Senior Security Engineer

Socket.dev

New York (NY)

Hybrid

USD 140,000 - 190,000

Full time

5 days ago
Be an early applicant
Application generator

Don’t send a generic resume — generate a resume and cover letter tailored to this exact role.

Get past ATS filters

Benefits offered by this job

Medical, Dental, Vision
401(k) with company match
Paid Time Off
Professional development

Job summary

Daiwa Capital Markets America Inc. is seeking a Senior Security Engineer to lead and advance our enterprise security program in a fast-paced financial services environment.

You will design, implement, and operate controls across cloud, network, endpoint, and data protection domains, collaborating with Infrastructure, Cloud, and Business teams to strengthen security posture and meet regulatory expectations.

Qualifications

  • Bachelor’s degree in Cybersecurity, Information Technology, Computer Science, or related field.
  • 7+ years of cybersecurity experience in security engineering, architecture, or advanced security operations.
  • Experience leading security projects from planning through implementation and support.
  • Experience designing and supporting security controls across cloud, network, endpoint, identity, vulnerability management, and monitoring domains.
  • Strong knowledge of security tools including SIEM, EDR, IDS/IPS, vulnerability scanners, endpoint protection, email security, and network security.

Responsibilities

  • Design, implement, maintain, and improve enterprise security controls across cloud, network, endpoint, identity, data protection, and monitoring domains.
  • Lead security engineering initiatives, including architecture reviews and implementation of security technologies.
  • Manage and enhance identity security controls (Microsoft Entra ID, CA, MFA, PAM, RBAC, IAM governance).
  • Manage and optimize security tools and platforms (EDR, SIEM, DLP, vulnerability management, email, network, cloud security).
  • Lead vulnerability management activities: assessments, remediation, risk prioritization, reporting, coordination with tech teams.
  • Support incident response, threat hunting, root cause analysis, forensics, automation workflows, incident response playbooks.

Skills

Security engineering
Cloud security
Identity security
Threat hunting
Security governance

Education

Bachelor’s degree in Cybersecurity/IT/CS

Tools

SIEM
EDR
IDS/IPS
Vulnerability scanners
Endpoint protection
Email security
Network security

Job description

About Daiwa Capital Markets America Inc.:

Incorporated in 1964, Daiwa Capital Markets America Inc. (“DCMA”) is a New York-based registered securities broker-dealer, a futures commission merchant, a primary dealer of U.S. Treasury securities, and a member of the New York Stock Exchange and other major U.S. exchanges. Our main focus is on the sales and trading of Japanese, Asian, and U.S. equities, fixed income instruments, financial futures, and investment banking for institutional customers. DCMA’s ultimate parent company is Daiwa Securities Group Inc., one of the largest brokerage and financial services groups in Japan.

Position Summary:

DCMA is seeking an experienced Senior Security Engineer to join its Information Security team within a fast-paced financial services environment. Reporting to the Cybersecurity Manager, this role will help design, implement, administer, and continuously improve enterprise security controls that protect the organization’s systems, applications, networks, data, and information assets.

The Senior Security Engineer will serve as a technical leader across identity and access management, cloud security, endpoint security, vulnerability management, network security, data protection, security monitoring, and incident response. This role partners with Infrastructure, Cloud, Networking, Application Development, business stakeholders, auditors, and security service providers to strengthen DCMA’s security posture, support regulatory and audit requirements, and advance strategic security initiatives.

The ideal candidate brings strong technical judgment, communication skills, ownership, and a customer-service mindset, with experience applying security frameworks and controls aligned with ISO 27001, NIST CSF, NIST RMF, CIS Controls, SOC requirements, and financial services regulatory expectations.

