Sumitomo Mitsui Trust Bank, Limited, New York Branch) (“SMTBNY”) to perform corporate functions and supervise U.S. entities. Established under the AD are the “Global Banking Unit (“GBU”), Americas Division” and “Global Markets Unit (“GMU”), Americas Division” which performs business functions. Information Risk Governance (“IRG”) provides oversight to information and cyber security risk by maintaining and improving branch wide framework that is in-line with the Head Office and regulatory requirements and addresses Confidentiality, Integrity, and Availability for information assets. IRG establishes appropriate policies, procedures, measurement, and monitoring processes to proactively assess and evaluate and cyber security and information security risks inherent in the Branch Operations. IRG is directly involved in all information and cyber security related projects, matters and issues.

Your Role Overview:

The Third Party Information Security Analyst supports the Bank’s Third Party Risk Management function by focusing on assessing and monitoring information security risks associated with 3rd, 4th, Nth parties. This role assists with vendor due diligence, security reviews, information security risk assessments, and ongoing monitoring activities to ensure these third party relationships align with the organization’s security requirements.

Your Duties and Responsibilities:

  1. Conduct initial and continuous information security risk assessments of third (Nth) parties.
  2. Review third party provided security documentation including SOC reports, ISO 27001 certifications, security questionnaires, and Business Continuity and Disaster Recovery documentation.
  3. Document assessment findings and risk ratings in the Bank’s TPRM platform and maintain an up-to-date tracking sheet that provides management with clear visibility into the status, due date, and completion of each assessment and related follow-up actions.
  4. For vendor due-diligence, with a focus on information security risks, coordinate with relevant Teams (Administration, Legal, etc.) for vendor onboarding and offboarding activities
  5. Perform on-going monitoring of information security-related incidents involving third-parties and coordinate with relevant stakeholders to facilitate requests for necessary information from the relevant third-parties and support the assessment of potential impact to the Bank.
  6. Participate in internal audits and external examinations related to the information security risk domains of third party risk management
  7. Assist in maintaining information security-related TPRM policies and procedures.
  8. Performs other duties and responsibilities as assigned by management.

Your Qualifications:

  1. 3+ Years of experience with risk assessment methodologies and techniques as well as Third Party Risk Management Lifecycle.
  2. Prior experience with financial industry structure and concepts a plus.
  3. Prior experience working on a Third Party Risk Management (TPRM) platform, such as Prevalent.
  4. Prior experience working with and assessing information security-related documentation such as SOC 2 reports, ISO 27001 certification, etc.
  5. Strong knowledge of information security and risk management frameworks, including NIST Cybersecurity Framework, ISO/IEC 27001, and the Cyber Risk Institute Profile.
  6. Strong Microsoft Office skills
  7. Strong verbal and written communication skills.
  8. Strong analytical skills
  9. Self-motivated with good time management skills.

Why you should join SuMi Trust:SuMi Trust embraces flexible ways of working when the business and role permits. We provide employees with a hybrid working model, allowing for in-office work and work from home. Our diverse and inclusive environment along with our global presence enables us to collaborate and communicate to meet our business needs. We believe that efficient teams need truth, loyalty, and a strong sense of purpose to balance risk and their targets. We make sustainable business decisions to improve our society and the world. We believe that each person brings a unique value that drives the business though their creativity and passion.

  • The Employee Benefits package includes: Paid Time Off, medical, HSA, vision, dental, FSA, 401(k), profit sharing, legal plan, cancer indemnity plan, disability insurance, life insurance, employee assistance program, commuter benefits, business travel accident, paid volunteer day, paid memberships, paid seminars, and tuition assistance.
  • We offer many socialization opportunities for wellness, financial wellbeing, runs/walks, team building, happy hours, and activities to support the Sustainable Developmental Goals.

Check out our LinkedIn for our employee experience:

We are an equal employment opportunity employer. All qualified applicants will receive consideration for employment without regard to race, color, religion, gender, national origin, disability status, protected veteran status or any other characteristic protected by law. SuMi Trust provides reasonable accommodations for employees and applicants with disabilities consistent with applicable law. If you need a reasonable accommodation during the application

Vacancy posted 6 days ago
Similar jobs that could be interesting for youBased on the Third Party Information Security Analyst in New York, NY vacancy
  •  ...and genuine care for the people making it possible. The Information Security Analyst II performs necessary activities to assess, inform and enforce...  ...questionnaires and risk assessments. Perform vendor and third-party risk assessments. Work with internal teams and... 
    Suggested
    Full time
    Flexible hours

    Maritz

    New York, NY
    2 days ago
  •  ...., London and Amsterdam. Team: The Security Governance, Risk, and Compliance (GRC)...  ...enabling the business by proactively managing information security risks and maintaining...  ...industry and regulatory expectations. Third-party ecosystem risk is a core part of how we... 
    Suggested
    Full time
    Work experience placement
    Local area

