At a Glance
- Tasks: Lead the creation of an Infrastructure Security Operations function and manage vulnerability and patching strategies.
- Company: Join SMBC Group, a trusted partner in universal banking with a focus on sustainability.
- Benefits: Enjoy hybrid working, competitive leave, and comprehensive health support.
- Other info: Be part of a diverse team that values your unique perspective and supports your growth.
- Why this job: Make a real impact in security operations while growing your career in a dynamic environment.
- Qualifications: Experience in infrastructure security and vulnerability management is essential.
The predicted salary is between 70000 - 90000 £ per year.
Here at SMBC Group, we want to help you find the next step in your career so read on to discover if this opportunity is the one for you. We like to recognise potential in our people, so we welcome your application even when your experience doesn’t perfectly align with the job description. Whilst we’ll always strive to be better, we’re proud of our inclusive culture, and encourage our applicants and colleagues to be their authentic, unique selves.
United by a sense of purpose towards our customers – to be a trusted partner for the long‑term – and our universal banking platform in EMEA, SMBC Group has an international growth agenda and award‑winning products, meaning we provide exciting opportunities to work on a diverse range of projects and initiatives. We deliver a full suite of corporate finance products and solutions to our customers as well as investment banking and advisory services, and a range of innovative solutions in global capital markets. Read on to find out how you could enhance your skills and gain valuable experience, by joining us to support our clients transition to a sustainable future.
We are establishing an Infrastructure Security Operations function within Technology Infrastructure to respond to the increasing regulatory, security, and operational demands across our estate. This role will lead the creation and execution of a dedicated capability focused on infrastructure security operations, including vulnerability management, patching, platform hardening, and associated reporting. Operating centrally across all infrastructure platforms, the function will work in close alignment with IT Risk and IT Security Engineering, executing against defined security policies and standards.
The successful candidate will be responsible for building the function from inception, initially leading a small team of contractors to address priority risks, and transitioning to a lean, permanent team. This is a hands‑on leadership role requiring both technical depth and the ability to establish structure, process, and measurable outcomes in a regulated financial services environment.
The role is accountable for establishing and leading the Infrastructure Security Operations function within Technology Infrastructure, executing security controls in line with CISO‑defined policies and regulatory expectations. This includes owning end‑to‑end vulnerability management across all infrastructure platforms, defining and driving a structured, risk‑based patching strategy, and improving the cadence and consistency of remediation while maintaining platform stability and service availability. The role partners closely with infrastructure architecture, engineering, platform and SRE teams to implement hardening standards, embed security remediation into BAU operations, and balance security requirements with operational resilience and business needs.
Responsibilities also include leading the operation of key infrastructure security technologies (including firewalls, SSE and micro‑segmentation), building effective reporting and assurance frameworks for senior stakeholders, driving automation across patching and reporting processes, ensuring compliance with internal standards and regulatory requirements (including DORA, ECB and PRA), acting as the primary infrastructure interface into security, and contributing to incident response and post‑incident reviews where infrastructure vulnerabilities are a factor.
Proven experience in infrastructure security, vulnerability management, or infrastructure engineering within a complex enterprise environment.
Strong understanding of infrastructure platforms including compute, virtualisation, storage, and networking.
Experience designing and implementing patch management and vulnerability remediation frameworks at scale.
Demonstrated ability to operate in regulated environments, ideally within financial services.
Experience working in alignment with a central security / CISO function, executing against defined policies and controls.
Track record of improving security posture through measurable reduction in vulnerabilities and improved compliance metrics.
Experience building or maturing operational functions, including defining processes, governance, and reporting.
For all the expertise and experience you bring to help us make a difference, it’s only sustainable if we support you to build your career and be your best self so we offer competitive company benefits, centred around promoting positive well‑being and work‑life balance. We also believe in fostering a diverse and inclusive work environment, where all team members perspectives and contributions are valued. Initiatives in place which promote a diverse and inclusive culture and healthy work life balance include hybrid working, Sport & Social Clubs and Diversity and Inclusion networks.
As an employee of SMBC you have access to a host of both useful and exciting benefit offerings. Some of the benefits on offer to you include:
- Hybrid and flexible working
- Competitive paid leave days
- Benefits to support your physical wellbeing, including private medical insurance and life and invalidity insurance
- Various policies to support your mental wellbeing, including a robust behavioural health network with counselling and coaching services
- Access a wide range of learning and development opportunities and career progression opportunities
So, if you like a challenge and want to continuously grow and develop in a role where you will be supported along the way by a dynamic and diverse team, apply today!
