Senior Cyber Security Engineer

SMBC Group

Tralee

On-site

EUR 90,000 - 120,000

Full time

14 days+

Get more replies from employers

Send a job-specific resume in minutes.

Job summary

SMBC Group in Ireland is seeking a Cyber Security Engineer, Threat Detection to join our Security Operations team. This role focuses on building, tuning and maintaining detections across cloud and on‑premises environments to help proactively identify, investigate and respond to threats.

You will bring hands‑on experience with security telemetry, analytics, automation and detection‑as‑code practices, and collaborate with analysts, incident responders, threat intelligence and technology partners

Qualifications

  • Minimum 3 years of cybersecurity/detection engineering experience.
  • Experience with cloud SIEM, UEBA, EDR, SOAR or related technologies.
  • Ability to translate threats into practical detections and monitoring use cases.
  • Strong documentation and collaboration skills.
  • Knowledge of Windows and Linux security in enterprise environments.

Responsibilities

  • Design, develop, tune, and maintain threat detection logic across cloud and on-premises environments.
  • Build and maintain data ingestion pipelines for security telemetry from infrastructure, applications, endpoints, identity platforms and cloud services.
  • Partner with threat intelligence teams to translate threats into actionable detections.
  • Collaborate with analysts, incident responders, SOC engineers, and tech teams to investigate detections and reduce time to detect and respond.
  • Develop and fine-tune detection rules, signatures, correlation logic, and alerting thresholds.
  • Map detections to MITRE ATT&CK or similar frameworks to measure coverage.
  • Use automation and detection-as-code to improve deployment, testing, and lifecycle management.
  • Evaluate security monitoring technologies and data sources to enhance coverage and efficiency.
  • Ensure detection engineering aligns with compliance and internal controls.

Skills

Threat detection engineering
Security telemetry analysis
Cloud/on-prem security
Detection-as-code
MITRE ATT&CK mapping

Job description

SMBC Group is a top-tier global financial group. Headquartered in Tokyo and with a 400-year history, SMBC Group offers a diverse range of financial services, including banking, leasing, securities, credit cards, and consumer finance. The Group has more than 130 offices and 80,000 employees worldwide in nearly 40 countries. Sumitomo Mitsui Financial Group, Inc. (SMFG) is the holding company of SMBC Group, which is one of the three largest banking groups in Japan. SMFG’s shares trade on the Tokyo, Nagoya, and New York (NYSE: SMFG) stock exchanges.

In the Americas, SMBC Group has a presence in the US, Canada, Ireland, Mexico, Brazil, Chile, Colombia, and Peru. Backed by the capital strength of SMBC Group and the value of its relationships in Asia, the Group offers a range of commercial and investment banking services to its corporate, institutional, and municipal clients. It connects a diverse client base to local markets and the organization’s extensive global network. The Group’s operating companies in the Americas include Sumitomo Mitsui Banking Corp. (SMBC), SMBC Nikko Securities America, Inc., SMBC Capital Markets, Inc., SMBC MANUBANK, JRI America, Inc., SMBC Leasing and Finance, Inc., Banco Sumitomo Mitsui Brasileiro S.A., and Sumitomo Mitsui Finance and Leasing Co., Ltd.

This is a hybrid role, requiring the successful candidate to attend our Tralee office.

Role Description

SMBC is seeking a Cyber Security Engineer, Threat Detection to join a high-performing Security Operations team responsible for advancing the Bank’s security monitoring, detection engineering and cyber defense capabilities. This role focuses on building, tuning and maintaining effective detections across cloud and on-premises environments to help proactively identify, investigate and respond to threats before they impact SMBC. The successful candidate will bring hands-on experience with security telemetry, analytics, automation and detection-as-code practices, and will be expected to execute detection engineering activities with limited guidance while collaborating closely with analysts, incident responders, threat intelligence and technology partners.

