Senior Cyber Security Engineer-Threat Detection

4 weeks ago


ireland Sumitomo Mitsui Financial Group, Inc. Full time

SMBC Group is a top-tier global financial group. Headquartered in Tokyo and with a 400-year history, SMBC Group offers a diverse range of financial services, including banking, leasing, securities, credit cards, and consumer finance. The Group has more than 130 offices and 80,000 employees worldwide in nearly 40 countries. Sumitomo Mitsui Financial Group, Inc. (SMFG) is the holding company of SMBC Group, which is one of the three largest banking groups in Japan. SMFG's shares trade on the Tokyo, Nagoya, and New York (NYSE: SMFG) stock exchanges.

In the Americas, SMBC Group has a presence in the US, Canada, Ireland, Mexico, Brazil, Chile, Colombia, and Peru. Backed by the capital strength of SMBC Group and the value of its relationships in Asia, the Group offers a range of commercial and investment banking services to its corporate, institutional, and municipal clients. It connects a diverse client base to local markets and the organization's extensive global network.

Role Description

You will be a key member of a high-performing team responsible for security detection and monitoring capabilities and strategy. The team has a mixture of offensive and defensive cyber security expertise. The team works to proactively analyse, prevent, detect, and respond to threats before they impact SMBC. This position includes mastery of a wide range of security detection and monitoring technologies (both cloud and on-premise) with a focus on ensuring optimal performance, new detection and coverage capabilities, and maintaining continuous monitoring and tuning. The successful candidate will execute and drive detection engineering with minimal guidance.

Role Objectives

  1. Data ingestion: selection and implementation of optimum data flows to ingest security data to our systems.
  2. Data optimization: identify and filter data to relevant systems, such as SIEM for rule detection and Data Lake for investigations and incident response.
  3. Identify, resolve and document operational issues and report time to respond and time to resolve.
  4. Deliver a detection strategy to ensure SMBC is both fully compliant for various Cyber Security Controls and Emerging Threats by implementing high fidelity actionable security detections.
  5. Creation and tuning of alerts and detections from a SIEM and other devices in response to changing threats.
  6. Work with detection as code pipeline with built in change control with a full audit trail.
  7. Build automated verification suites of our rule set to ensure rules are behaving as expected.
  8. Conduct advanced adversary simulations to assess the effectiveness of our detections.
  9. Integrate outputs from red teaming into security strategies, enhancing our security posture.
  10. Onboard new security tools to SOC monitoring including testing and verification of how the system is configured.
  11. Develop and implement enhancements to assist in detection, prevention, and analysis of security threats.
  12. Automate robust enterprise solutions reducing manual effort.
  13. Conduct proactive research to analyze security weaknesses and recommend appropriate strategies.
  14. Manage tasks in an agile manner - working to a prioritized backlog.
  15. Collaborate across functions and vendors to drive implementation and enhancements of security detection capabilities.
  16. Assess the effectiveness of cybersecurity measures utilized by systems.
  17. Employ configuration management processes.
  18. Design, develop, integrate, and update system security measures that provide confidentiality, integrity, availability, authentication, and non-repudiation.
  19. Develop mitigation strategies to address cost, schedule, performance, and security risks.
  20. Trace system requirements to design components and perform gap analysis.
  21. Measure and track metrics for the detection engineering process to illustrate progress towards goals and track gaps in detection coverage.
  22. Maintain and create documentation in support of detection and response capabilities and processes and readily fulfil any audit requests.
  23. Provide mentoring, coaching, and professional development opportunities to team members.

