SOC Threat Analyst
hace 7 días
Overview If you’re looking for a career where you can make a real impression, join Global Service Center (GSC) HSBC and discover how valued you’ll be. HSBC is one of the largest banking and financial services organisations in the world, with operations in 64 countries and territories. We aim to be where the growth is, enabling businesses to thrive and economies to prosper, and, ultimately, helping people to fulfil their hopes and realise their ambitions. Role Purpose Operating within the Cybersecurity Global Defence function and under the management of the Global Head of Cybersecurity Operations, the Global Cybersecurity Operations (GCO) team provides a coordinated suite of “Network Defence” related services and are responsible for the detection and response to information and cybersecurity threats across the global HSBC assets and estate. The GCO team is split into four distinct sub-functions: Monitoring & Threat Detection (MTD) – Monitoring, detection, alerting and triage of initial cyber-threat events. Incident Management & Response (IMR) – Management and deep-dive investigation and response to cyber-incidents. Information Protection & Response (IPR) – Management and response to information and data security incidents. Strategic Innovation & Operations (SIO) – Continuous improvement of cyber-threat detection capabilities and process automation. Critical to the success of GCO are its close partnerships with other Cybersecurity Global Defence teams including Cybersecurity Engineering, Service Reliability Engineering, Cyber Intelligence & Threat Analysis teams and the wider HSBC businesses and functions. The overall GCO mission is placed under the purview of the Cybersecurity Chief Technology Officer / Head of Cybersecurity Global Defence. Main Activities Lead Analyst (GCO) Global Cybersecurity Operations (GCO) provides a coordinated suite of “Network Defence” services responsible for detecting and responding to information and cybersecurity threats to HSBC assets across the globe and is under the management of the Head of Global Cybersecurity Operations. This includes dedicated functions for the monitoring and detection of threats within the global estate as well as Cybersecurity Incident Management and Response activities. The Cybersecurity Monitoring and Threat Detection Team are charged with efficiently and effectively monitoring the HSBC global technology and information estate 24x7. The team’s mission is to detect the presence of any adversary within the estate, quickly analyse the severity and scope of the issue and work with the Cybersecurity Incident Management and Response Team to contain, mitigate and remediate the incursion. In addition, the team is responsible for constantly improving its detection capability through attack analysis and ensuring that the appropriate security event information is being fed into the team and that the alerting rules are tuned for maximum effectiveness. Lead Analysts are responsible for leading the analysis of and supporting the response to cyber security events within HSBC, using the latest threat monitoring and detection technologies to detect, analyse and respond. Lead Analyst must Work as a senior member of the Monitoring and Threat Detection team within an “Analysis POD” tasked with triage of threat detection events from across the entire global HSBC technology estate. Skills Excellent investigative skills, insatiable curiosity, and an innate drive to win. Instinctive and creative, with an ability to think like the enemy. Strong problem‑solving and trouble‑shooting skills. Strong decision‑making capabilities, with a proven ability to weigh the relative costs and benefits of potential actions and identify the most appropriate one. An understanding of business needs and commitment to delivering high‑quality, prompt and efficient service to the business. Self‑motivated and possessing a high sense of urgency and personal integrity. Highest ethical standards and values. Experience defining and refining operational procedures, workflows, and processes to support the team in consistent, quality execution of monitoring and detection. Good understanding of HSBC cyber security principles, global financial services business models, regional compliance regulations and laws. Good understanding and knowledge of common industry cyber security frameworks, standards, and methodologies, including MITRE ATT&CK, OWASP, ISO2700x series, PCI DSS, GLBA, EU data security and privacy acts, FFIEC guidelines, CIS and NIST standards. Good communication and interpersonal skills with the ability to produce clear and concise reports for targeted audiences across internal and external stakeholders. Ability to speak, read and write in English, in addition to your local language. Technical Skills Technical expertise in analysing threat event data, evaluating malicious activity, documenting unusual files and data, and identifying tactics, techniques and procedures used by attackers. Expert level knowledge and demonstrated experience in analysis and dissection of advanced attacker tactics, techniques, and procedures to inform adjustments to the control plane. Expert level of knowledge and demonstrated experience of common Security Information and Event Management (SIEM) platforms for the collection and real‑time analysis of security information. Expert level knowledge of Enterprise Detect and Response (EDR) tooling for the identification, prevention, and detection of cyber‑threats and for use in triage, investigation, and threat hunting. Detailed knowledge and demonstrated experience of common cybersecurity technologies such as; IDS / IPS / HIPS, Advanced Anti‑malware prevention and analysis, Firewalls, Proxies, MSS, etc. Excellent knowledge and demonstrated experience of common operating systems and end user platforms to include Windows, Linux, Citrix, ESX, OSX, etc. Excellent knowledge of common network protocols such as TCP, UDP, DNS, DHCP, IPSEC, HTTP, etc. and network protocol analysis suits. Good knowledge and demonstrated experience in incident response tools, techniques and process for effective threat containment, mitigation and remediation. Functional knowledge of scripting, programming and / or development of bespoke tooling or solutions to solve unique problems. Functional knowledge of Security Orchestration Automation and Response (SOAR) platforms including development and implementation of automation routines. Functional knowledge and technical experience of cloud computing platforms such as AWS, Azure, and Google. Basic knowledge and demonstrated experience in common cybersecurity incident response and forensic investigation tools such