Modern Infrastructure and Security Architect - VP
About the role
Discover your opportunity with Mitsubishi UFJ Financial Group (MUFG), one of the world’s leading financial groups. As a member of our team, you’ll work at an MUFG office or client sites four days per week and work remotely one day. You’ll join a dynamic team dedicated to making a meaningful impact for clients, organizations, and communities.
Responsibilities
- Conduct security analysis of current processes and platforms; generate ad-hoc reports for management
- Design security models, review and approve security configuration and install firewall, VPN, routers, IDS scanning technologies, and servers
- Oversee security awareness programs; educate and communicate to staff about information security policies, procedures, and practices
- Define security-based architecture while adhering to development methodologies, engineering and coding standards
- Monitor industry security updates, technologies and best practices to improve security management
- Provide detailed guidance to engineering team members on the development of system security components
- Participate in the development of hardware/software/network security procedures and guidelines that support information security policies
- Align standards, frameworks, and security with overall business and technology strategy
- Create solutions that balance business requirements with information and cyber security requirements
- Identify security design gaps in existing and proposed architectures and recommend changes or enhancements
- Use current programming language and technologies to write code, complete programming, and perform testing and debugging of applications
- Train users in implementation or conversion of systems
Requirements
Must have previous experience in security architecture, demonstrating solutions delivery, principles, and emerging technologies, including continuous monitoring and making improvements to those solutions, working with an information security team. Experience consulting, engineering security best practices, and implementing security principles across the organization to meet business goals and regulatory requirements, including the security considerations of cloud computing (e.g., data breaches, broken authentication, hacking, account hijacking, malicious insiders, third parties, advanced persistent threats (APTs), data loss, and denial-of-service (DoS) attacks).
Skills
- Experience using Visual Basic.NET (VB.NET), Java/J2EE, ColdFusion, Application Programming Interface (API)/web services, scripting languages, and a relational database management system (RDBMS), such as Microsoft SQL Server or Oracle
- Knowledge of NIST 800-53, Control Objectives for Information and Related Technologies (COBIT), ISO 27001/02
- Experience managing security tools such as: Tenable, Governance Risk Management and Compliance (GRC), Nessus, CrowdStrike Falcon, Protocol Analyzers, Data Loss Prevention (DLP), Network Access Control (NAC), Security Information and Event Management (SIEM), Intrusion Prevention System/Intrusion Detection System (IPS/IDS), etc.
Qualifications
Education: Degree or equivalent work experience equally preferable