Job description

Some careers have more impact than others.

If you’re looking for a career where you can make a real impression, join HSBC and discover how valued you’ll be.

HSBC is one of the world’s largest banking and financial services organisations. Our global businesses serve around 40 million customers worldwide through a network that covers 63 countries and territories. We aim to be where the growth is, enabling businesses to thrive and economies to prosper, and, ultimately, helping people to fulfil their hopes and realise their ambitions.

The Opportunity:

We are looking for ambitious and motivated individuals who are keen to embrace growth and tackle the impending challenges in this fast evolving industry. You should be passionate about approaching things differently, while operating like a fintech within a bank. We are not looking for superpowers - we are looking for knowledge, enthusiasm and the right attitude to deliver our global initiative in a lean way.
We are building a new strategic digital business backed by a Global Bank, with the ambition to become the next-generation global fintech solution, supporting the needs of internationally minded customers around the world. With a global footprint, they serve more than 50 million customers worldwide with a complete range of
banking and wealth management services, enabling customers to manage their finances and protect and build their financial futures.

Purpose:

We are seeking skilled and proactive DevOps Engineers to join our fintech organization. As a Security DevOps Engineer, your primary focus will be on setting up and ensuring the security of our AWS infrastructure, fixing vulnerabilities, and addressing cloud configuration and other security issues. You will work closely with development, operations, and security teams to implement and maintain security controls, automate security processes, and drive continuous improvement in our security posture. The ideal candidate will have a strong background in both security and DevOps practices, with expertise in AWS security.

 

We are currently seeking an experienced professional to join our team in the role of DevOps Engineer.

  • Setup and maintain software environments and toolchain for development, staging, and production.
  • Implement and maintain security controls in our AWS environment to protect our infrastructure, applications, and data.
  • Perform vulnerability assessments and security scans regularly to identify and prioritize vulnerabilities and security weaknesses.
  • Collaborate with development and operations teams to remediate vulnerabilities and security issues in a timely manner.
  • Develop and maintain automation scripts, tools, and infrastructure as code templates to enforce secure cloud configurations and automate security processes.
  • Monitor AWS logs, events, and alerts to detect and respond to security incidents and breaches.
  • Conduct security assessments and audits of our AWS infrastructure to ensure compliance with security standards and regulatory requirements.
  • Stay up to date with the latest AWS security best practices, threats, and vulnerabilities, and provide recommendations for security enhancements.
  • Work closely with cross-functional teams to provide security guidance and support in the design and implementation of new AWS services and features.
  • Collaborate with security teams to define and enforce security policies, standards, and procedures in our AWS environment.
  • Participate in incident response activities and contribute to the development of incident response plans and playbooks specific to AWS.
  • Provide security awareness training and guidance to development and operations teams on AWS security best practices.
Requirements
  • Bachelor's degree in Computer Science, Information Security, or a related field (or equivalent experience).
  • Strong experience in security-focused roles, with a focus on cloud security and AWS.
  • In-depth knowledge of AWS services and features, with hands-on experience in securing AWS environments.
  • Experience with infrastructure as code tools such as AWS CloudFormation or Terraform.
  • Proficiency in scripting and automation using languages like Python, Bash, or PowerShell.
  • Solid understanding of security principles, best practices, and industry standards.
  • Familiarity with vulnerability scanning tools, security assessment frameworks, and incident response processes.
  • Relevant AWS certifications such as AWS Certified Security - Specialty or AWS Certified DevOps Engineer - Professional are preferred.
  • Strong analytical and problem-solving skills, with the ability to think critically and make sound decisions to address security issues.
  • Excellent communication and collaboration skills to work effectively with cross-functional teams and convey security concepts to technical and non-technical stakeholders.
  • Knowledge of fintech industry regulations and compliance standards is a plus.

HSBCLL/GZ*

Candidate with less relevant experience or skills may be offered a lower Global Career Band than stated above.

You’ll achieve more when you join HSBC.

HSBC is committed to building a culture where all employees are valued, respected and opinions count. We take pride in providing a workplace that fosters continuous professional development, flexible working and opportunities to grow within an inclusive and diverse environment. Personal data held by the Bank relating to employment applications will be used in accordance with our Privacy Statement, which is available on our website.