Job Overview
Join Global Service Center (GSC) HSBC and discover how valued you’ll be. HSBC is one of the largest banking and financial services organisations in the world, with operations in 64 countries and territories. We aim to be where the growth is, enabling businesses to thrive and economies to prosper, and, ultimately, helping people to fulfil their hopes and realise their ambitions.
Role Purpose
Operating within the Cybersecurity Global Defence function and under the management of the Global Head of Cybersecurity Operations, the Global Cybersecurity Operations (GCO) team provides a coordinated suite of “Network Defence” related services and is responsible for the detection and response to information and cybersecurity threats across the global HSBC assets and estate. The GCO mission is placed under the purview of the Cybersecurity Chief Technology Officer / Head of Cybersecurity Global Defence.
Key Responsibilities
- Lead the analysis of and support the response to cyber security events within HSBC using the latest threat monitoring and detection technologies to detect, analyse and respond.
- Work as a senior member of the Monitoring and Threat Detection team within an “Analysis POD” tasked with triage of threat detection events from across the entire global HSBC technology estate.
- Monitor the HSBC global technology and information estate 24x7, detect and analyse severity and scope of issues, and collaborate with the Incident Management and Response Team to contain, mitigate and remediate intrusions.
- Continuously improve detection capabilities through attack analysis and tune alerting rules for maximum effectiveness.
Required Skills & Qualifications
Excellent investigative skills, insatiable curiosity, and an innate drive to win.Strong problem‑solving, decision‑making and trouble‑shooting skills with the ability to weigh costs and benefits of actions.Experience defining and refining operational procedures, workflows and processes to support consistent, quality execution of monitoring and detection.Good understanding of HSBC cyber security principles, global financial services business models, regional compliance regulations and laws.Good understanding of common industry cyber security frameworks, standards and methodologies (MITRE ATT&CK, OWASP, ISO2700x series, PCI DSS, GLBA, EU data security and privacy acts, FFIEC guidelines, CIS and NIST standards).Technical expertise in analysing threat event data, evaluating malicious activity, and documenting tactics, techniques and procedures used by attackers.Expert level knowledge of SIEM platforms, EDR tooling, IDS / IPS / HIPS, anti‑malware, firewalls, proxies, MSS, and operating systems (Windows, Linux, Citrix, ESX, OSX).Functional knowledge of scripting, programming and SOAR platforms, and cloud computing platforms (AWS, Azure, Google).5+ years of experience in a cyber security senior analyst role or similar, preferably in a finance or regulated sector.Industry recognized cyber security certifications (CEH, OSCP, EnCE, SANS GSEC, GCIH, GCIA, CISSP).Formal education and advanced degree in Information Security, Cyber‑security, Computer Science or similar, or equivalent experience.Benefits
Competitive paid leave package that supports wedding, family, and personal needs.Flexible working arrangements and continuous professional development opportunities.Inclusive and diverse work environment with equal opportunity for all employees.Location
Azcapotzalco, Mexico City, Mexico
Equal Opportunity Statement
HSBC is an equal opportunity employer committed to building a culture where all employees are valued, respected, and opinions count. We encourage applications from all suitably qualified persons irrespective of gender, genetic information, sexual orientation, ethnicity, religion, social status, medical care leave requirements, political affiliation, disability status, color, national origin, veteran status, and more. We consider all applications based on merit and suitability to the role.
Privacy Statement
Personal data held by the Bank relating to employment applications will be used in accordance with our Privacy Statement, which is available on our website.
#J-18808-Ljbffr