Cyber Security Engineer, VP
Sumitomo Mitsui Banking Corporation2 hours ago
Charlotte, NC, USAStaff+
Responsibilities
- Design, build, and maintain scalable security log ingestion pipelines for SIEM platforms, Azure Data Explorer, and Log Analytics.
- Parse, transform, normalize, enrich, and validate structured and unstructured log data using JSON parsing, regular expressions, and schema mapping.
- Coordinate with application, infrastructure, cloud, security, vendor, and business teams to onboard telemetry sources and verify end-to-end collection.
- Monitor data completeness, integrity, timeliness, consistency, schema quality, and pipeline performance.
- Troubleshoot ingestion, parsing, transformation, and pipeline issues across cloud and on-premises environments.
- Conduct telemetry gap assessments and recommend sources to improve security monitoring and detection coverage.
- Document onboarding procedures, data mappings, source requirements, pipeline configurations, and operational processes.
- Improve automation, ingestion frameworks, and deployment processes for scalability, reliability, efficiency, and cost effectiveness.
Requirements
- 5+ years of experience in cybersecurity, data engineering, security operations, log management, or a related technology discipline.
- Experience onboarding, managing, and validating security log sources within SIEM, security analytics, or cloud data platforms.
- Experience coordinating data onboarding across technical teams, vendors, and business partners.
- Strong knowledge of data parsing, normalization, transformation, and validation techniques.
- Experience with JSON, XML, CSV, and log-based telemetry.
- Ability to resolve data quality, schema, and pipeline performance issues.
- Familiarity with cloud platforms and logging, monitoring, and analytics services.
- Understanding of network, endpoint, identity, application, cloud, and infrastructure security telemetry sources.
- Knowledge of logging, retention, auditability, and data integrity requirements in regulated environments.
- Experience with scripting or automation using Python, PowerShell, or similar technologies.
- Familiarity with query languages used to investigate, validate, and analyze security data.
- Strong communication, collaboration, documentation, attention to detail, judgment, and accountability skills.
- Ability to balance operational support, project delivery, and continuous improvement initiatives.
- Preferred experience includes threat detection, incident response, vulnerability management, cloud security, infrastructure-as-code, automated deployment, cybersecurity data engineering, telemetry standards, security analytics platforms, global organizations, or regulated financial services.
Benefits
- Hybrid work model allowing employees to work from home and from an SMBC office.
- Employees must live within a reasonable commuting distance of their office location.
- Specific hybrid schedules are discussed during the interview process.
- Reasonable accommodations are available during candidacy for applicants with disabilities.