Qualifications and Skills
  1. 5+ years of relevant experience
  2. Experience with log analysis from multiple sources
  3. Experience with cloud SIEM, UEBA, NSM, EDR and/or other detection technologies
  4. Strong knowledge of Windows and Linux systems, Active Directory, Cloud technologies
  5. Ability to use logic and reasoning to identify solutions and improvements to manual/inefficient processes and tasks
  6. Experience of building detection as code pipelines
  7. Experience mapping detections to the MITRE framework
  8. Expertise in query languages
  9. Strong troubleshooting ability
  10. Ability to balance operational tasks with project work
  11. Ability to translate threat intelligence into actionable detection logic
  12. Scripting ability
  13. Experience in other areas of Cyber Security an advantage
  14. Work effectively and collaboratively in a global team environment
  15. Strong sense of self-ownership and attention to detail

Additional Requirements

D&I Commitment

Responsible for fostering a culture of diversity and inclusion, holding leaders accountable for creating an inclusive environment through awareness and practice of equity in recruiting, developing, and promoting diverse talent.

SMBC's employees participate in a hybrid workforce model that provides employees with an opportunity to work from home, as well as, from an SMBC office. SMBC requires that employees live within a reasonable commuting distance of their office location. Prospective candidates will learn more about their specific hybrid work schedule during their interview process.

We are an equal employment opportunity employer. All qualified applicants will receive consideration for employment without regard to race, color, religion, gender, national origin, disability status, protected veteran status or any other characteristic protected by law. SMBC provides reasonable accommodations for employees and applicants with disabilities consistent with applicable law. If you need a reasonable accommodation during the application process, please let us know at accommodations@smbcgroup.com.

#J-18808-Ljbffr

  • ireland airbnb, Inc. Full time

    Senior Security Engineer, Threat Detection and ResponseAirbnb was born in 2007 when two Hosts welcomed three guests to their San Francisco home, and has since grown to over 4 million Hosts who have welcomed more than 1 billion guest arrivals in almost every country across the globe. Every day, Hosts offer unique stays and experiences that make it possible...


  • ireland Airbnb Full time

    Airbnb was born in 2007 when two Hosts welcomed three guests to their San Francisco home, and has since grown to over 4 million Hosts who have welcomed more than 1 billion guest arrivals in almost every country across the globe. Every day, Hosts offer unique stays and experiences that make it possible for guests to connect with communities in a more...


  • ireland Notion Full time

    About Us:We're on a mission to make it possible for every person, team, and company to be able to tailor their software to solve any problem and take on any challenge. Computers may be our most powerful tools, but most of us can't build or modify the software we use on them every day. At Notion, we want to change this with focus, design, and craft.We've been...


  • ireland Google Full time

    Minimum qualifications:Bachelor's degree or equivalent practical experience.2 years of experience with security assessments or security design reviews or threat modeling.2 years of experience with security engineering, computer and network security and security protocols.2 years of coding experience in one or more general purpose languages.Preferred...

  • Security Engineer 4

    4 weeks ago


    ireland Oracle Full time

    Job DescriptionWe are seeking a Detection Engineer to enhance our SaaS cloud security posture by developing, optimizing, and automating threat detection and response capabilities. This role involves designing and implementing detection-as-code, leveraging cloud-native security tools, and collaborating with security operations and engineering teams to...


  • ireland Dell, Inc. Full time

    Senior Consultant, Cyber Incident Response CommanderThe Dell Security & Resiliency organization manages the security risk across all aspects of Dell's business. We are currently experiencing incredible growth in order to meet the security needs of the world's largest technology company. With team members located in over 15 countries, you will have an...


  • ireland Amazon Full time

    AWS Managed Services (AMS) Security is looking for technical Security Engineers that are passionate about learning new concepts and work well within a team environment to keep customers secure. We value engineers that can work through ambiguity to identify suspicious activity, lead security response, and can explain technical security concepts to...


  • ireland Amazon Full time

    Come and build innovative services that protect our cloud from advanced security threats!As a Senior Security Engineer on our team, you'll help build and manage services that detect and automate the mitigation of cybersecurity threats across Amazon's infrastructure, including advanced persistent threats. You'll work with data scientists, software development...


