About this role
Job Profile
The Information Security Services Team is seeking an Information Security Product & Service Delivery Specialist – Global Security Operations to drive the delivery and execution of cybersecurity services across the Global Security Operations Center (GSOC) Center of Excellence. This role is responsible for ensuring consistent, high-quality delivery of core GSOC services—including log ingestion, use case development, threat detection, and incident response operations—across all regions. The specialist will lead cross-functional coordination, manage operational performance metrics, and ensure service delivery aligns with enterprise risk objectives, governance standards, and evolving global requirements.
What You'll Do
-
Drive end-to-end execution of GSOC service delivery across global regions, ensuring consistency in operations such as log ingestion, use case lifecycle management, threat detection, and incident response.
-
Coordinate the onboarding and integration of new log sources, working with regional teams and technology partners to ensure timely ingestion and coverage alignment with risk priorities.
-
Lead the development, tuning, and governance of GSOC use cases to improve detection accuracy, reduce false positives, and address emerging threat vectors.
-
Manage cross-functional programs from initiation through delivery, ensuring milestones are met and outcomes are communicated effectively to stakeholders across regions.
-
Develop and manage key performance indicators (KPIs) and service-level metrics that reflect operational health, risk appetite, and residual risk—enabling transparent reporting to senior leadership and governance bodies.
-
Partners with cybersecurity, risk, and control teams to coordinate remediation efforts, track progress, and resolve operational gaps in service delivery.
-
Facilitate process improvement initiatives and stakeholder engagement to identify inefficiencies and drive enhancements across GSOC workflows and service operations.
-
Conduct end-to-end service delivery evaluations, prioritizing improvement opportunities based on impact, feasibility, and strategic alignment.
-
Integrate industry frameworks, best practices, and regulatory requirements into GSOC operational workflows to ensure compliance and adaptability across jurisdictions.
-
Monitor developments in cybersecurity programs, regulatory landscapes, and internal organizational changes that influence GSOC service execution and reporting.
-
What You'll Bring
-
Bachelor’s degree in information technology, Cybersecurity, Engineering, Business Administration, or a related field; equivalent experience also considered.
-
8-10 years of experience in cybersecurity operations, security service delivery, program management, or risk management, ideally within financial services.
-
Hands-on familiarity with GSOC functions such as log ingestion, SIEM operations, use case development, threat detection, and incident response workflows.
-
Proven experience in strategic planning, program execution, and executive-level reporting.
-
Knowledge of models/frameworks such as Cyber Kill Chain and MITRE ATT&CK
-
Demonstrated creative problem-solving abilities
-
Experience creating trending, metrics, and management reports
-
Skilled in developing briefing materials, managing logistics, and facilitating cross-functional collaboration across global teams.
-
Demonstrated ability to drive operational efficiency through technology and process innovation.
-
Excellent written and verbal communication skills with the ability to tailor messaging for technical and non-technical audiences.
-
Preferred
-
Experience working in Japanese corporate environments or proficiency in Japanese.
-
Experience managing global, cross-cultural teams and coordinating service delivery across multiple regions.
-
Broad exposure across cybersecurity domains (governance, risk, network security, threat/vulnerability management, incident response).
-
Familiarity with automation, AI, or light scripting for reporting and operational efficiency.
-
Relevant certifications (e.g., CISSP, CISM, Security+, ISSMP, SANS, GSEC, GCFA, GNFA, GIAC and/or GCIH)
-
Knowledge in one or more security domains including Security Governance and Oversight, Security Risk Management, Network Security, Threat and Vulnerability Management, and Incident Response and Forensics
-
Experience with cloud computing security, network, operating system, database, application, and mobile device security.
-
Experience with information security risk management, including conducting information security audits, reviews, and risk assessments.
-
Mitsubishi UFJ Financial Group (MUFG) is an equal opportunity employer. We view our employees as our key assets as they are fundamental to our long-term growth and success. MUFG is committed to hiring based on merit and organsational fit, regardless of race, religion or gender.