Global Defense Engineering is responsible for fielding solutions that help defend HSBC against a wide range of threats to the business as well as its customers, clients, partners, and staff. The team works in concert, with partner teams across HSBC, to implement novel defensive capabilities that are effective and adaptable against a constantly evolving threat landscape.
The function operates under the vision: “Enabling HSBC to be safely successful everywhere the Firm chooses to do business.”
responsibilities :
Support Control Owners: Collaboration with key risk stakeholders in the elaboration of network control processes and requirements to align with the risk appetite of the bank. Ensuring requirements can be measured against key indicators and with respective threshold settings.
Support NSEC Capability Leads: elaboration and maintenance of the Control requirements and domain standards, validation and definition activities to ensure consistency and traceability across the control and aligned to adopted industry best practice, Cyber Security Frameworks and Cyber Standards.
Support GB/Fs/Markets/CTO: educating and understanding of the Control requirements and domain standards that is necessary for Control compliance in-line with the risk appetite of the bank.
Contribute to/authors/owns capability related network security including but not limited to the elaboration and maintenance of Control requirements and domain standards. Ensuring their traceability down to the technology configuration definition.
Build and share knowledge with the Service Delivery team, and other customer fora, for them to be able to self-serve answers and build FAQs.
Act as security subject matter expert (SME) for security of network services such as DDI (DNS, DHCP, IPAM) & NTP.
Act as security subject matter expert (SME) for security of network management tooling & platforms including monitoring, alerting & configuration management.
Define and maintain secure baseline configurations for network services & foundational network infrastructure devices.
requirements-expected :
Experience working with and securing DDI products in large environments.
Experience working with and securing resilient network layer encryption services.
Experience working with and securing network management products and solutions.
A background in information systems, technology, architecture, design, and service delivery of defense-in-depth capabilities.
Understanding and knowledge of common industry cyber security frameworks, standards and methodologies.
Experience working within integrated networked on-prem and Cloud environments with Third party and SaaS connectivity and that require cloud use-cases for web/mobile and enterprise companies.
Experienced in supporting a network capability, technology or platform.
Extensive knowledge of core networking concepts.
offered :
Competitive salary
Annual performance-based bonus
Additional bonuses for recognition awards
Multisport card
Private medical care
Life insurance
One-time reimbursement of home office set-up (up to 800 PLN)
Corporate parties & events
CSR initiatives
Nursery discounts
Financial support with trainings and education
Social fund
Flexible working hours
Free parking
benefits :
sharing the costs of sports activities
private medical care
sharing the costs of professional training & courses