Let’s get started
By clicking ‘Next’, I agree to the Terms of Service
and Privacy Policy
Jobs / Job page
Cyber Security Systems Engineer (SME)- ISSE jobs in Herndon, VA | MyTurn.Careers image - Rise Careers
Job details

Cyber Security Systems Engineer (SME)- ISSE jobs in Herndon, VA | MyTurn.Careers

SMBC Group is a top-tier global financial group. Headquartered in Tokyo and with a 400-year history, SMBC Group offers a diverse range of financial services, including banking, leasing, securities, credit cards, and consumer finance. The Group has more than 130 offices and 80,000 employees worldwide in nearly 40 countries. Sumitomo Mitsui Financial Group, Inc. (SMFG) is the holding company of SMBC Group, which is one of the three largest banking groups in Japan. SMFG’s shares trade on the Tokyo, Nagoya, and New York (NYSE: SMFG) stock exchanges.In the Americas, SMBC Group has a presence in the US, Canada, Mexico, Brazil, Chile, Colombia, and Peru. Backed by the capital strength of SMBC Group and the value of its relationships in Asia, the Group offers a range of commercial and investment banking services to its corporate, institutional, and municipal clients. It connects a diverse client base to local markets and the organization’s extensive global network. The Group’s operating companies in the Americas include Sumitomo Mitsui Banking Corp. (SMBC), SMBC Nikko Securities America, Inc., SMBC Capital Markets, Inc., SMBC MANUBANK, JRI America, Inc., SMBC Leasing and Finance, Inc., Banco Sumitomo Mitsui Brasileiro S.A., and Sumitomo Mitsui Finance and Leasing Co., Ltd.The anticipated salary range for this role is between $153,000.00 and $196,000.00. The specific salary offered to an applicant will be based on their individual qualifications, experiences, and an analysis of the current compensation paid in their geography and the market for similar roles at the time of hire. The role may also be eligible for an annual discretionary incentive award. In addition to cash compensation, SMBC offers a competitive portfolio of benefits to its employees.Role DescriptionThe main responsibility of the Cyber Analytics and Reporting Lead is to manage the information security program data requirements, analysis, and reporting to senior management, board of directors, and regulators. Reporting to the Director of Cyber Strategic Analytics and Business Management, this role will collaborate across the information security team to develop innovative methods for measuring risk and performance as well as support cross-functional reporting needs across the firm.Role ObjectivesCyber Risk, Performance, and Financial Measurement• Develop and maintain key risk indicators that align with SMBC’s enterprise risk framework.• Create and track operational and strategic key performance indicators for the information security program.• Develop and monitor financial, workforce, and capacity metrics in support of the Cyber Business Management function.Executive and Board Level Reporting• Regularly deliver metrics and performance reports to management and board level.• Design and implement dashboards that facilitate continuous monitoring of key metrics.Data Operations and Governance• Establish efficient workflows to streamline data operations from source to reporting stages, ensuring accurate and reliable data throughout the process.• Partner with local data officer to ensure security metrics program is aligned with the enterprise data governance requirements.• Manage and maintain end user controls of the security metrics program.Continuous Improvement• Regular review and refinement of analytics methodologies and processes to improve reporting, measurements, and accuracy of data.• Utilize KPI and KRI data to identify trends and determine actionable items.• Collaborate with Cyber Risk and Functional Control Office to manage red/amber metric breaches.Qualifications and Skills• Minimum 5 years of experience working in Information Security or general IT areas related to risk management, controls assurance, compliance programs, cybersecurity and information security regulations, industry standards, and internal policies frameworks.• Proficiency in data analysis tools to interpret and present metrics effectively, including experience with software like PowerBi and Tableau.• Understanding of automation tools and practices to streamline data operations and improve efficiency.• Experience in developing and tracking KPIs and KRIs to assess program effectiveness.• Skills in data governance, data quality, and data lifecycle management to ensure integrity and accuracy of data.• Exceptional interpersonal skills including verbal communication and presentation skills, and ability to communicate with all levels of the organization.• Effective communication skills and ability to build networks and relationships across the IT and Information Security Organization• Highly organized and adopts a methodical approach to understanding the content of and managing data and documentation.• Ability to work independently and reliably under minimal supervision, listen and question until the task in hand is clearly understood.Additional RequirementsD&I CommitmentResponsible for fostering a culture of diversity and inclusion, holding leaders accountable for creating an inclusive environment through awareness and practice of equity in recruiting, developing, and promoting diverse talent.SMBC’s employees participate in a Hybrid workforce model that provides employees with an opportunity to work from home, as well as, from an SMBC office. SMBC requires that employees live within a reasonable commuting distance of their office location. Prospective candidates will learn more about their specific hybrid work schedule during their interview process. Hybrid work may not be permitted for certain roles, including, for example, certain FINRA-registered roles for which in-office attendance for the entire workweek is required.We are an equal employment opportunity employer. All qualified applicants will receive consideration for employment without regard to race, color, religion, gender, national origin, disability status, protected veteran status or any other characteristic protected by law. SMBC provides reasonable accommodations for employees and applicants with disabilities consistent with applicable law. If you need a reasonable accommodation during the application process, please let us know at accommodations@smbcgroup.com.
BAE Systems USA Glassdoor Company Review
3.7 Glassdoor star iconGlassdoor star iconGlassdoor star icon Glassdoor star icon Glassdoor star icon
BAE Systems USA DE&I Review
No rating Glassdoor star iconGlassdoor star iconGlassdoor star iconGlassdoor star iconGlassdoor star icon
CEO of BAE Systems USA
BAE Systems USA CEO photo
Tom Arseneault
Approve of CEO