We recognise our role as a bank to support social change and welcome all applications, including those from groups often under‑represented in financial services. We value the uniqueness of professional and personal backgrounds and perspectives as they play a vital role in continuing the sustainable growth of our organisation. We’ll ensure reasonable adjustments to our recruitment process are offered due to a disability or long‑term condition whenever requested.
Infrastructure Security Operations Manager - 19659 in London employer: Sumitomo Mitsui Financial Group, Inc.
At SMBC Group, we pride ourselves on being an excellent employer that champions inclusivity and personal growth. Our commitment to a diverse work culture is complemented by competitive benefits such as hybrid working, comprehensive health support, and extensive learning opportunities, all designed to help you thrive in your career while contributing to meaningful projects in the financial services sector.
Contact Details:
Sumitomo Mitsui Financial Group, Inc. Recruitment Team
StudySmarter Expert Advice🤫
We think this is how you could land Infrastructure Security Operations Manager - 19659 in London
✨Get Involved in the Cybersecurity Community
Diving into the cybersecurity community is key for landing that full-time gig. Join forums like Reddit's r/cybersecurity or attend local meetups to connect with industry veterans and other job seekers. Networking is everything in this field—don’t just be a passive lurker!
✨Show Off Your Skills with Capture the Flag Competitions
Participate in Capture the Flag (CTF) competitions; these are not just a fun way to boost your skills but also a chance to showcase your talent to potential employers. Many companies, including Sumitomo Mitsui Financial Group, Inc., love seeing candidates who actively engage in these challenges.
✨Tailor Your Online Presence
Make sure your LinkedIn and any professional profiles reflect your cybersecurity expertise. Share your projects, whether they’re personal or from a previous role, to catch the eye of hiring managers. This is how they’ll find your passion and commitment to the field!
✨Apply Directly Through Sumitomo Mitsui Financial Group, Inc.
Don’t forget to head straight to our website and check out any openings for cybersecurity roles at Sumitomo Mitsui Financial Group, Inc.. Applying directly can sometimes give you an edge, especially if you can mention that you've been following our work or engaging in the community.
We think you need these skills to ace Infrastructure Security Operations Manager - 19659 in London
Some tips for your application 🫡
Show off your technical skills:In cybersecurity, it's crucial to highlight your technical prowess. Make sure your CV showcases specific skills like network security, penetration testing, or threat analysis. If you have relevant certifications (like CEH or CISSP), pop those on the front page to grab attention!
Tailor your portfolio for the role:Even for a full-time role, a portfolio can set you apart. If you've worked on any cybersecurity projects—be it CTF challenges, security assessments, or research papers—include these in your application. This demonstrates not just your skills, but also your hands-on experience!
Use real-world examples:When writing your cover letter, don’t just stick to your qualifications. Share real-world examples of how you’ve tackled security issues or vulnerabilities. This gives the hiring team at Sumitomo Mitsui Financial Group, Inc. insight into your practical problem-solving abilities and makes your application memorable.
Demonstrate your passion for cybersecurity:Cybersecurity is an ever-evolving field, so show us that you’re always learning! Mention any recent courses, webinars, or industry events you’ve attended. This not only exhibits your enthusiasm but also signals to Sumitomo Mitsui Financial Group, Inc. that you’re committed to staying ahead in the game.
How to prepare for a job interview at Sumitomo Mitsui Financial Group, Inc.
✨Sharpen Your Technical Skills
For a role in cybersecurity, it’s essential to be up-to-date with the latest tools and techniques. Brush up on your knowledge of firewalls, intrusion detection systems, and vulnerability assessment tools. Be ready to discuss specific scenarios where you’ve applied these skills, as hands-on experience can really set us apart in interviews.
✨Prepare for Scenario-Based Questions
Expect the interviewers at Sumitomo Mitsui Financial Group, Inc. to throw in some hypothetical situations to see how you’d handle them. Think about common security breaches or incidents and be prepared to explain how you would respond. This not only shows your problem-solving skills but also your understanding of real-world cybersecurity challenges.
✨Highlight Your Certifications
Certifications like CompTIA Security+, CISSP, or CEH can give you a significant edge in a full-time role in cybersecurity. Make sure to mention these during your interview and be prepared to discuss what you learned through those certifications and how they relate to the position at Sumitomo Mitsui Financial Group, Inc..
✨Show Your Passion for Cybersecurity
Since you’re going for a full-time gig, showing genuine enthusiasm for the field can make all the difference. Share any personal projects, blogs, or communities you’re part of that relate to cybersecurity. This not only showcases your passion but also your commitment to staying engaged in this ever-evolving field.