Sr. Information Security Analyst
NomuraAbout the role
Corporate Title: Associate
Department: Technology
Location: New York
The pay range for this position at commencement of employment is expected to be between $120,000 and $145,000 /year*
Company overview
Nomura is a global financial services group with an integrated network spanning approximately 30 countries and regions. By connecting markets East & West, Nomura services the needs of individuals, institutions, corporates and governments through its three business divisions: Wealth Management, Investment Management, and Wholesale (Global Markets and Investment Banking). Founded in 1925, the firm is built on a tradition of disciplined entrepreneurship, serving clients with creative solutions and considered thought leadership. For further information about Nomura, visit www.nomura.com.
Aon’s Benefit Index®, Nomura’s benefits rank #1 amongst our competitors
Department Overview
Nomura has a robust global Information Security department, members of which are located in all of its major regions, namely Japan, Americas, India, Asia Excluding Japan (AeJ) and EMEA. This role will report directly to the Application Security Lead in New York.
Position Overview
We are looking for a talented and experienced professional to join our team as an Application Security Engineer with specific focus on DevSecOps automation and innovation. In this role, you will part of a team leading the design, development, and implementation of robust and scalable application security solutions to protect Nomura’s critical assets. This role is technical and hands-on and requires a deep understanding of DevOps practices, high proficiency in Java and Python, and an interest in application security practices and generally the secure software development lifecycle (SDLC). It requires the development and implementation of processes, policies, standards, and solutions in collaboration with the Global Heads of Information Security and key stakeholders (e.g., Technology, business, legal, HR, compliance). You will play a key role in shaping our information security strategy and ensuring the resilience and effectiveness of application security solutions.
Key Responsibilities and Duties:
- Drive innovation in DevSecOps security automation across a global enterprise environment, implementing cutting-edge solutions and best practices
- Design, develop, and maintain robust software services that seamlessly integrate with SDLC toolchain, focusing on:
- Application security enhancement
- Security automation workflows
- Continuous integration and deployment pipelines
- Lead strategic partnerships with Application Security development teams to:
- Drive adoption of security best practices
- Implement robust security practices throughout the application lifecycle
- Establish security-first development methodologies
- Develop and implement automated security reporting systems that provide:
- Shift-left security status updates
- Comprehensive analytics to guide developers
- Strategic insights for application owners
- Executive-level reporting for business stakeholders
- Foster collaborative relationships with key stakeholders to ensure:
- Alignment with industry security standards
- Compliance with regulatory requirements
- Implementation of robust security frameworks
- Adherence to governance protocols
- Maintain expertise in emerging security landscapes, including Artificial Intelligence and Machine Learning, Cloud and Blockchain technologies
Key Skills and Experience
- Master's or Bachelor's degree in Computer Science, Information Technology, or related fields
- 3-5+ years of proven software engineering experience, with expertise in:
- Spring Boot Java application development
- Spring Data
Apply for this role
Generate a tailored application kit with a matched cover letter, interview prep, and CV highlights — in under 60 seconds.
Apply Now →Generate Application KitFree account required — sign up in 30s