Average salary estimate

$174500 / YEARLY (est.)
min
max
$153000K
$196000K

If an employer mentions a salary or salary range on their job, we display it as an "Employer Estimate". If a job has no salary data, Rise displays an estimate if available.

What You Should Know About Cyber Security Systems Engineer (SME)- ISSE jobs in Herndon, VA | MyTurn.Careers, BAE Systems USA

Are you ready to take your expertise to new heights? Join SMBC Group as a Cyber Security Systems Engineer (SME) in Herndon, VA, and be part of an elite global financial institution that prides itself on innovation and excellence. With a 400-year legacy and operations around the world, SMBC Group combines the best in banking and technology to keep data secure and enhance performance metrics. In this dynamic role, you will manage the information security program data requirements, analyzing critical security metrics and reporting them to management and the board. Collaborate with talented professionals across various teams to develop new methodologies to measure risk and performance effectively. You'll have the chance to create and track key risk and performance indicators while optimizing data operations for accurate reporting. This role is all about continuous improvement, making it exciting as you refine analytics methodologies and streamline operations using tools like PowerBi and Tableau. As a part of the commitment to diversity and inclusion, SMBC values unique perspectives that foster innovative thinking within the team. Additionally, SMBC offers a hybrid work model that allows the flexibility of both remote and in-office work, ensuring a balanced work-life environment. The anticipated salary for this role is competitive, ranging from $153,000 to $196,000 depending on experience. If you’re passionate about cybersecurity, skilled in data analysis, and ready to embrace new challenges, we want to hear from you!

Frequently Asked Questions (FAQs) for Cyber Security Systems Engineer (SME)- ISSE jobs in Herndon, VA | MyTurn.Careers Role at BAE Systems USA
What are the responsibilities of a Cyber Security Systems Engineer (SME) at SMBC Group?

The Cyber Security Systems Engineer (SME) at SMBC Group is responsible for managing the information security program data requirements, analyzing and reporting on critical risk metrics, and collaborating with the security team to enhance performance measurement methodologies. This role also involves regular reporting to senior management and developing key performance indicators that are aligned with the broader enterprise risk framework. The engineer will play a vital role in establishing efficient workflows for data operations, ensuring accuracy and integrity throughout the reporting process.

Join Rise to see the full answer
What qualifications are required for the Cyber Security Systems Engineer (SME) position at SMBC Group?

To qualify for the Cyber Security Systems Engineer (SME) role at SMBC Group, candidates should have a minimum of 5 years of experience in Information Security or IT-related areas focused on risk management and compliance. A strong proficiency in data analysis tools such as PowerBi and Tableau is essential, along with experience in automation tools and practices that enhance operational efficiency. Candidates should also exhibit exceptional interpersonal skills, allowing them to communicate effectively at all organizational levels and build collaborative relationships.

Join Rise to see the full answer
How does the Cyber Security Systems Engineer (SME) at SMBC Group contribute to data governance?

At SMBC Group, the Cyber Security Systems Engineer (SME) plays a crucial role in data governance by establishing workflows that ensure reliable data handling from source to reporting stages. The engineer partners with local data officers to align security metrics programs with enterprise data governance requirements. By managing end user controls, the engineer ensures that the data used in reports is accurate, fostering trust in the analytics that guide decision-making at the highest organizational levels.

Join Rise to see the full answer
What tools and practices are essential for the Cyber Security Systems Engineer (SME) job at SMBC Group?

The Cyber Security Systems Engineer (SME) at SMBC Group is expected to be proficient with data analysis tools like PowerBi and Tableau for effective visualization and presentation of metrics. Knowledge of automation tools is also critical for improving operational efficiency. Additionally, familiarity with key performance indicators (KPIs) and key risk indicators (KRIs) are necessary to assess and refine program effectiveness, helping the organization maintain a robust cybersecurity posture.

Join Rise to see the full answer
What is the work-life balance like for a Cyber Security Systems Engineer (SME) at SMBC Group?

SMBC Group fosters a healthy work-life balance for its employees, including those in the Cyber Security Systems Engineer (SME) role. The company offers a hybrid work model that allows employees to work from home and from the office, thus providing flexibility to meet personal and professional needs. During the interview process, candidates will learn more about specific hybrid work schedules applicable to their roles, making it possible to manage commitments effectively while contributing meaningfully to the team.

