Information Security Risk Analyst
SUMITOMO MITSUI TRUST BANK, LIMITED
Job Description
Job Description
This role is located in New York City and will require a hybrid work schedule of at least 2 days in office per week.
This role is for Officer level candidates.
About the Bank:Sumitomo Mitsui Trust Bank, Limited was established through the merger of The Sumitomo Trust and Banking Co., Ltd with Chuo Mitsui Trust and Banking, Ltd. on April 1, 2012. We are one of the largest asset managers in Asia and number one among Japanese financial institutions by AUM, with approximately $850 Billion USD in AUM. The Bank provides an assortment of financial solutions and manages a broad spectrum of financial products across its global branches. Department Overview:The Americas Division (“AD”) was established in the Sumitomo Mitsui Trust Bank, Limited, New York Branch) (“SMTBNY”) to perform corporate functions and supervise U.S. entities. Established under the AD are the “Global Banking Unit (“GBU”), Americas Division” and “Global Markets Unit (“GMU”), Americas Division” which performs business functions. Information Risk Governance (“IRG”) provides oversight to information and cyber security risk by maintaining and improving branch wide framework that is in-line with the Head Office and regulatory requirements and addresses Confidentiality, Integrity, and Availability for information assets. IRG establishes appropriate policies, procedures, measurement, and monitoring processes to proactively assess and evaluate and cyber security and information security risks inherent in the Branch Operations. IRG is directly involved in all information and cyber security related projects, matters and issues.
Your Role Overview:The Information Security Risk Analyst is responsible for supporting the organization’s vulnerability management program and performing assigned information security risk assessments. This role will perform the day-to-day vulnerability management activities, perform risk-based analysis of identified vulnerabilities, coordinate remediation efforts with the IT Department, and help ensure systems are maintained in accordance with the organization’s information security standards.
Your Duties and Responsibilities:
- Administer and support the organization’s system vulnerability management program.
- Conduct regular vulnerability scans across servers, endpoints, applications, network infrastructure, and Cloud environments.
- Monitor vulnerability scanning coverage and coordinate with the IT Department to identify missing, newly added, or decommissioned IT assets and ensure that the scanning scope remains accurate and up to date.
- Review and analyze vulnerability scan results and cross-reference with other sources such as the CISA Known Exploited Vulnerabilities (KEV) catalog to identify high-criticality areas for remediation. Identify potential false-positive findings and review with ITD for validity.
- Collaborate with ITD to prioritize system vulnerability remediation and patching based on system risk severity, vulnerability exploitability, asset criticality, and potential business impact.
- Track identified vulnerabilities through remediation and/or mitigation, validate remediation through re-scanning or review of appropriate supporting evidence, and generate regular system vulnerability remediation status reports.
- Monitor compliance of system vulnerability remediation based on pre-defined risk-based remediation targets. Escalate critical or significant delays of system vulnerability remediation based on pre-defined targets to Management, as necessary.
- Create vulnerability management-related reports with risk summaries and recommendations to Management.
- Perform risk assessments on proposed new systems to be introduced to the organization.
- Perform other duties and responsibilities as assigned by management.
- Strong understanding and prior experience working with network components and devices such as Firewalls, IPS, IDS, switches, routers, NDR, and NAC.
- Strong understanding and prior experience working with Microsoft Windows-based environments including components such as domain controllers, DHCP, DNS, and Active Directory.
- Foundational understanding of Information Security frameworks such as NIST Cybersecurity Framework and SP 800-53 as well as Cyber Risk Institute Profile v2.x
- 3+ Years of experience managing System Vulnerability Management tools such as Qualys or Tenable.
- 3+ Years of experience with risk assessment methodologies and techniques
- Prior experience with financial industry structure and concepts a plus.
- Strong verbal and written communication skills.
- Strong analytical skills with attention to detail and accuracy.
- Self-motivated with good time management skills.
- The Employee Benefits package includes: Paid Time Off, medical, HSA, vision, dental, FSA, 401(k), profit sharing, legal plan, cancer indemnity plan, disability insurance, life insurance, employee assistance program, commuter benefits, business travel accident, paid volunteer day, paid memberships, paid seminars, and tuition assistance.
- We offer many socialization opportunities for wellness, financial wellbeing, runs/walks, team building, happy hours, and activities to support the Sustainable Developmental Goals.
