Information Security Risk Analyst (SOC)
Socket.dev
This role is located in New York City and will require a hybrid work schedule of at least 2 days in office per week. This role is for Officer level candidates. About the Bank Sumitomo Mitsui Trust Bank, Limited was established through the merger of The Sumitomo Trust and Banking Co., Ltd with Chuo Mitsui Trust and Banking, Ltd. on April 1, 2012. We are one of the largest asset managers in Asia and number one among Japanese financial institutions by AUM, with approximately $850 Billion USD in AUM. The Bank provides an assortment of financial solutions and manages a broad spectrum of financial products across its global branches. Department Overview: The Americas Division (“AD”) was established in the Sumitomo Mitsui Trust Bank, Limited, New York Branch) (“SMTBNY”) to perform corporate functions and supervise U.S. entities. Established under the AD are the “Global Banking Unit (“GBU”), Americas Division” and “Global Markets Unit (“GMU”), Americas Division” which performs business functions. Information Risk Governance (“IRG”) provides oversight to information and cyber security risk by maintaining and improving branch wide framework that is in-line with the Head Office and regulatory requirements and addresses Confidentiality, Integrity, and Availability for information assets. IRG establishes appropriate policies, procedures, measurement, and monitoring processes to proactively assess and evaluate and cyber security and information security risks inherent in the Branch Operations. IRG is directly involved in all information and cyber security related projects, matters and issues. Your Role Overview: The Security Operations Center (SOC) Analyst is responsible for monitoring, detecting, investigating, and responding to cybersecurity events and alerts across the organization’s technology environment. This role serves as a frontline defender within the Information Risk Governance Department, identifying potential threats, investigating suspicious activities, and supporting incident response efforts in order to protect the confidentiality, integrity, and availability of organizational assets. Your Duties and Responsibilities: Monitor and analyze security events and alerts generated by security systems such as the Security Information and Event Management (SIEM) system, Endpoint Detection & Response (EDR) system, Firewalls, Network Access Control (NAC), Network Detection & Response (NDR) system, and Intrusion Detection and Prevention (IDS/IPS) systems. Triage and analyze security alerts to determine severity, scope, and potential impact and business risk. Investigate suspicious system, network, and user activity, escalating potential security incidents to the Incident Response Team and Management as appropriate. Maintain awareness of the evolving cybersecurity landscape including emerging threats, attack techniques, vulnerabilities, and indicators of compromise (IoC) Conduct proactive threat-hunting activities to identify, investigate, and mitigate emerging threats, anomalous behavior, and potential indicators of compromise that may evade existing security controls. Participate as a member of the Incident Response Team during cybersecurity incidents and investigations. Tasks include documenting incident findings, actions taken, and to collect system log evidence and forensic artifacts. Maintain, administer, and tune SIEM and NDR Security tools including ongoing optimization of detection rules, use cases, dashboards, reports, and alert configurations. Liaise and coordinates with vendors, service providers, and contracts to support security operations and incident response activities. Assists with internal and external audits, regulatory examinations, and information security assessments. Assists with the evaluation, testing, and comparative analysis of security monitoring and SOC-related technologies. Serves as the subject matter expert (SME) for assigned security monitoring and detection platforms. Maintains procedures, playbooks, and documentation related to security monitoring and incident response processes. Performs other duties and responsibilities as assigned by management. Your Qualifications: Bachelor’s degree or equivalent in Information Technology, Cybersecurity/Information Security, or a related field with 3+ years of experience. Minimum of three (3) years of experience in cybersecurity, security operations, or a related technical field. Strong understanding of security principles, frameworks, and best practices. Experience with security monitoring, event analysis, and threat detection technologies. Experience with incident investigation and response Excellent communication and problem solving skills Knowledge of threat intelligence concepts, frameworks, and operational use cases. Understanding of Cloud Security principles and controls. Strong knowledge of Microsoft Windows Server 2019/2022/2025 and Active Directory environments. Strong knowledge of networking protocols, architecture, and security concepts Strong understanding of firewall technologies and security controls Strong understanding and correlation skills of security logs, including Windows Event logs, Active Directory, DNS, proxy, firewall, EDR, and Cloud platform logs. Strong knowledge and prior experience with SIEM platforms and security event correlation tools. Strong knowledge and prior experience with User and Entity Behavioral Analytics (UEBA) and behavioral analysis tools. Working knowledge of Amazon Web Services (AWS) architecture, services, and operations. Working knowledge of Linux systems would be a plus Excellent analytical, organization, and multi-tasking skills with strong attention to detail and accuracy. Prior experience in the Financial institution or banking industry would be preferred. Why you should join SuMi Trust: SuMi Trust embraces flexible ways of working when the business and role permits. We provide employees with a hybrid working model, allowing for in-office work and work from home. Our diverse and inclusive environment along with our global presence enables us to collaborate and communicate to meet our business needs. We believe that efficient teams need truth, loyalty, and a strong sense of purpose to balance risk and their