Watch Commander

hace 1 semana


Azcapotzalco, México HSBC A tiempo completo

Some careers have more impact than others.
If you’re looking for a career where you can make a real impression, join HSBC and discover how valued you’ll be.
HSBC is one of the largest banking and financial services organisations in the world, with operations in 64 countries and territories. We aim to be where the growth is, enabling businesses to thrive and economies to prosper, and, ultimately, helping people to fulfil their hopes and realise their ambitions.
- “At HSBC we offer our colleagues a greater number of days so that they can fully enjoy their wedding, take care of the new member of the family, or grieve the loss of a family member._
- Our paid leave package is at the forefront in Mexico, now you have one more reason to be HSBC and proudly live a culture of well-being, balance and car care”_

**Watch Commander**

Global Cybersecurity Operations (GCO) provides a coordinated suite of “Network Defense” services responsible for detecting and responding to information and cybersecurity threats to HSBC assets across the globe and is under the management of the Head of Global Cybersecurity Operations. This includes dedicated functions for the Monitoring and Detection of threats within the global estate as well as Cybersecurity Incident Management and Response activities. These two principal functions are supported by additional internal GCO capabilities in; Cyber Intelligence and Threat Analysis. Critical to the success of GCO is its close partnership with sister Cybersecurity teams, IT Infrastructure Delivery, and Global Business and Function clients. The overall GCO mission is placed under the purview of the Group Chief Information Security Officer (CISO).

The Cybersecurity Incident Management and Response Team will efficiently and effectively handle all information and cybersecurity incidents across the Group. This mission is critical to the protection of HSBC customers, the HSBC brand, shareholder value as well as HSBC information and financial assets.

The Watch Commander is charged with leading one of a number of Cybersecurity Operations Teams made up of analysts from across the multiple Cybersecurity Operations service lines, providing 24x7 global protection for the bank and its customers.

The Watch Commander is accountable for:

- Managing and maintaining a highly skilled, efficient and effective local team across a number of Cybersecurity Operations service lines. Including supporting the definition, management and continuous improvement of the core functions and processes that underpin a successful, effective and globally scaled monitoring, alerting and security incident response capability.
- Ensuring a comprehensive and smooth hand-over between the global teams as shifts end and begin.
- Maintaining an up to date awareness and intelligence-led understanding of the current and predicted threat landscape so that impact to HSBC businesses or services can be anticipated and where possible, pre-emptive monitoring, alerting and response capabilities can be deployed.
- Collaboration with the wider GCO (and IT) teams to ensure that the core, underlying technological capabilities that underpin an effective and efficient operational response to current and anticipated threats and trends remain fit for purpose.
- Identification of processes that can be automated and orchestrated to ensure maximum efficiency of global Cybersecurity Operations resources.
- Ensuring analysis time is efficiently focused on the more challenging and potentially higher risk problems and tasks, not on high-volume/low risk, repetitive tasks or processes, thus helping to effectively reduce false positive and false negative events.
- Managing the collaboration with the wider GCO teams (and wider business/function teams where applicable) in the production and maintenance of efficient and effective incident response playbooks.
- Supporting the Identification, development and implementation of new detections (Use cases).
- Maintaining a global view of the GCO mission and work with local stakeholders in region and country to bring together both the global perspective as well as the more local message to in a clear and effective way that demonstrated the team’s commitment and value.
- Promoting a “self-critical” and continuous assessment and improvement culture whereby identification of weaknesses in the bank’s control plane (people, process and technology) are brought to light and addressed in an effective and timely manner.
- Supporting engagement of HSBC Global Businesses and Functions to drive a global up-lift in cyber-security awareness and help to evangelise HSBC Cybersecurity efforts and success.
- Ensuring operation within a post mortem framework that delivers detailed analysis on the root cause of incidents and produce findings and recommendations that support control adjustments to better protect the bank.
- Production of Management Information related to the CSIRT mission that is appropriate to the targ