Role Objectives: Delivery
  • Design, develop, tune, and maintain threat detection logic across cloud and on-premises environments to improve visibility, alert quality, and response effectiveness.
  • Build and maintain efficient data ingestion and log onboarding pipelines for security-relevant telemetry from infrastructure, applications, endpoints, identity platforms, and cloud services.
  • Partner with threat intelligence teams to translate emerging threats, attacker techniques, and indicators of compromise into actionable detection strategies.
  • Collaborate with security analysts, incident responders, SOC engineers, and cross-functional technology teams to investigate detections, validate coverage, and reduce time to detect and respond.
  • Develop and fine-tune detection rules, signatures, correlation logic, behavioral analytics, and alerting thresholds to improve fidelity and reduce false positives.
  • Map detections and coverage to relevant frameworks, including MITRE ATT&CK, to support measurable improvements in monitoring and response capabilities.
  • Use automation, scripting, and detection-as-code practices to improve consistency, scalability, testing, deployment, and lifecycle management of detection content.
  • Evaluate security monitoring technologies, data sources, and analytics capabilities to identify opportunities to enhance detection coverage and operational efficiency.
  • Ensure detection engineering practices align with applicable compliance, regulatory, and internal control requirements.
  • Create and maintain clear documentation for detection logic, data sources, tuning decisions, operational procedures, and response playbooks.
  • Continuously assess the effectiveness of cybersecurity monitoring controls and recommend improvements to strengthen SMBC’s cyber resilience.
Qualifications And Skills
  • Minimum of 3 years of relevant cybersecurity, detection engineering, SOC engineering, security analytics, or security operations experience.
  • Hands-on experience analyzing logs and security telemetry from multiple sources, including endpoint, network, identity, cloud, infrastructure, and application platforms.
  • Experience with cloud SIEM, UEBA, EDR, SOAR, data lake, or related detection and monitoring technologies.
  • Strong knowledge of query languages and data analysis techniques used to investigate security events and develop detection logic.
  • Experience developing detection-as-code pipelines, automation, scripts, or repeatable processes to improve security operations efficiency.
  • Ability to translate threat intelligence, adversary behaviors, and attack techniques into practical detections and monitoring use cases.
  • Experience mapping detections to MITRE ATT&CK or similar security frameworks.
  • Working knowledge of Windows and Linux operating systems, common enterprise infrastructure, and cloud environments.
  • Strong troubleshooting, analytical, and problem-solving skills, with the ability to identify root cause and recommend practical improvements.
  • Ability to balance operational responsibilities with project delivery in a fast-paced environment.
  • Strong documentation, communication, collaboration, and stakeholder management skills.
  • Demonstrated ownership, attention to detail, and ability to work effectively in a global team environment.
  • Additional cybersecurity experience in incident response, threat intelligence, vulnerability management, security engineering, or cloud security is a plus.
Additional Requirements

SMBC’s employees participate in a hybrid workforce model that provides employees with an opportunity to work from home, as well as, from an SMBC office. SMBC requires that employees live within a reasonable commuting distance of their office location. Prospective candidates will learn more about their specific hybrid work schedule during their interview process.

Get your free, confidential resume review.
or drag and drop your file here.
Similar jobs

Similar jobs worth comparing

Cyber Security Engineer
Cyber Security Engineer

SMBC Group • Ireland

Hybrid
EUR 75,000 - 110,000
Hybrid work model
Disability accommodations
DevOps Engineer
DevOps Engineer

SMBC Group • Ireland

Hybrid
EUR 90,000 - 130,000
Junior Payment & Compliance Application Support Engineer
Junior Payment & Compliance Application Support Engineer

SMBC Group • Tralee

Hybrid
EUR 42,000 - 56,000
Hybrid work model
Disability accommodations
Junior Payment & Compliance Application Support Engineer
Junior Payment & Compliance Application Support Engineer

SMBC Group • Ireland

Hybrid
EUR 35,000 - 55,000
Analyst IT - Cyber Security
Analyst IT - Cyber Security

SMBC Aviation Capital • Dublin

On-site
EUR 60,000 - 90,000
Analyst - Cyber Security
Analyst - Cyber Security

SMBC Aviation Capital • Dublin

Hybrid
EUR 60,000 - 90,000
Comprehensive benefits
Inclusive workplace
QA Testing Specialist Data Engineer
QA Testing Specialist Data Engineer

SMBC Group • Ireland

Hybrid
EUR 80,000 - 110,000
Threat Detection Engineer - Hybrid (Cloud & On-Prem)
Threat Detection Engineer - Hybrid (Cloud & On-Prem)

SMBC Group • Tralee

Hybrid
EUR 90,000 - 120,000
Threat Detection Engineer - Hybrid (Cloud & On-Prem)
Threat Detection Engineer - Hybrid (Cloud & On-Prem)

SMBC Group • Ireland

Hybrid
EUR 75,000 - 110,000
Hybrid work model
Disability accommodations
Temp - TTR Technical Analyst - VP at Sumitomo Group
Temp - TTR Technical Analyst - VP at Sumitomo Group

Sumitomo Group • Dublin

On-site
EUR 110,000 - 170,000
Hybrid working
Private medical insurance
Life and invalidity insurance
+3