targets. We make sustainable business decisions to improve our society and the world. We believe that each person brings a unique value that drives the business though their creativity and passion. The Employee Benefits package includes: Paid Time Off, medical, HSA, vision, dental, FSA, 401(k), profit sharing, legal plan, cancer indemnity plan, disability insurance, life insurance, employee assistance program, commuter benefits, business travel accident, paid volunteer day, paid memberships, paid seminars, and tuition assistance. We offer many socialization opportunities for wellness, financial wellbeing, runs/walks, team building, happy hours, and activities to support the Sustainable Developmental Goals. Check out our LinkedIn for our employee experience: We are an equal employment opportunity employer. All qualified applicants will receive consideration for employment without regard to race, color, religion, gender, national origin, disability status, protected veteran status or any other characteristic protected by law. SuMi Trust provides reasonable accommodations for employees and applicants with disabilities consistent with applicable law. If you need a reasonable accommodation during the application #J-18808-Ljbffr Socket.dev
- Sumitomo Mitsui Trust Bank, Limited is seeking an Information Security Risk Analyst (SOC) for its New York operations. The role focuses on monitoring, detecting, investigating, and responding to cybersecurity events within a hybrid work environment in New York City. The...Suggested
- Job-ID31409788Reference25-31660Title : SOC Analyst Location : New York City, Boston MA, Atlanta GA Shift : 3PM to 12AM EST Mon - Fri... ...: The SOC Analyst serves as the first line of defense for information security operationsmonitoring, investigating, and responding to...SuggestedShift work
- Syracuse University is seeking an Information Security Analyst to join the Information Security group within ITS. The role defends university data... ...operations, incident response, and AI-assisted tooling in a SOC environment. The ideal candidate has a BS in a related field...Suggested
- ..., London and Amsterdam. Team: The Security Governance, Risk, and Compliance (GRC) team is part of... ...the business by proactively managing information security risks and maintaining effective... ...third parties—reviewing questionnaires, SOC 2 and ISO reports, and security...SuggestedFull timeWork experience placementLocal area
- Mercury is seeking an Information Security GRC Analyst to mature security, risk, and compliance programs and build guardrails for business continuity and resilience... ...‑functional teams, and drive audit readiness across SOC 2, PCI DSS, NIST, CIS, and ISO 27001. The role...Suggested
- Job Description The Security Risk & Compliance Analyst supports the organization’s global information security program by assisting in the identification, assessment, and management of information security risks and compliance demands across Victaulic’s entire organization...Work at office
- Victaulic is seeking a Security Risk & Compliance Analyst to support its global information security program across various regulatory frameworks. This role involves conducting risk assessments, managing compliance documentation, and coordinating third-party audits. Ideal...
$87k - $92k
...Information Security Analyst Posting Details Job # 042836 Department Code 20703-6034 Department Information... ...within a Security Operations Center (SOC). The role requires hands‑on... ...scan configuration, finding analysis, risk prioritization based on exploitability...Full timeSummer workRemote work$75k - $80k
...Overnight Weekend Information Security AnalystWillkie Farr & Gallagher LLP is looking for an Overnight Weekend Information Security Analyst to support the Information Technology Team. Willkie is... ...and analyst operation of SIEM within SOC functionality identifying relevant...Work at officeShift workNight shiftWeekend workAfternoon shift- ...Amsterdam. About the Team: The Security Governance, Risk, and Compliance (GRC) team is part of... ...the business by proactively managing information security risks and maintaining... ...regulatory knowledge: Working knowledge of SOC 2, ISO 27001, NIST CSF, PCI DSS, GLBA,...Full timeContract workWork experience placementLocal area
$105k - $133k
## Senior Security Operations Center (SOC) AnalystApplylocations: US NJ Remotetime type... ...Operations Center (SOC) Analyst,** you’ll take the lead on... ...around DLP and insider risk initiatives, which include... ...Computer Science, Engineering, Information Security, Information...Full timeWork at officeLocal areaVisa sponsorshipFlexible hoursShift work- ...Cybersecurity/Information Security Analyst About the job Cybersecurity/Information Security Analyst Job... ...This role is instrumental in assessing risk, managing vulnerabilities, monitoring... ...standards such as NIST, ISO 27001, HIPAA, or SOC 2. Manage security awareness training...Full timeWork experience placementRemote workFlexible hours
- ...Division” which performs business functions. Information Risk Governance (“IRG”) provides oversight to information and cyber security risk by maintaining and improving branch... ...Role Overview: The Information Security Risk Analyst is responsible for supporting the...Work at officeWork from homeFlexible hours2 days per week
$65 - $75 per hour
...poster from Insight Global Title: Senior Information Security Analyst Location: 100% Remote Pay Rate: $70-$7... ...standards (e.g., ISO 27001, NIST, SOC 2). Identify security gaps and recommend remediation strategies to mitigate risks. Collaborate with IT, DevOps, and business...Contract workRemote work- ...last.Role OverviewThe Cyber Security Operations team is seeking a... ...Security Operations Center (SOC) Analyst to help protect New York Life... ...and mitigate evolving cyber risks while strengthening the... ...Cybersecurity, Computer Science, Information Technology, or a related...Local area
- Principal Duties:Security review background- AI adaption knowledge for security risk review backgroundCore Must-Haves: AI Security expertise - background in AI security reviews and AI adaptation risks Security Risk Assessment - experience with risk management frameworks...
