Do you want your voice heard and your actions to count?
Discover your opportunity with Mitsubishi UFJ Financial Group (MUFG), one of the world’s leading financial groups. Across the globe, we’re 150,000 colleagues, striving to make a difference for every client, organization, and community we serve. We stand for our values, building long-term relationships, serving society, and fostering shared and sustainable growth for a better world.
With a vision to be the world’s most trusted financial group, it’s part of our culture to put people first, listen to new and diverse ideas and collaborate toward greater innovation, speed and agility. This means investing in talent, technologies, and tools that empower you to own your career.
Join MUFG, where being inspired is expected and making a meaningful impact is rewarded.
The selected colleague will work at an MUFG office or client sites four days per week and work remotely one day. A member of our recruitment team will provide more details.In this role you will focus on researching potential cybersecurity threats to various systems, technologies, operations, and programs throughout multiple environments. You will perform analysis based on this research to determine the risk to the organization and take appropriate actions based upon that analysis. Responsibilities include rapidly responding to potential incidents and events to minimize risk exposure and ensure the confidentiality, integrity, and availability of assets and business processes. Additionally, you will seek opportunities to strengthen and automate detection and remediation capabilities, reduce response times for incidents, and produce analyses of cybersecurity events that include perspectives on the behavior of adversaries.Â
 Â
Major ResponsibilitiesÂ
- Conduct analysis of artifacts to determine methods of intrusion and best course of resolution while driving security improvementÂ
- Strong Incident Response knowledge and experience
- Theoretical and practical knowledge with Mac OS, Linux, Windows operating systems and clouds
- Experience with security data collection, analysis and correlationÂ
- Well-developed analytic, qualitative, and quantitative reasoning skills Â
- Demonstrated creative problem-solving abilitiesÂ
- Security event monitoring, investigation, and overall incident response processÂ
- Investigate potential cybersecurity events across multiple environments using various tools and techniquesÂ
- Development of information security policies, standards, and proceduresÂ
- Understanding of offensive security to include common attack methodsÂ
- Understanding of how to pivot across multiple datasets to correlate artifacts for a single security event Â
- A diverse skill base in both product security and information security including organizational structure and administration practices, system development and maintenance procedures, system software and hardware security controls, access controls, computer operations, physical and environmental controls, and backup and recovery procedures.Â
- Knowledge and experience in security and regulatory frameworks (ISO 27001, NIST 800 series, FFIEC, SOC2, FedRAMP, STAR, etc.)Â
- Support inquiries from compliance teams such as IT risk management and internal and external auditors to ensure documentation is complete and processes are in compliance with information security policiesÂ
- Support the development of security operations detections, playbooks, and automations to ensure threat detection, monitoring, response, and forensics activities align with best practices, minimize gaps in detection and response, and provide comprehensive mitigation of threatsÂ
- Reviews internal logs and alerts to identify potential cybersecurity events. Triage cases based on output from automated alerts, and determine when to escalate to other teamsÂ
- Analyzes security data from all systems in real time to spot and thwart potential threats, attacks, and other violationsÂ
- Analyzes compromised systems and remediates to a clean stateÂ
- Performs breach indicator assessments to investigate network traffic for malicious activityÂ
- Assists with internal or third-party employee investigationsÂ
- Assists in the production of various reports which identify and analyze relevant upcoming and ongoing threats to the enterpriseÂ
- Research evolving threats, techniques, tools, and vulnerabilities in support of information security effortsÂ
- Stays current with information security program developments, industry frameworks, changes in the company, industry trends, and current security practicesÂ
 Â
QualificationsÂ
- Bachelor’s degree in Information Technology, Cyber Security, Computer Science, or related discipline Â
- 1 + years of experience working in the Cybersecurity Operations or Information SecurityÂ
- Relevant technical and industry certifications, such as CISSP, ISSMP, SANS, GIAC, GCIA, CISM, CEH, GCFA, GCFE, GCIH, or GSEC are preferredÂ
- Experience in one or more security domains including Incident Response and Forensics, Â Security Governance and Oversight, Security Risk Management, Network Security, or Threat and Vulnerability Management preferredÂ
Desired SkillsÂ
- Understanding of enterprise detection and response technologies and processes (advanced threat detection tools, intrusion detection/prevention systems, network packet analysis, endpoint detection and response, firewalls, Anti malware/anti-virus, Security Information and Event Management tools, etc.)Â
- Experience with information security risk management, including information security audits, reviews, and risk assessmentsÂ
- Knowledge of or experience with Cloud Security, DevOps and AI assisted Incident Response
- Strong tasks and time management skills
- Able to communicate well both verbal and written
- Japanese languages knowledge or fluency
- Experienced with CrowdStrike, Tanium, Proofpoint, WAF, O365 security, AWS Security, and open-source incident response and forensic toolsÂ
- Ability to perform risk analysis utilizing logs and other information compiled from various sourcesÂ
- Understanding of network protocols, operating systems (Windows, Unix, Linux, databases), and mobile device securityÂ
- Knowledge in one or more security domains including Security Governance and Oversight, Security Risk Management, Network Security, Threat and Vulnerability Management, or Incident Response and ForensicsÂ
- Knowledge of cloud security, networks, databases, and applicationsÂ
- Knowledge of the various types of cyber-attacks and their implementationsÂ
- A fundamental understanding of enterprise cybersecurity frameworks such as MITRE ATT&CK and Cyber Kill ChainÂ
- Ability to document and explain technical details in a concise, understandable mannerÂ
- Experience in operational processes such as security monitoring, data correlation, troubleshooting, security operations, etc.Â
Education
•Bachelor's degree in Computer Science or a closely-related discipline, or an equivalent combination of formal education and experience
Visa sponsorship/support is based on business needs. We do not anticipate providing visa sponsorship/support for this position.
The typical base pay range for this role is as follows:
- New York / New Jersey: $85k-$123k
- Non–New York / New Jersey: $85k-$107k
depending on job-related knowledge, skills, experience and location. This role may also be eligible for certain discretionary performance-based bonus and/or incentive compensation. Additionally, our Total Rewards program provides colleagues with a competitive benefits package (in accordance with the eligibility requirements and respective terms of each) that includes comprehensive health and wellness benefits, retirement plans, educational assistance and training programs, income replacement for qualified employees with disabilities, paid maternity and parental bonding leave, and paid vacation, sick days, and holidays. For more information on our Total Rewards package, please click the link below.
Our hybrid work schedule is four days on-site and work remotely one day per week.
MUFG Benefits Summary
Learn more about this Employer on their Career Site
