09 feb
Hsbc
Xico
Some careers have more impact than others.
If you're looking for a career where you can make a real impression, join HSBC and discover how valued you'll be.
HSBC is one of the largest banking and financial services organisations in the world, with operations in 64 countries and territories.
We aim to be where the growth is, enabling businesses to thrive and economies to prosper, and, ultimately, helping people to fulfil their hopes and realise their ambitions.
- "At HSBC we offer our colleagues a greater number of days so that they can fully enjoy their wedding, take care of the new member of the family, or grieve the loss of a family member._
- Our paid leave package is at the forefront in Mexico,
now you have one more reason to be HSBC and proudly live a culture of well-being, balance and car care"_
We are currently seeking an experienced professional to join our team in the role of **Analyst Global Cybersecurity Operations.
**
Global Cybersecurity Operations (GCO) provides a coordinated suite of "Network Defence" services responsible for detecting and responding to information and cybersecurity threats to HSBC assets across the globe and is under the management of the Head of Global Cybersecurity Operations.
This includes dedicated functions for the monitoring and detection of threats within the global estate as well as Cybersecurity Incident Management and Response activities.
These two principal functions are supported by additional internal GCO capabilities in; Cyber Intelligence and Threat Analysis, Security Sciences and Client Engagement and Support Services.
Critical to the success of GCO is it close partnership with sister Cybersecurity teams, IT Infrastructure Delivery and Global Business and Function clients.
The overall GCO mission is placed under the purview of the Group Chief Information Security Officer (CISO).
The Cybersecurity Monitoring and Threat Detection Team are charged with efficiently and effectively monitoring the HSBC global technology and information estate 24x7.
The team's mission is to detect the presence of any adversary within the estate, quickly analyse the severity and scope of the issue and work with the Cybersecurity Incident Management and Response Team to contain, mitigate and remediate the incursion.
In addition, the team is responsible for constantly improving its detection capability through attack analysis and ensuring that the appropriate security event information is being fed into the team and that the alerting rules are tuned for maximum effectiveness.
This mission is critical to the protection of HSBC customers, the HSBC brand, shareholder value, as well as HSBC information and financial assets.
Analysts are responsible for monitoring multiple HSBC networks simultaneously using the latest threat detection technologies to detect, analyse and respond to cyber security incidents.
The Analyst will follow detailed processes and procedures to identify and analyse these incidents, escalating to and supporting more senior analysts based on the severity and potential impact of the incident.
**Principal responsibilities**
- Monitoring the entire global HSBC technology and information estate for new attacks and log them to appropriate systems.
- Triaging potentially malicious events to determine severity and criticality of the event.
- Responding to alerts from the various monitoring/detection systems and platforms within defined SLAs.
- Following detailed processes and procedures to analyse, respond to and/or escalate cyber security incidents.
- Collaborating with senior colleagues to support deep dive analysis of events.
- Supporting cyber security incidents through to eradication and feedback lessons learned in to improved cyber resilience.
- Analysing network traffic using a variety of analysis tools
- Monitoring security appliance health and performing basic troubleshooting of security devices; notifying security engineering as necessary for malfunctioning equipment.
- Analysing malicious artefacts obtained from network monitoring with a focus on generation of threat intelligence and service improvement.
- Supporting the identification and development of new detections (Use cases) to enhance our detection capability.
Also supporting the ongoing tuning of use case to optimise their effectiveness.
- Contributing to the continued evolution of hunting, monitoring, detection, analysis and response capabilities and processes.
- Collaborating with the wider Cybersecurity (and IT) teams to ensure that the core, underlying technological capabilities that underpin an effective and efficient operational response to current and anticipated threats and trends remain fit for
- purpose.
- Identifying processes that can be automated and orchestrated to ensure maximum efficiency of Global Cybersecurity Operations resources.
- Promoting a "self-critical" and continuous assessment and improvement culture whereby identification of weaknesses in the bank's control
Muestra tus habilidades a la empresa, rellenar el formulario y deja un toque personal en la carta, ayudará el reclutador en la elección del candidato.