$75k - $85k
...IT Security Analyst Who is Gen II? Gen II is a leading fund administration provider focused entirely on serving private capital asset... ...with IT support to remediate issues Support the Chief Information Security Officer in developing an IT security assurance program...Full timeWork at officeFlexible hours1 day per week- ...Network Security Analyst Job Description: Position requires fully on-site reporting. Provide support for all corporate... ...are required. The candidate must be knowledgeable of Information Security networking best practices and be able to evaluate...Work experience placementLocal areaRotating shift
- ...Sr Information Security Analyst Strivector Corp is a National Recruiting and Staffing agency established in 2012 and headquartered in Austin, Texas. We are a preferred partner for several Fortune 500 companies nationwide. Strivector has been consistently rated a rare...Full timeContract workFor contractorsWork at officeRemote workRelocation
- ...Position Title * Information Security Analyst Position Responsibilities Information Security Analyst New York, NY (Hybrid role), look for Nearby... ...responses to regulatory examiners, auditors, and risk management inquiries Collaborate with cross function teams...Contract work
- ...implementing and maintaining security controls in compliance with FISMA... ...baselines. Support Risk Management Framework (RMF) activities... ...elevate findings to senior analysts. Assist in validating... ...Bachelor’s degree in Cybersecurity, Information Systems, Computer Science, or...For contractorsLocal areaRemote work
$100k - $121k
...complex challenges in science, security and sustainability. Our... ...continents. The Data Security Analyst specializes in securing enterprise... ...and recertifications. Risk Assessment, Auditing & Monitoring... ...to present complex technical information to a non-technical audience....Hourly payContract workLocal area$85.2k - $115k
...platform, built to support flexible, secure, work-from anywhere experiences. We integrate... ...privacy. What You’ll Do As an Information Security Analyst, you will be a subject matter expert in... ...workflows to enhance efficiency and reduce risk. What You’ll Bring You should have a...Work experience placementLocal areaWorldwideFlexible hours- Success Academy Charter Schools seeks a Security Analyst to advance our information security and privacy program within a K‑12 environment. The role is hands‑on across security operations, endpoints, cloud security, DLP, and compliance, reporting to the Head of Security...
- ...operational processes necessary to attain and maintain security authorizations and certifications supporting State, Local... ...requirements. The individual will be experienced in information security governance, risk management, compliance, authorization package development...For contractorsWork experience placementWork at officeLocal area
- Success Academy Charter Schools is seeking a Senior Security Analyst to join their Information Security & Privacy team in New York City. This role is essential in building and operationalizing security programs within a rapidly expanding network of public charter schools...
- ...Moderate, DoD IL5, CMMC Level 2, SOC 2 Type 2, ISO 27001:2022,... .... As a Principal Security GRC Analyst, you will serve as a senior... ...comprehensive security governance, risk, and compliance program. You... ...privacy. For more details on the information Rescale collects in your...Immediate start
$65k - $75k
...Position Details Advertising/Posting Title Security Operations Analyst Posting Summary Conduct in-depth... ..., integrity, and availability of information within the University of Vermont’s digital... ...document and remediate incidents and risks to the University. Minimum...Full timeWork at officeRemote workAfternoon shift$135k - $140k
...hacking attempts, and other security threats. The role is responsible... ...guiding less experienced analysts and contributing to continuous... ...teams, including IT, security risk, forensics, and legal, to ensure... ...communicate technical information to both technical and non‑technical...Local areaFlexible hours- Senior Consultant - Epic Security Analyst - Remote Join to apply for the Senior Consultant - Epic... ...build strategy. Track and document risks and issues. Analyze and document workflows... ...Full-time Job function Job function Information Technology Industries IT Services and IT...Remote jobFull timeContract workLocal area
Do you want to receive more vacancies?
Subscribe and receive similar vacancies to Information Security Risk Analyst (SOC). Be the first to apply!
- salesforce data analyst New York, NY
- data analyst intern New York, NY
- business information analyst New York, NY
- talent data analyst New York, NY
- regulatory reporting analyst New York, NY
- senior financial data analyst New York, NY
- sql data analyst New York, NY
- data conversion analyst New York, NY
- neuroscience data analyst New York, NY
- senior information security analyst New York, NY


