Job Advert Details


Some careers shine brighter than others.
If you’re looking for a career that will help you stand out, join HSBC, and fulfil your potential. Whether you want a career that could take you to the top, or simply take you in an exciting new direction, HSBC offers opportunities, support and rewards that will take you further.

Your career opportunity
Global Cybersecurity Operations (GCO) provides a coordinated suite of “Network Defense” services responsible for detecting and responding to information and cybersecurity threats to HSBC assets across the globe and is under the management of the Head of 

Global Cybersecurity Operations. This includes dedicated functions for the monitoring and detection of threats within the global estate as well as Cybersecurity Incident Management and Response activities.  

The Cybersecurity Monitoring and Threat Detection Team are charged with efficiently and effectively monitoring the HSBC global technology and information estate 24x7.  The team’s mission is to detect the presence of any adversary within the estate, quickly analyze the severity and scope of the issue and work with the Cybersecurity Incident Management and Response Team to contain, mitigate and remediate the incursion.  In addition, the team is responsible for constantly improving its detection capability through attack analysis and ensuring that the appropriate security event information is being fed into the team and that the alerting rules are tuned for maximum effectiveness.  

What you’ll do
Monitoring the entire global HSBC technology and information estate for new attacks and log them to appropriate systems.
Triaging potentially malicious events to determine severity and criticality of the event.
Responding to alerts from the various monitoring/detection systems and platforms within defined SLAs.
Supporting cyber security incidents through to eradication and feedback lessons learned, in to improved cyber resilience.
Analyzing network traffic using a variety of analysis tools.

What you need to have to succeed in this role
Minimum 2 years of working experience in SOC environment with proven development track record
Previous experience in Security Operations Center
Knowledge of Security Information and Event Management (SIEM) tools.
Experience with IDS / IPS / HIPS, Advanced Anti-malware prevention and analysis, Firewalls, Proxies, MSS
Knowledge about network protocols such as TCP, UDP, DNS, DHCP, IPSEC, HTTP, etc.
Previous exposure to network monitoring devices such as firewalls, IDS/IPS, web proxies, email filters, etc.
Functional knowledge of scripting, programming and/or development of bespoke tooling or solutions to solve unique problems.

What we offer
Competitive salary
Annual performance-based bonus
Additional bonuses for recognition awards
Multisport card
Private medical care
Life insurance
One-time reimbursement of home office set-up (up to 800 PLN).
Corporate parties & events
CSR initiatives
Nursery discounts
Financial support with trainings and education
Social fund
Flexible working hours 
Free parking

If your CV meets our criteria, you should expect the following steps in the recruitment process:
Online behavioural test (for external candidates only)
Telephone screen (for external candidates only)
Zoom interview with the hiring manager 

We are looking to hire as soon as possible so don’t wait and apply now!
You'll achieve more when you join HSBC.

We thank all interested candidates for their applications. We reserve the right to contact only selected candidates.

In case you would like to resign from participation in recruitment process or withdraw previously sent to us application, please email us at: krakow.recruitment@hsbc.com