Check out our LinkedIn for our employee experience:
We are an equal employment opportunity employer. All qualified applicants will receive consideration for employment without regard to race, color, religion, gender, national origin, disability status, protected veteran status or any other characteristic protected by law. SuMi Trust provides reasonable accommodations for employees and applicants with disabilities consistent with applicable law. If you need a reasonable accommodation during the application
- ...Division” which performs business functions. Information Risk Governance (“IRG”) provides oversight to information and cyber security risk by maintaining and improving branch... ...Overview: The Security Operations Center (SOC) Analyst is responsible for monitoring, detecting,...SuggestedWork at officeWork from homeFlexible hours2 days per week
- Principal Duties:Security review background- AI adaption knowledge for security risk review backgroundCore Must-Haves: AI Security expertise - background in AI security reviews and AI adaptation risks Security Risk Assessment - experience with risk management frameworks...Suggested
- Job-ID31409788Reference25-31660Title : SOC Analyst Location : New York City, Boston MA, Atlanta GA Shift : 3PM to 12AM EST Mon -... ...rotationDescription: The SOC Analyst serves as the first line of defense for information security operationsmonitoring, investigating, and responding to...SuggestedShift work
$75k - $85k
...IT Security Analyst Gen II is a leading fund administration provider focused entirely on serving private capital asset managers and investors... ...with IT support to remediate issues Support the Chief Information Security Officer in developing an IT security assurance...SuggestedWork at officeFlexible hours1 day per week- ...Division” which performs business functions. Information Risk Governance (“IRG”) provides oversight to information and cyber security risk by maintaining and improving branch... ...Overview: The Third Party Information Security Analyst supports the Bank’s Third Party Risk...SuggestedWork at officeWork from homeFlexible hours2 days per week
$100k
...description:Corporate Overview:Truist Securities is the full-service corporate and investment... ...’ Corporate and Investment Banking Analyst Program begins with up to seven weeks of... ...credit underwriting support, drafting information memoranda, developing management and investor...Permanent employmentFull timePart timeBank staffH1bShift workDay shift$160k - $180k
Technology and Information Security Risk Specialist Vice President | Second Line of Defense Position Summary The Technology and Information Security Risk Specialist provides independent Second Line oversight of the Bank’s technology infrastructure, information security,...Work at officeLocal area- ...Success Academy is growing rapidly and security is at the forefront of enabling that... .... We are seeking a Senior Security Analyst to join our Information Security & Privacy team. This individual... ...CrowdStrike, proactively identifying risks, leading investigations, driving...Work at officeImmediate startVisa sponsorship3 days per week
$97.59k - $142.99k
...National Institutes of Health. For more information, go toNYU Langone Health, and interact... ...opportunity to join our team as a Sr. II Security Analyst - Vulnerabilities. In this role, the... ...ownersAnalyze threat intelligence reports, write risk analysis report for zero-day critical...Full time$98.96k - $148.44k
...CitiThe Sec & Derivatives Sr Analyst is an intermediate level position... ...and investigation of client securities and derivatives transactions.... ...assess risk when business decisions are made... ...paid holidays. For additional information regarding Citi employee benefits...Full time- ...based in New York, NY as part of TD Securities' 2027 Full-Time Analyst Program. The Analyst Training Program... ...for the structuring, analysis, risk assessment and ongoing portfolio monitoring... ...recognition. Learn moreAdditional Information:We’re delighted that you’re...Full timeInterim roleLocal areaWork from homeFlexible hours
$117.2k - $176.7k
...future of Salesforce.The ExperienceEnterprise Security is looking for a Senior Analyst to support our Business Information Security Officers (BISOs) in their day-to-day... ...those engagements running smoothly — tracking risks and commitments, coordinating deliverables, and...Full time$135k - $140k
...uniquely Richemont Americas. Senior Security Operation Center (SOC) Analyst - L2Cyber | New York, NYReports to:... ...teams, including IT, security risk, forensics, and legal, to ensure a... ...effectively communicate technical information to both technical and non-technical...Permanent employmentFull timeLocal areaFlexible hours$145k - $170k
CLEAR is building THE secure identity company of the future. Our mission... ...a Senior Security Operations Analyst III to join our SOC team to... ...root causes, communicate risk, and drive timely remediation... ...to validate findings and make informed decisionsSolving complex security...Casual workWork at officeFlexible hours$129.84k - $194.76k
...CitiThe Sec & Derivatives Lead Analyst is a senior level position... ...and investigation of client securities and derivatives transactions.... ...work and budget, and mitigate risks vEnsure satisfactory completion... ...holidays. For additional information regarding Citi employee benefits...Full time- ...Security AnalystJob Location: NYC, NY (Looking for local Candidate... ...8-10 years of experience in information security or related technology... ...testing program within the firm. Analysts are responsible for: Helping... ...indicators and enterprise risk indicators Assessing publicly...Work experience placementLocal area
- ...Security AnalystThe Security Analyst is responsible for managing third-party vulnerability data, executing scans... ...to maintain a complete and accurate risk picture.Evaluate existing... ...teams.EducationBachelor’s degree in Information Technology or a related field is preferred...