Core Responsibilities:
  • Design, implement, maintain, and continuously improve enterprise security controls across cloud, network, endpoint, identity, data protection, and monitoring domains.
  • Lead security engineering initiatives, including architecture reviews, secure design recommendations, technical implementation, and operational support of security technologies.
  • Manage and enhance identity security controls, including Microsoft Entra ID, Conditional Access, multi-factor authentication, privileged access management, role-based access controls, and identity governance.
  • Manage and optimize security tools and platforms, including endpoint protection, SIEM, DLP, vulnerability management, email security, network security, and cloud security solutions.
  • Lead vulnerability management activities, including assessments, remediation planning, risk prioritization, reporting, and coordination with technology teams.
  • Support incident response, threat hunting, root cause analysis, forensics, detection engineering, automation workflows, and incident response playbooks.
  • Develop and maintain security procedures and standards, technical baselines, procedures, implementation guidance, and other governance materials.
  • Perform technical risk assessments and recommend risk mitigation strategies for systems, applications, vendors, infrastructure, cloud environments, and business processes.
  • Support regulatory, audit, and compliance initiatives, including ISO 27001, NIST Cybersecurity Framework, SOC examinations, and other applicable security standards.
  • Review and approve security-related changes to enterprise systems, including firewall rules, cloud configurations, privileged access requests, and infrastructure modifications.
  • Partner with IT and business teams to integrate security requirements into enterprise initiatives and operational processes while balancing security, operational, and business objectives.
  • Evaluate emerging cybersecurity threats, technologies, and industry best practices; recommend improvements to strengthen security maturity and operational effectiveness.
Work Arrangements & Availability:
  • DCMA offers a hybrid work program, with remote work opportunities based on role and department needs. Employees are expected to work in the office at least three days per week, with schedules determined by management based on business and operational requirements.
  • Candidates must be able to provide onsite support during business-critical incidents, technology outages, audits, and operational events, including occasional early morning coverage beginning as early as 7:00 AM or after-hours support when required.
Required Qualifications:
  • Bachelor’s degree in Cybersecurity, Information Technology, Computer Science, or related field; equivalent experience may be considered.
  • 7+ years of cybersecurity experience, including security engineering, architecture, or advanced security operations responsibilities.
  • Experience leading security projects from planning and design through implementation and operational support.
  • Experience designing, implementing, and supporting enterprise security technologies and controls across cloud, network, endpoint, identity, vulnerability management, and monitoring domains.
  • Strong knowledge of security tools and platforms, including SIEM, EDR/EPS, IDS/IPS, vulnerability scanners, endpoint protection, email security, and network security solutions.
  • Experience securing cloud environments, preferably Microsoft Azure and Microsoft 365/O365, and working with cloud security architectures.
  • Strong understanding of networking concepts and protocols, including TCP/IP, DNS, DHCP, routing, switching, firewalls, VPN, WAFs, segmentation, and IDS/IPS/HIDS technologies.
  • Strong experience with Windows, Active Directory, Azure AD, Group Policy, event logs, and security hardening.
  • Understanding common attack patterns, threat progression, MITRE ATT&CK®, NIST, CIS, and threat intelligence frameworks.
  • Experience supporting security programs within regulated industries such as financial services, banking, insurance, healthcare, or legal services.
  • Strong analytical, problem-solving, critical-thinking, troubleshooting, organizational, and prioritization skills.
  • Excellent written, verbal, and interpersonal communication skills, with the ability to communicate effectively with technical and non-technical stakeholders, including executive leadership.
  • Demonstrated ability to work independently and collaboratively, take ownership of issues, build relationships with technology teams, and influence security outcomes across the organization.
Preferred Qualifications:
  • Experience with Microsoft Azure security services, Microsoft Entra ID, Microsoft Purview, DLP, and information protection technologies.
  • Experience with network firewalls, network segmentation, vulnerability management platforms such as Tenable, and endpoint security platforms such as SentinelOne or Microsoft Defender.
  • Experience with cloud security platforms or CNAPP technologies.
  • Experience supporting ISO 27001, NIST, or financial services compliance programs.
  • Industry certifications such as CISSP, CCSP, CISM, or equivalent certifications.
Company Culture and Benefits:

Daiwa Capital Markets America Inc. has a vibrant company culture made up of a diverse team of professionals. We seek to foster an atmosphere in which our employees understand, respect, and inspire each other. We will continue to build a culture that encourages everyone at DCMA to take pride in their work. How we work — individually, with each other, and with our communities — is just as important as what we do and shapes who we are as an organization.

