Search jobs > New York, NY > Vice president

Threat Modeling Architect - Vice President

SMBC Group
New York, NY, US
$153K-$196K a year
Full-time

The anticipated salary range for this role is between $153,000.00 and $196,000.00. The specific salary offered to an applicant will be based on their individual qualifications, experiences, and an analysis of the current compensation paid in their geography and the market for similar roles at the time of hire.

The role may also be eligible for an annual discretionary incentive award. In addition to cash compensation, SMBC offers a competitive portfolio of benefits to its employees.

Role Description

This role resides in the Cyber Resilience (COR) team within the SMBC Americas Division Information Security Office. CR’s mission is to support 14 companies managing activities related to Cyber Resilience in accordance with applicable regulations, Firm policies, and industry best practices for Information Security and Operational Resilience.

The Threat Modeling Architect VP will execute and mature a program that provides a visual representation of assets, controls, threat agents, trust zones, attack paths, and a list of potential attacks a threat agent may perform as well as related reporting documents and issue management.

Additionally, responsibilities include participating in information technology, data management, cybersecurity, and operational resilience management across businesses.

This includes regional resilience coordination and reporting of progress to executive leadership. The role also serves as a champion for Cyber Resilience concerns, controls and maturation at the Firm, especially for the modeled environments, and related processes such as Architecture and SDLC (Software Development Lifecycle).

Role Objectives

  • Facilitates the management of an enterprise Threat Modeling Assessment program to enhance maturity across the firm
  • Builds Threat Models of enterprise services to identify and refine the attack surface
  • Acts as a Cyber Resilience champion of the Threat Modeling Assessment program and serve a pivotal role in maturation efforts
  • Delivers reports that capture identified risks controls assets trust zones and enhancement requirements
  • Partners with stakeholders on Threat Modeling Assessment Issues to create action plans identified during fieldwork
  • Ability to prioritize engagements using a riskbasedapproach
  • Determines alignment of Cyber Resilience controls in practice with those from authoritative sources such as NIST SP 80053 and ISO 27002 to provide holistic insight into current capabilities and risk themes as well as best practices
  • Develops a deep knowledge of SMBC critical services and dependencies on technology people processes and third parties
  • Understands the impact of cyber risks as it relates to both firm and industry wide impacts to technical and security dependencies and single points of failure to enhance mitigation activities
  • Educates and provides subject matter expertise to support the business on cyber hygiene activities and enhancements based on business related impacts

Qualifications and Skills

  • Deep understanding of enterprise architecture and security architectural elements as they relate to risks and controls Ability to accurately capture and enhance architectural diagrams
  • Wellversed in Cyber Resilience to include technology incident response and cyber risk practices with the ability to connect and align with the firms processes and frameworks
  • 8 years of direct work experience within the financial services industry with focus on security architecture as it relates to cyber threats
  • Working knowledge of business and cyber risk management process and controls industry practices and frameworks eg NIST 80053 ISO 27000 family
  • Broad knowledge of cloud technologies AWS Azure certification a plus
  • Detail oriented with proven ability to question the status quo and apply resilience activities to enhance capabilities as appropriate
  • Strong organizational skills with proven ability to successfully manage multiple concurrent priorities and team members as the program is built out
  • Ability to communicate and work effectively in a matrixed environment and across various organizational levels where flexibility collaboration and adaptability are important at all levels
  • Strong analytical skills and attention to detail
  • Able to communicate technical issues to a nontechnical executive audience
  • Foundational knowledge of banking laws and regulations FFIEC BCBS FCA PRA BoE etc
  • Maintain a business cyber threat mindset to understand underlying risks and weaknesses to properly assist in mitigating and enhancement activities
  • Strong desire to continually deliver a quality and meaningful work product in a timely and efficient manner
  • BABS in Computer Engineering Computer Science Information Systems Cyber Security Business Administration or demonstrated relevant industry background andor military experience
  • CCSP Certified Cloud Security Professional CCSP Microsoft Certified Cybersecurity Architect Expert MS SC100 Exam Certified Network Defense Architect CNDA CREST Registered Technical Security Architect CRTSA Global Information Assurance Certifications Defensible Security Architect GDSA from GIAC certifications preferred
  • 10 days ago
Related jobs
Promoted
Sumitomo Mitsui Banking Corporation (SMBC)
New York, New York

The Threat Modeling Architect VP will execute and mature a program that provides a visual representation of assets, controls, threat agents, trust zones, attack paths, and a list of potential attacks a threat agent may perform as well as related reporting documents and issue management. CCSP Certifi...

Promoted
Hispanic Technology Executive Council
New York, New York

Communicate key aspects of climate modeling to various stakeholders, including senior management, auditors and regulators. Professional experience in statistical modeling, Bayesian inference or other machine learning and statistical methodologies. Risk Analytics, Modeling, and Validation. ...

SMBC Group
New York, New York

The Threat Modeling Architect VP will execute and mature a program that provides a visual representation of assets, controls, threat agents, trust zones, attack paths, and a list of potential attacks a threat agent may perform as well as related reporting documents and issue management. CCSP Certifi...

New York Life Insurance Co
New York, New York

Lead AI Architect on all technical aspects of solution delivery, including defining the target state architecture of data science/AI solutions. Responsible for the technical architecture/roadmap of AI/ML solutions. Expertise in developing solution architectures that integrate ML models into real-wor...

Digitas Health
New York, New York
Remote

We're searching for a Vice President Director, Technical Architect. These services include tool recommendations, full-stack software/platform development, data engineering, and cloud managed services. Use architecture diagrams, data schemas and use cases. Experience integrating custom software with ...

New York Life Insurance Company
Queens, New York

We are seeking a highly skilled and experienced Senior Windows Service Architect/Engineer to join our dynamic IT team. Architect, Implement, manage, and monitor EUC solutions with a strong emphasis and focus on End User Experience. Familiarity with ITIL or other IT service management frameworks. ...

New York Life Insurance Co
New York, New York

Create an integrated view of end state data architecture and align on target-state data product capabilities and corresponding architectural designs that ensures the strategic alignment of the 6 VS architecture roadmaps. You will design and support strategic data architecture decisions that shape ou...

New York Life Insurance Company
New York, New York

Create an integrated view of end state data architecture and align on target-state data product capabilities and corresponding architectural designs that ensure the strategic alignment of the 6 VS architecture roadmaps. Solution Architect, Enterprise Architect, or Principal Data Architect for large-...

New York Life Insurance Co
New York, New York

Create an integrated view of end state data architecture and align on target-state data product capabilities and corresponding architectural designs that ensures the strategic alignment of the 6 VS architecture roadmaps. Solution Architect, Enterprise Architect, or Principal Data Architect for large...

Publicis Health LLC
Queens, New York

These services include platform and tool recommendations, full-stack software/platform development, data engineering, and managed services. We're searching for a VP Group Director, Enterprise Architect. Develop the enterprise architecture roadmap for client MarTech initiatives. Lead a cross-agency t...