- ...Security Analyst Full-time Onsite - NYC No 3rd parties please. This role is not eligible for employment-based immigration sponsorship. Applicants must be legally authorized to work in the United States without employer sponsorship, now or in the future....Full timeVisa sponsorship
$150k - $175k
...about you.Role SummaryThe Asset-Backed Securities Trader/Analyst is responsible for identifying and... ...analysis to generate trade ideas, manage risk, and drive performance.This role reports... ...and synthesize market intelligence to inform portfolio managers and broader...Full timeWork at officeLocal area$110k - $125k
...range of investment banking, securities, investment management and wealth... ...assess and actively manage risk, trade securities, and... ...this multi-faceted group, the Analyst/Associate will concentrate on... ...perspectives, and experiences.For more information, please visit: .Employment...Temporary workWorldwide- ...Security Operations Analyst (AI Training) About the Role We're partnering with the world's leading AI research labs to build the next generation of AI-powered security operations tools. As a Security Operations Analyst, you'll bring your real-world SOC experience...Hourly payOngoing contractContract workFreelanceRemote workFlexible hours
$80k - $95k
...With our expertise, we are not only creating data and information, but also producing timely insights from every angle... ...us on this journey. Fitch Ratings is seeking an Analyst to join its Asset-Backed Securities (ABS) group in our Chicago or New York office. The...Temporary workWork experience placementInternshipWork at officeImmediate start3 days per week- ...color: #f5f5f5; } Job Title Senior Security Analyst Location New York City, NY (... ...programs, including remediation tracking and risk reduction efforts. Conduct... ...Bachelor's degree in Cybersecurity, Information Technology, Computer Science, or a related...
$85k - $100k
...expertise, we are not only creating data and information, but also producing timely insights... ...seeking an Commercial Mortgage-Backed Securities Analyst based out of our New York or Chicago... ...and assess credit strengths and risks of commercial real estate properties,...Temporary workInternshipWork at officeImmediate startShift work3 days per week$99.2k - $148.8k
DescriptionThe Applications Analyst III supervises and provides technical guidance to the staff in the development of specifications for... ....Five years of solid, diverse work experience in ITEpic Security Certification and experience required.Employer DescriptionStrength...TraineeshipWork experience placementLocal areaRemote work$102.6k - $179.25k
About the Role:As a Senior IT Security Analyst, you will engage in advanced cybersecurity tasks... ...tools and technologies.• Conduct security risk assessments and mitigation planning.•... .... Your recruiter can share more information about the specific offer for the job location...Full timeWork at office$72k - $90k
...Role Summary World Wide Technology (WWT) is seeking a Security Solutions Analyst to join our Product Aligned Services practice, supporting... ...Qualifications Bachelor's degree (BA/BS) in Computer Science, Information Technology, Cybersecurity, Engineering, or a related...Full timeRemote workFlexible hoursShift work$153k - $215k
...compliance posture. Work directly with Engineering to embed security and privacy controls into our products, including deletion pipelines... ...confidence in our security posture. Support vendor privacy risk assessments during onboarding and renewals. What you'll bring...Contract workWork at officeFlexible hours- ...Security & Compliance Analyst On the Go has elevated the dining and retail experience for travelers... ...artifacts in the company's Governance, Risk, and Compliance (GRC) platform. Partner... ...& Experience Bachelor's degree in Information Security, Information Technology, or...
$85k - $100k
...a global leader in financial information services with operations in more... ...At Fitch Ratings, credit analysts play a pivotal role in moving... ...analysts performing CRE analysis on securities loans Provide Fitch’s... ...assess credit strengths and risks of commercial real estate properties...Temporary workInternshipWork at officeImmediate startShift work3 days per week
Do you want to receive more vacancies?
Subscribe and receive similar vacancies to Information Security Risk Analyst. Be the first to apply!
- report analyst New York, NY
- research data analyst New York, NY
- temporary data analyst New York, NY
- data analyst no experience New York, NY
- data analyst intern New York, NY
- compliance data analyst New York, NY
- data analyst excel New York, NY
- remote data analyst part time New York, NY
- senior data analyst New York, NY
- business information analyst New York, NY