as : EnCase, FTK, Sleuthkit, Kali Linux, IDA Pro, etc. Industry Experience and Qualifications 5+ years of experience in cyber security senior analyst role or similar. Experience within an enterprise scale organisation; including hands‑on experience of complex data centre environments, preferably in the finance or similarly regulated sector. Industry recognised cyber security related certifications including CEH, OSCP, EnCE, SANS GSEC, GCIH, GCIA, and / or CISSP. Formal education and advanced degree in Information Security, Cyber‑security, Computer Science or similar and / or commensurate demonstrated work experience in the same. Competencies Analytic Thinking Effective Communication Conflict Resolution Strategic Vision Urgency Due to the urgent hiring need, candidates with immediate right to work locally and no relocation need will be prioritised. Benefits At HSBC we offer our colleagues a greater number of leave days so that they can fully enjoy their wedding, take care of the new member of the family, or grieve the loss of a family member. Our paid leave package is at the forefront in Mexico, now you have one more reason to be HSBC and proudly live a culture of well‑being, balance, and care. Equal Opportunity Statement HSBC is an equal‑opportunity employer committed to building a culture where all employees are valued, respected and opinions count. We take pride in providing a workplace that fosters continuous professional development, flexible working and opportunities to grow within an inclusive and diverse environment. We encourage applications from all suitably qualified persons irrespective of, but not limited to, their gender or genetic information, sexual orientation, ethnicity, religion, social status, medical care leave requirements, political affiliation, people with disabilities, color, national origin, veteran status, etc. We consider all applications based on merit and suitability to the role. Personal data held by the Bank relating to employment applications will be used in accordance with our Privacy Statement, which is available on our website. #J-18808-Ljbffr
-
Lead SOC Threat Analyst
hace 2 semanas
distrito federal, México HSBC A tiempo completoA leading global financial services organization is hiring a Security Operations Center (SOC) Threat Analyst in Mexico, Ciudad de México. The role involves leading the monitoring, detection, and response to cyber threats. Candidates should have 5+ years of experience in cybersecurity, advanced knowledge of security frameworks, and relevant certifications....
-
Lead SOC Threat Analyst – Global Detection
hace 7 días
distrito federal, México HSBC Global Services Limited A tiempo completoA leading global bank in Mexico City is seeking a skilled Cybersecurity Lead Analyst to defend against information and cybersecurity threats. You will lead the Monitoring & Threat Detection team, ensuring effective response and measures against cyber incidents globally. The ideal candidate possesses 5+ years of experience in cybersecurity analysis and...
-
SOC Analyst
hace 2 días
distrito federal, México Temenos A tiempo completoABOUT TEMENOS Temenos powers a world of banking that creates opportunities for billions of people and businesses everywhere. We have been doing this for over 30 years through the pioneering spirit of our Temenosians who are passionate about making banking better, together. We serve over 3000 clients from the largest to challengers and community banks in 150+...
-
Sr. Sales Engineer
hace 1 semana
distrito federal, México Recorded Future A tiempo completoWith 1,000 intelligence professionals, over $300M in sales, and serving over 1,900 clients worldwide, Recorded Future is the world’s most advanced, and largest, intelligence company! As a Sr. Sales Engineer, you’ll partner closely with our West region account teams to support enterprise customers and prospects in addressing their most pressing...
-
Senior Cloud Security Analyst
hace 2 semanas
distrito federal, México CONSULTORIA EN INTERNET ERGO SUM A tiempo completoOverview Apply your knowledge of IT security, security operations, and incident response with a focus on Google Cloud Platform (GCP) to manage and oversee a 24x7 cybersecurity operations shift and incident response team. Document processes and procedures comprehensively in the form of playbooks and reference guides. Responsibilities Handle and coordinate...
-
Data Analyst
hace 1 semana
distrito federal, México SMX Services & Consulting, Inc. A tiempo completoThis position could be remote for any of the following countries (Argentina, Colombia, Chile, Ecuador, Mexico, Peru). Key Responsibilities Data Integrity & ValidationValidate the consistency and integrity of data across multiple sources: Completion Notices, Service Inventory, Flow Manager, and SAS. Identify discrepancies and coordinate corrective actions to...
-
Intelligence Analyst
hace 2 semanas
Federal, México Pinkerton A tiempo completoWe are as invested in your career as you are.As you navigate through these uncertain times, know that Pinkerton has been a stable, thriving corporation for over 170 years. As recognized leaders around the globe in the corporate risk management industry, you can rest assured that joining us now means moving to a future-looking company. We are here today, will...
-
Regional Specialist, Intelligence
hace 4 semanas
distrito federal, México Fédération Internationale de Football Association A tiempo completoRegional Specialist, Intelligence Application Deadline: 29 December 2025 Department: Safety & Security Employment Type: Fixed Term - Full Time Location: Mexico City Description Reporting organizationally to the Senior Manager for Intelligence, the Specialist, Intelligence Analyst will be a key member of the FIFA26 Intelligence team, and work in close...
-
Sr. Python Developer
hace 2 semanas
distrito federal, México PepsiCo A tiempo completoOverview We Are PepsiCo Join PepsiCo and Dare for Better! We are the perfect place for curious people, thinkers and change agents. From leadership to front lines, we’re excited about the future and working together to make the world a better place. Being part of PepsiCo means being part of one of the largest food and beverage companies in the world, with...
-
Security Specialist
hace 1 semana
distrito federal, México Kyndryl A tiempo completo* Decline will set your Cookie preferences to "Required" and will prevent Kyndryl and its partners from collecting and using Cookie data to collect statistics and to provide you a personalized web experience and more relevant ads on third party websites.**Who We Are****The Role**Job DescriptionYour responsibilities will be varied and dynamic, spanning asset...