Some careers shine brighter than others.
If you’re looking for a career that will help you stand out, join HSBC and fulfil your potential. Whether you want a career that could take you to the top, or simply take you in an exciting new direction, HSBC offers opportunities, support and rewards that will take you further.
HSBC is one of the largest banking and financial services organisations in the world, with operations in 64 countries and territories. We aim to be where the growth is, enabling businesses to thrive and economies to prosper, and, ultimately, helping people to fulfil their hopes and realise their ambitions.
We are currently seeking an experienced professional to join our team in the role of Remediation Manager/ Lead Consultant Specialist
In this role, you will:
- Collaborate with all internal and external customers through established governance to drive remediation of gaps and track to closure. This includes implementing and maintaining an effective working relationship with key stakeholders internally and externally.
- Coordinating the remediation activities required for all security driven risks across all the customers (i.e., Cybersecurity function, global businesses, global functions and regions).
- Providing tracking processes and reports that allow oversight of all red team issues and MSII’s for Vulnerability management control, working closely with the Delivery Support capability within each function, to ensure closure of identified issues within agreed target dates.
- Proactively track the gaps identified during Security Assessments, Threat modelling and other Security Testing activities (completed by the Cybersecurity Assurance and Testing function) and provide reports that support established governance to drive remediation of gaps and track to closure.
- Overseeing and supporting the team across various Vulnerability Management remediation workstreams in maintaining and documenting remediation plans, metrics and reports that support the team in tracking the closure of risks identified.
- Ownership and management of escalations if remediation activities are not complete on time.
- Working closely with Metrics and Reporting sub-function within Cybersecurity Risk and Control Strategy function to establish effective security testing metrics to support governance and reporting requirements of the business.
- Providing guidance on the Remediation framework as required.
- Embedding a culture of individual self-improvement, development and self-directed learning, whereby staff are expected to maintain subject matter expertise within their area of focus and within the realm of cyber security more broadly.
- Mentoring / Coaching / Guidance for other team members.
Management of Risk: This is a high-profile area, so risk management is the key underlying objective. This will be achieved by:
- Ensure the fair treatment (service excellence) of our customers is at the heart of everything we do, both personally and as an organization.
- Consistently displaying the behaviors that form part of the HSBC values and culture and adhering to HSBC risk policies and procedures, including notification and escalation of any concerns and taking required action in relation to points raised by regulators and/ or third parties.
- Continually reassess the operational risks associated with the role and inherent in the business, taking account of changing economic or market conditions, legal and regulatory requirements, operating procedures and practices, management restructurings, and the impact of new technology.
- Ensuring all actions take account of the likelihood of operational risk occurring. Also, by addressing any areas of concern in conjunction with Head of the function and other service line leads as appropriate.
To be successful in this role, you should meet the following requirements:
- Minimum bachelor’s degree and/or experience in Cyber security governance and operational processes, preferably in the Financial Services industry or global corporate service provider.
- Excellent understanding of Cybersecurity Control Framework, RMF (risk management framework across the bank) and familiarity with Information Security standards, policies and key cyber regulations as well as experience in dealing with regulatory requirements and other risk and compliance matters.
- Background – experience in one or more of Risk and Compliance Management, Vulnerability Management, Security Testing (ex; Red, Purple & Security Research workstreams).
- Qualifications – one or more industry-recognized cybersecurity-related certifications including CEH, CISA, CRISC, CISM, CISSP, CGEIT (desirable).
- Positive and professional attitude, team player, flexible and adaptable, open to change(s)
- Confident and takes responsibility and ownership for work and personal development.
- Ability to produce clear and concise reports for targeted audiences including senior management.
- Good spoken and written communication and ability to adapt style based on audience (Fluent in spoken / written English)
- Ability to build strong relationships and communicate on complex issues with a wide spectrum of stakeholders.
- Previous experience of delivering an excellent customer service.
You’ll achieve more when you join HSBC.
HSBC is committed to building a culture where all employees are valued, respected and opinions count. We take pride in providing a workplace that fosters continuous professional development, flexible working and opportunities to grow within an inclusive and diverse environment. Personal data held by the Bank relating to employment applications will be used in accordance with our Privacy Statement, which is available on our website.
Issued by – HSBC Software Development India