    Plaid

    New York, NY
    15 days ago
  •  ...business grows. We work across security engineering, trust,...  ...with confidence. The InfoSec Analyst II, Trust will operate and improve...  ...technical compliance information into clear responses for customer...  ...leakage, prompt injection, and third-party exposure Provide security... 
    Suggested

    chainalysis-careers

    New York, NY
    3 days ago
  •  ...We are looking for an IT Security Analyst to help protect enterprise systems, data, and cloud...  ...organization. Support regulatory, audit, and third-party risk assessment activities. Produce...  ..., and improvement initiatives. Stay informed on attacker techniques, industry... 
    Suggested

    The Phoenix Group

    New York, NY
    20 hours ago
  • Plaid, with offices in New York, seeks a Security Risk professional to run third-party risk assessments end-to-end—from intake and questionnaire through risk rating, findings, and tracked exceptions. You will vet vendors, customers, and partners onboarding to the platform... 
    Suggested

    PLAID

    New York, NY
    3 days ago
  • United States Digital Space LLC is seeking an experienced Security GRC professional to lead end-to-end vendor risk assessments and govern third-party security posture across onboarding and ongoing relationships. You will mature the risk program with scalable questionnaires... 

    United States Digital Space LLC

    New York, NY
    2 days ago
  •  ...Sr Information Security Analyst Strivector Corp is a National Recruiting and Staffing agency established in 2012 and headquartered in Austin, Texas. We are a preferred partner for several Fortune 500 companies nationwide. Strivector has been consistently rated a rare... 
    Full time
    Contract work
    For contractors
    Work at office
    Remote work
    Relocation

    Strivector

    New York, NY
    6 days ago
  • $87k - $92k

     ...Information Security Analyst Posting Details Job # 042836 Department Code 20703-6034 Department Information Technology Services Job Title Information Security Analyst Location Syracuse, NY Campus Syracuse, NY Commitment to On-Campus Experience Syracuse University is committed... 
    Full time
    Summer work
    Remote work

    Syracuse University

    New York, NY
    5 days ago
  • $75k - $80k

     ...Overnight Weekend Information Security AnalystWillkie Farr & Gallagher LLP is looking for an Overnight Weekend Information Security Analyst to support the Information Technology Team. Willkie is an elite international law firm of approximately 1,300 lawyers located in... 
    Work at office
    Shift work
    Night shift
    Weekend work
    Afternoon shift

    Willkie Farr

    New York, NY
    2 days ago
  •  ...Position Title * Information Security Analyst Position Responsibilities Information Security Analyst New York, NY (Hybrid role), look for Nearby candidates 12+ Months Contract . Responsibilities: Participate in developing and implementing application... 
    Contract work

    Apex Informatics

    New York, NY
    2 days ago
  • $85.2k - $115k

     ...-driven digital work platform, built to support flexible, secure, work-from anywhere experiences. We integrate industry-leading...  ...with respect for candidate privacy. What You’ll Do As an Information Security Analyst, you will be a subject matter expert in monitoring,... 
    Work experience placement
    Local area
    Worldwide
    Flexible hours

    Omnissa, LLC

    New York, NY
    4 days ago
  • $65 - $75 per hour

     ...learn more. Base pay range $65.00/hr - $75.00/hr Direct message the job poster from Insight Global Title: Senior Information Security Analyst Location: 100% Remote Pay Rate: $70-$75/hr Key Responsibilities: Conduct comprehensive audits of enterprise... 
    Contract work
    Remote work

    Insight Global

    New York, NY
    4 days ago
  •  ...Assist in implementing and maintaining security controls in compliance with FISMA, FedRAMP...  ...activity and elevate findings to senior analysts. Assist in validating encryption...  ...~ Bachelor’s degree in Cybersecurity, Information Systems, Computer Science, or a related... 
    For contractors
    Local area
    Remote work

    Page Mechanical Group Inc

    New York, NY
    6 days ago
  •  ...Cybersecurity/Information Security Analyst About the job Cybersecurity/Information Security Analyst Job Title: Cybersecurity / Information Security Analyst (Remote) Location: Remote (U.S.-based candidates preferred) Job Type: Full-Time | Exempt | Remote Department: IT... 
    Full time
    Work experience placement
    Remote work
    Flexible hours

    Bee On The Job

    New York, NY
    4 days ago
  • $78.9k - $123.3k

     ...continuous monitoring activities within a Federal environment. This role is responsible for managing the security authorization lifecycle for one or more information systems, ensuring compliance with Federal cybersecurity requirements, and maintaining the documentation... 
    Permanent employment
    Full time
    Contract work
    Part time
    Work at office
    Local area
    Remote work

    Noblis

    New York, NY
    1 day ago
  • Sumitomo Mitsui Trust Bank, Limited is seeking an Information Security Risk Analyst (SOC) for its New York operations. The role focuses on monitoring, detecting, investigating, and responding to cybersecurity events within a hybrid work environment in New York City. The... 