Join Rise to see the full answer
Common Interview Questions for Cyber Security Systems Engineer (SME)- ISSE jobs in Herndon, VA | MyTurn.Careers
Can you describe a time when you developed a key risk indicator in your previous roles?

When answering this question, focus on a specific instance where you successfully identified, developed, and implemented a key risk indicator (KRI). Share details on the process you followed, why the KRI was essential, and how it impacted the organization's risk management efforts. Highlight the collaboration with stakeholders or teams to ensure that the KRI aligned with strategic goals.

Join Rise to see the full answer
What experience do you have with data visualization tools, and how have you used them to present security metrics?

Be prepared to discuss your hands-on experience with data visualization tools such as PowerBi or Tableau. Provide examples of how you've leveraged these tools to create impactful visual presentations of security metrics. Mention the choices you made in designing dashboards and how they effectively communicated data to stakeholders, demonstrating the value of these metrics in decision-making.

Join Rise to see the full answer
How do you ensure accurate and reliable data handling in your projects?

When discussing data handling accuracy, emphasize the importance of data governance practices you have previously implemented. Describe the checks and balances you put in place to monitor data quality throughout the data lifecycle. Explain any tools or methodologies you use to maintain data integrity and ensure that the information reported to stakeholders is trustworthy.

Join Rise to see the full answer
What key performance indicators do you believe are crucial for assessing an information security program?

Identify key performance indicators (KPIs) that are relevant in the context of an information security program. Discuss specific metrics related to incident response times, system availability, user training, or compliance with security policies. Explain how these indicators help in measuring the effectiveness of security measures and align with organizational objectives for risk management.

Join Rise to see the full answer
Can you provide an example of how you've contributed to continuous improvement in security analytics?

Draw upon a real-world example where you identified a gap or inefficiency in the existing analytics processes. Describe the steps you took to implement improvements, the methodologies you used, and the positive results achieved after the changes were made. Highlight any collaboration with cross-functional teams and the data-driven approach you employed to foster a culture of continual enhancement.

Join Rise to see the full answer
How do you approach collaboration with other teams in the cybersecurity space?

Discuss your personal philosophy on collaboration, emphasizing open communication and shared goals. Provide examples of cross-team projects you participated in and how you navigated potential challenges. Highlight the importance of building relationships and how effective teamwork contributes to achieving comprehensive security measures within the organization.

Join Rise to see the full answer
What methods do you employ for risk assessment in information security?

Prepare to share your approach to conducting risk assessments, including the methodologies you employ—whether qualitative or quantitative. Talk about the sources of data you rely on, how you prioritize risks, and the tools you use to document assessments. Convey your understanding of the risk management framework and how it integrates into the organization’s broader security strategy.

Join Rise to see the full answer
In your opinion, what emerging trends should cybersecurity professionals be aware of?

Highlight the latest trends in cybersecurity, such as evolution in threats, advancements in AI/ML applications for threat detection, or changes in compliance requirements. Discuss the importance of staying updated with current events and changes in regulations. Mention specific resources or communities you follow to continue your professional development and maintain a competitive edge in the industry.

Join Rise to see the full answer
How do you communicate complex security data to non-technical stakeholders?

Explain your strategy for simplifying complex security concepts by breaking them down into relatable terms. Discuss how you employ visuals, anecdotes, or analogies to create an intuitive understanding for non-technical stakeholders. Provide specific examples of situations where you successfully presented to non-technical audiences and the methods you used to ensure they grasped the key messages.

Join Rise to see the full answer
What steps do you take to stay compliant with security regulations?

Talk about your commitment to understanding and adhering to security regulations such as GDPR, HIPAA, or PCI-DSS. Discuss the methods you use for staying updated with changes in these regulations and how you integrate compliance practices into your daily work. Highlight your experience in conducting audits or assessments that ensure adherence to regulatory requirements.

Join Rise to see the full answer
Similar Jobs
Photo of the Rise User
Inclusive & Diverse
Rise from Within
Mission Driven
Diversity of Opinions
Work/Life Harmony
Photo of the Rise User
Posted 13 days ago
Photo of the Rise User
Posted 8 days ago
Photo of the Rise User
Posted yesterday
Posted 4 days ago

We provide an essential edge to protect what matters most. We’re working to deliver the highest quality solutions to our customers at the lowest possible cost, while fueling economic development, scientific research and technology innovation thr...

30 jobs
MATCH
Calculating your matching score...
FUNDING
SENIORITY LEVEL REQUIREMENT
TEAM SIZE
EMPLOYMENT TYPE
Full-time, hybrid
DATE POSTED
December 1, 2024

Subscribe to Rise newsletter

Risa star 🔮 Hi, I'm Risa! Your AI
Career Copilot
Want to see a list of jobs tailored to
you, just ask me below!