Job description

Some careers shine brighter than others.

If you’re looking for a career that will help you stand out, join HSBC and fulfil your potential. Whether you want a career that could take you to the top, or simply take you in an exciting new direction, HSBC offers opportunities, support and rewards that will take you further.

HSBC is one of the largest banking and financial services organisations in the world, with operations in 64 countries and territories. We aim to be where the growth is, enabling businesses to thrive and economies to prosper, and, ultimately, helping people to fulfil their hopes and realise their ambitions.

We are currently seeking an experienced professional to join our team in the role of Consultant Specialist

In this role, you will:

  • Create forward looking view of what the strategy should be with regards to Risk & Control in AM Tech.
  • Build and maintain relationships within WPB Cyber, CCO tech, ITSO, AM CITRO, Risk and Control Organization, ITID and 2nd line risk.
  • Drive culture change around Risk & Control
  • Consult on technology projects, providing support during IT audits
  • Share best practice with the WPB Risk and Control Organization
  • Provide guidance and help to IT delivery teams regarding security solutions to enable faster delivery of IT Systems
  • ITIL and service management process understanding.
  • Partner with the AM business and Risk Functions to promote and provide support to relevant policies, standards and governance within AM Tech
  • Provide regional stakeholder updates with respect to global IT Control uplift programs
  • Support IT engagement with internal / external / client audit and Regulatory Exams, including oversight of field work, collation of artefacts and partnership with CCO tech to remediate issues
  • Attend relevant governance forums and where applicable provide appropriate MI
  • Able to prepare decks for senior stakeholders. Advanced knowledge of MS office suite.
  • Communicate residual risk through reporting, business governance processes and forums.
Requisitos

To be successful in this role, you should meet the following requirements:

  • Partner and contribute to the risk & control agenda for AM Tech
  • Delivery of risk & control projects and programmes for AM Tech
  • Assist service owners in responding appropriately and effectively to firm-wide risk, cyber, internal, and external audits
  • Contribute to evidence collection in delivery of internal/external audits
  • Familiar with Operational Resilience Risk and ability to understand 2nd Line of defence requirements and ability to project AM Tech status and define mitigation and remediation based on RAG status.
  • Advocate and support initiatives to improve accuracy across all Enterprise Golden Source data repositories
  • Provide visibility of status of action plans and external/internal audit issues
  • Have familiarity with audits such as ISAE 3402 and IT General Controls testing. Should be aware of Audit approach, controls management, walkthrough, audit sampling etc.
  • Have familiarity with regulators such as SOX, FCA , OCC etc.
  • Should be familiar with IT controls such as Change Management, Computer operations, User access (IAM), patch management, vulnerability management and Cyber controls such as cryptography, data security, DLP etc.
  • Challenge where appropriate, decisions made on control implementation
  • Review allocation of issues to AM Tech and agree categorization of high/medium/low with audit and CCO tech
  • Advocate security policies and standards to wider IT team
  • Support new IT projects with initial risk assessment, providing consultancy and guidance on controls and policies.
  • Support where necessary key IWPB/HSBC security uplift initiatives
  • Contribute to review of security standards and procedures
  • Providing support for automated application security tooling working with Cybersecurity as necessary
  • Interpret and advise on the results from security testing to both technical and non-technical audiences

You’ll achieve more when you join HSBC.

www.hsbc.com/careers

HSBC is committed to building a culture where all employees are valued, respected and opinions count. We take pride in providing a workplace that fosters continuous professional development, flexible working and opportunities to grow within an inclusive and diverse environment. Personal data held by the Bank relating to employment applications will be used in accordance with our Privacy Statement, which is available on our website.

Issued by – HSBC Software Development India