  • ireland Turner & Townsend Full time

    Company DescriptionAt Turner & Townsend we're passionate about making the difference. That means delivering better outcomes for our clients, helping our people to realize their potential, and doing our part to create a prosperous society.Every day we help our major global clients deliver ambitious and highly technical projects, in over 130 countries...

  • Senior Detection

    4 weeks ago


    ireland nineDots.io Full time

    Direct message the job poster from nineDots.ioTech Recruiter | Plant Whisperer | Heavy Metal Addict @ nineDots.ioLooking for a role where you can shape the future of security operations? Want to work in a company that truly cares about its people and the tech they build? This might be the opportunity you’ve been waiting for.You can join a talented security...


  • ireland Amazon Full time

    Come and build innovative services that protect our cloud from advanced security threats!As a Security Engineer on our team, you'll help build and manage services that detect and automate the mitigation of cybersecurity threats across Amazon's infrastructure, including advanced persistent threats. You'll work with data scientists, software development...


  • ireland Microsoft Full time

    In alignment with our Microsoft values, we are committed to cultivating an inclusive work environment for all employees to positively impact our culture every day and we need you as a Network Security Service Engineer.Microsoft's Cloud Operations & Innovation (CO+I) is the engine that powers our cloud services. As a Network Security Service Engineer, you...

  • Senior Detection

    4 weeks ago


    ireland Expel Full time

    Imagine yourself as a SOC analyst and a new alert shoots to the top of the queue. You open the alert and all of the relevant facts are laid out for you. You know the who, the what, and the where of what happened and it’s all right there in the alert. You notice the attacker IP immediately and wonder, “Where is that IP located?”. Wonder no more because...


  • ireland Squarespace Full time

    Squarespace is looking for a Security Engineer with a focus on Investigations and Incident Response to join a dedicated team responsible for monitoring and responding to attacks on our platform. You'll partner with teams across the organization as you investigate security events specific to our platform and corporate environment.This is a hybrid role working...


  • ireland GemPool Recruitment Full time

    Get AI-powered advice on this job and more exclusive features.Senior Application Security Engineer at GemPool RecruitmentGemPool is a specialised IT recruitment agency that provides top IT jobs.We are currently hiring for one of our clients for the position of Senior Application Security Engineer. This is a full-time opportunity to play a pivotal role in...


  • ireland Stripe Full time

    Stripe is a financial infrastructure platform for businesses. Millions of companies - from the world’s largest enterprises to the most ambitious startups - use Stripe to accept payments, grow their revenue, and accelerate new business opportunities. Our mission is to increase the GDP of the internet, and we have a staggering amount of work ahead. That...


  • ireland Pico Full time

    Pico fuels the global capital markets community by providing exceptional market data services and customized managed infrastructure solutions. As financial industry experts at the center of markets and technology, we help our clients efficiently scale their business and quickly access markets. From infrastructure to connectivity, we support our clients...

  • Threat Analyst II

    4 weeks ago


    ireland CrowdStrike Holdings, Inc. Full time

    Threat Analyst II (Remote)Threat Analyst II (Remote)Apply locations: Ireland - Remote, United Kingdom - Remote, Spain - Remote, Romania - RemoteTime type: Full timePosted on: Posted 2 Days AgoJob requisition id: R21929About CrowdStrike:As a global leader in cybersecurity, CrowdStrike protects the people, processes and technologies that drive modern...


  • ireland Fleming-Research Full time

    Industrial Cyber Security Engineer - PharmaMaintain seamless operation of OT systems by aligning IT support with production requirements.Set up the infrastructure, network servers, etc.Define the cybersecurity strategy.Ensure all activities align with industry regulations and internal standards.QualificationsMin 3 years of experience in Cybersecurity in...


  • ireland Scurri Full time

    Junior Cyber Security EngineerApplication Deadline: 31 March 2025Department: Software EngineeringEmployment Type: Permanent - Full TimeLocation: WexfordDescriptionScurri optimises the ordering, shipping and delivery processes for a growing list of online retailers and distribution companies. We make it easier for well known brands to ship goods to their...