The Principal SME - NAC is responsible for providing subject matter consultancy, thought leadership and project delivery in relation to Network Access Control issues and initiatives. The holder of the role should have a focus on network access control products, solutions, and best practices, being able to apply those to the real-world challenges faced by HSBC as the organisation seeks to maintain and improve the network security controls required to mitigate network-based threats and risks.
This role is part of the Network Security function within the Global Defence organisation, defining the security control requirements and strategic direction for Network Access Control
This role supports and is supported by the Capability Owner of Network Access Control and the Head of Network Security, with the expectation that the Principal SME - NAC provides technical expertise and SME knowledge to support the delivery of control design, key control indicators, NAC strategy & roadmap and tactical control uplifts.
responsibilities :
Effectively prioritising the multiple workstreams.
Ensuring adherence to network security standards and the wider cybersecurity control framework.
Challenging the Status Quo / Raising the bar – looking for opportunities to continuously improve network security posture, promoting knowledge sharing and optimisation with the broader Cybersecurity team.
Need to construtively challenge internal project teams and stakeholders (PMs, other technical SMEs) if required.
Working in a geographically dispersed team.
Working within a constantly evolving technology landscape with evolving threats and risks.
Working within a strongly regulated business.
requirements-expected :
Understanding of data networking principles and industry frameworks.
Understanding of risk management fundamentals.
Knowledge and experience of delivery using Agile and/or DevOps methodologies
Knowledge and experience of IT service management principles e.g. change control, incident and problem management, resilience and business recovery planning etc.
Good understanding of network design, firewall, load balancing and network segmentation technologies.
Strong communication and interpersonal skills, with experience interacting with technical leaders and various layers of management.
Experience of data networks and security design and engineering, preferably acquired in a highly regulated environment.
Experience of data gathering from variety of sources including inputs from business, offline spreadsheets, IT systems, etc.
offered :
Competitive salary
Annual performance-based bonus
Additional bonuses for recognition awards
Multisport card
Private medical care
Life insurance
One-time reimbursement of home office set-up (up to 800 PLN)
Corporate parties & events
CSR initiatives
Nursery discounts
Financial support with trainings and education
Social fund
Flexible working hours
Free parking
benefits :
sharing the costs of sports activities
private medical care
sharing the costs of professional training & courses