    Sumitomo-Mitsui-Trust-Bank-

    New York, NY
    5 days ago
  •  ...Division” which performs business functions. Information Risk Governance (“IRG”) provides oversight to information and cyber security risk by maintaining and improving branch...  ...Role Overview: The Information Security Risk Analyst is responsible for supporting the... 
    Work at office
    Work from home
    Flexible hours
    2 days per week

    SUMITOMO MITSUI TRUST BANK, LIMITED

    New York, NY
    6 days ago
  •  ...Division” which performs business functions. Information Risk Governance (“IRG”) provides oversight to information and cyber security risk by maintaining and improving branch...  ...Overview: The Security Operations Center (SOC) Analyst is responsible for monitoring, detecting,... 
    Work at office
    Work from home
    Flexible hours
    2 days per week

    SUMITOMO MITSUI TRUST BANK, LIMITED

    New York, NY
    6 days ago
  • IT Information Security Operation Analyst New York, United States | Posted on 03/06/2025 City New York State/Province New York Country United States About Us Welcome to PGMTEK, Inc where we help candidates find the opportunities that best match with their career goals.... 
    Full time

    PGMTEK Inc.

    New York, NY
    1 day ago
  • Syracuse University is seeking an Information Security Analyst to join the Information Security group within ITS. The role defends university data assets through policy controls, security operations, incident response, and AI-assisted tooling in a SOC environment. The... 

    Syracuse University

    New York, NY
    5 days ago
  • $100k - $121k

     ...significant and complex challenges in science, security and sustainability. Our people apply...  ...all 7 continents. The Data Security Analyst specializes in securing enterprise data...  ...environment. Ability to present complex technical information to a non-technical audience. Strong... 
    Hourly pay
    Contract work
    Local area

    Amentum

    New York, NY
    4 days ago
  • Job-ID31409788Reference25-31660Title : SOC Analyst Location : New York City, Boston MA, Atlanta GA Shift : 3PM to 12AM EST Mon -...  ...rotationDescription: The SOC Analyst serves as the first line of defense for information security operationsmonitoring, investigating, and responding to... 
    Shift work

    Axelon

    New York, NY
    4 days ago
  •  ...Security Analyst Full-time Onsite - NYC No 3rd parties please. This role is not eligible for employment-based immigration sponsorship. Applicants must be legally authorized to work in the United States without employer sponsorship, now or in the future. This... 
    Full time
    Visa sponsorship

    Perennial Resources International

    New York, NY
    18 hours ago
  •  ...Washington D.C., London and Amsterdam. About the Team: The Security Governance, Risk, and Compliance (GRC) team is part of Plaid's...  ..., focused on enabling the business by proactively managing information security risks and maintaining effective controls. Our... 
    Contract work
    Work experience placement
    Local area

    PLAID

    New York, NY
    2 days ago
  • $75k - $85k

     ...IT Security Analyst Gen II is a leading fund administration provider focused entirely on serving private capital asset managers and investors...  ...with IT support to remediate issues Support the Chief Information Security Officer in developing an IT security assurance... 
    Work at office
    Flexible hours
    1 day per week

    Gen II Fund Services

    New York, NY
    3 days ago
  •  ...Network Security Analyst Job Description: Position requires fully on-site reporting. Provide support for all corporate...  ...are required. The candidate must be knowledgeable of Information Security networking best practices and be able to evaluate... 
    Work experience placement
    Local area
    Rotating shift

    3B Staffing LLC

    New York, NY
    3 days ago
  •  ...Embedded Security Analyst at Global Guardian The Global Security Operations Center (GSOC) Analyst...  .... Respond, compile and report all information regarding thefts, alarms, accidents and...  ...manager. Foster relationships with third-party security providers, law enforcement, and... 
    Shift work

    Sscirra

    New York, NY
    3 days ago
  • Success Academy Charter Schools is seeking a Senior Security Analyst to join their Information Security & Privacy team in New York City. This role is essential in building and operationalizing security programs within a rapidly expanding network of public charter schools... 

    Successacademycharterschool

    New York, NY
    4 days ago
  •  ...initiatives, and operational processes necessary to attain and maintain security authorizations and certifications supporting State, Local,...  ...requirements. The individual will be experienced in information security governance, risk management, compliance, authorization... 
    For contractors
    Work experience placement
    Work at office
    Local area

    Presidio

    New York, NY
    1 day ago
  • Success Academy Charter Schools seeks a Security Analyst to advance our information security and privacy program within a K‑12 environment. The role is hands‑on across security operations, endpoints, cloud security, DLP, and compliance, reporting to the Head of Security... 

    Successacademycharterschool

    New York, NY
    3 days ago

Do you want to receive more vacancies?

Subscribe and receive similar vacancies to Third Party Information Security Analyst. Be the first to apply!