Full Job Description
Role Description
Monitor, review and perform audits on security lists, access logs, policy compliance reports, and threat detection and quarantine lists. Monitor network traffic for signs of irregular activity that may indicate a breach. Provide incident response and support in the event of a cyber security event. Troubleshoot and remediate any issues and analyze threats once they have been contained.
Role Objectives: Delivery
Monitor, review and perform audits on security lists, access logs, policy compliance reports and threat detection and quarantine lists. Provide incident response and support in the event of a cyber security event. Troubleshoot and remediate any issues on affected systems, and analyze threats once they have been contained. Install anti-virus software and monitoring software on machines according to company policy. Test and apply security policy and virus definition updates to client machines. Apply and manage network security and firewall protocols, including maintaining access and denial lists. Monitor network traffic for signs of irregular activity that may indicate a breach.
Role Objectives: Interpersonal
Engage with cyber security architects to understand implement cyber security initiatives according to the policies they determine. Partner with IT systems and desktop support teams to install anti-virus software on company workstations and servers, providing support on any installation and update issues or policy conflicts. Collaborate with network administrators to apply firewall and infrastructure policy updates and monitoring of network traffic flows. Work with business units to provide training on cyber security issues, policy and best practices, and how to respond to potential attacks or breaches.
Role Objectives: Expertise
Demonstrate comprehensive understanding of cyber security best practices, risk vectors, mitigation techniques and protection software. Display knowledge of network security concepts and tools such as firewalls, proxy servers, email security and suspicious traffic flows. Exhibit analytical ability to lead incident response and mitigation efforts as well as identify key areas for improvement from post-incident analysis. Show ability to convey cyber security polices and concepts to employees and lead training efforts to ensure all employees follow recommended best practices relating to cyber security.
Qualifications and Skills
Recommended years of experience: 3
Additional Requirements
SMBC's employees participate in a Hybrid workforce model that provides employees with an opportunity to work from home, as well as, from an SMBC office. SMBC requires that employees live within a reasonable commuting distance of their office location. Prospective candidates will learn more about their specific hybrid work schedule during their interview process. Hybrid work may not be permitted for certain roles, including, for example, certain FINRA-registered roles for which in-office attendance for the entire workweek is required.