Jobs · North Carolina

Cyber Security Engineer, VP

SMBC Group · Charlotte, NC · 2 wk ago
Full-time

SMBC Group is a top-tier global financial group headquartered in Tokyo with a 400-year history, offering a diverse range of financial services including banking, leasing, securities, credit cards, and consumer finance. The Group operates over 130 offices with 80,000 employees across nearly 40 countries. In the Americas, SMBC Group serves corporate, institutional, and municipal clients with commercial and investment banking services, connecting them to local markets and a global network.

About the role

Join SMBC Group’s Cyber Security Operations team as a Cyber Security Engineer II – Data Engineer, Associate. In this hands-on role, you will design and maintain security data pipelines that support monitoring, threat detection, incident response, compliance, and cyber risk visibility across cloud and on-premises environments. You will collaborate with application, infrastructure, cloud, and security teams to ensure critical security telemetry is collected, validated, and made available for operational and analytical use. This role is ideal for someone who enjoys solving data quality challenges, improving data reliability, and building scalable security data solutions in a regulated financial services environment.

This is a hybrid role, requiring attendance at our Tralee office.

Responsibilities

  • Design, build, and maintain scalable data ingestion pipelines for security log onboarding into SIEM platforms and cloud data services, including Azure Data Explorer and Log Analytics.
  • Parse, transform, normalize, enrich, and validate structured and unstructured log data using methods such as JSON parsing, regular expressions, and schema mapping.
  • Partner with application, infrastructure, cloud, and security teams to onboard new telemetry sources and verify end-to-end data collection.
  • Monitor and validate data quality, including log completeness, integrity, timeliness, and consistency across onboarded sources.
  • Troubleshoot ingestion, parsing, transformation, and pipeline issues across cloud and on-premises environments.
  • Conduct telemetry gap assessments and recommend new data sources to improve security monitoring and detection coverage.
  • Develop and maintain documentation including onboarding procedures, data mappings, source requirements, pipeline configurations, and operational processes.
  • Improve automation, ingestion frameworks, and deployment processes to increase scalability, reliability, efficiency, and cost effectiveness.

Requirements

  • 5+ years of experience in cybersecurity, data engineering, security operations, log management, or a related technology discipline.
  • Experience onboarding, managing, and validating security log sources within SIEM, security analytics, or cloud data platforms.
  • Experience coordinating data onboarding efforts across technical teams, vendors, and business partners.
  • Strong knowledge of data parsing, normalization, transformation, and validation techniques.
  • Experience working with structured and unstructured data formats, including JSON, XML, CSV, and log-based telemetry.
  • Ability to identify and resolve data quality, schema, and pipeline performance issues.
  • Familiarity with cloud platforms and related logging, monitoring, and analytics services.
  • Understanding of common security telemetry sources, including network, endpoint, identity, application, cloud, and infrastructure logs.
  • Knowledge of logging, retention, auditability, and data integrity requirements in regulated environments.
  • Experience with scripting or automation using Python, PowerShell, or similar technologies.
  • Familiarity with query languages used to investigate, validate, and analyze ingested security data.
  • Strong communication, collaboration, and documentation skills.
  • Strong attention to detail, sound judgment, and accountability for outcomes.
  • Ability to balance operational support, project delivery, and continuous improvement initiatives.

Skills

  • Experience with threat detection, incident response, vulnerability management, or cloud security (nice to have).
  • Experience supporting infrastructure-as-code or automated deployment practices (nice to have).
  • Knowledge of cybersecurity data engineering trends, telemetry standards, and security analytics platforms (nice to have).
  • Experience working within a global organization or highly regulated financial services environment (nice to have).

Schedule

SMBC’s employees participate in a hybrid workforce model, requiring employees to live within a reasonable commuting distance of their office location. Specific hybrid work schedules will be discussed during the interview process.

Similar jobs

Cyber Security Engineer

TekWissen ®Seattle, WA· 1 mo ago
Information Technology$60–$65/hrapply on candidateportal.ceipal.com

Cyber Security Engineer

Berkeley LabBerkeley, CA· 3 mo ago
Information Technology$157k–$192k/yrapply on lbl.referrals.selectminds.com

Cyber Security Engineer

SES Space & DefenseUnited States· 1 mo ago
RemoteInformation Technologyapply on career41.sapsf.com