Our people are our most important asset, and as a result, we offer a competitive and robust total rewards package which includes, but is not limited to:

  • Competitive Benefits Package (Medical, Dental and Vision)
  • Ancillary Insurance (Basic Life Insurance, AD&D Insurance, and Short & Long-term Disability)
  • Flexible Spending and Health Savings Accounts (FSA and HSA)
  • Employee Assistance Program (EAP)
  • Comprehensive health and wellness benefits
  • Parental Leave
  • Family building benefits
  • 401(k) with company match
  • Paid Time Off and holidays
  • Professional development, educational assistance and training programs
  • Community Engagement Programs

DCMA has a hybrid work program in place, with opportunities for remote work depending on the nature of the role and needs of your department. This was implementedto provide operational efficiency while simultaneously giving employees flexibility.At a minimum, employees are expected to work in the office three days per week.

DCMA provides equal employment opportunities for all applicants and employees. We are committed to providing a work environment that is free of discrimination and harassment. DCMA prohibits discrimination based on race, color, religion, gender identity, national origin, sexual orientation, age, disability, military or veteran status, or other attributes protected under applicable federal, state, or local laws.

Get your free, confidential resume review.
or drag and drop your file here.
Similar jobs

Similar jobs worth comparing

Senior Network Engineer
Senior Network Engineer

Daiwa-Securities-Group • New York (NY)

Hybrid
USD 155,000 - 170,000
Medical, Dental and Vision
401(k) with company match
Paid Time Off and holidays
+1
Senior Network Engineer
Senior Network Engineer

Daiwa Securities Group • New York

Hybrid
USD 155,000 - 170,000
Senior Network Engineer
Senior Network Engineer

Daiwa Capital Market • New York (NY)

Hybrid
USD 155,000 - 170,000
Medical, Dental and Vision
401(k) with company match
Paid Time Off and holidays
+1
Senior Network Engineer
Senior Network Engineer

Daiwa Capital Markets America Inc. • New York (NY)

Hybrid
USD 140,000 - 210,000
Competitive benefits package (Medical,
Dental and Vision
401(k) with company match
+4
Senior Equity Research Analyst, Tech Sector
Senior Equity Research Analyst, Tech Sector

Daiwa Capital Markets America Inc. • New York (NY)

On-site
USD 150,000 - 230,000
Competitive Benefits Package (Medical,
Dental and Vision)
401(k) with company match
+3
Talent Acquisition & HR Programs Specialist
Talent Acquisition & HR Programs Specialist

Daiwa-Securities-Group • New York (NY)

Hybrid
USD 130,000 - 160,000
Competitive benefits package
Hybrid work flexibility
401(k) with company match
+1
Talent Acquisition & HR Programs Specialist
Talent Acquisition & HR Programs Specialist

Daiwa Securities Group • New York

Hybrid
USD 130,000 - 160,000
Hybrid work model
Competitive benefits
Professional development
Talent Acquisition & HR Programs Specialist
Talent Acquisition & HR Programs Specialist

Daiwa Capital Markets America Inc. • New York (NY)

Hybrid
USD 85,000 - 120,000
Benefits package
401(k) match
Paid time off
+1
Senior Equity Research Analyst, Tech Sector
Senior Equity Research Analyst, Tech Sector

Daiwa Capital Market • New York (NY)

On-site
USD 175,000 - 200,000
Medical/Dental/Vision
401(k) match
PTO & holidays
+2
Talent Acquisition & HR Programs Specialist
Talent Acquisition & HR Programs Specialist

UNKNOWN • New York (NY)

Hybrid
USD 90,000 - 130,000
Competitive benefits package
401(k) with company match
Paid time off & holidays
+1