Lead Analyst
hace 4 días
Job Description
If you’re looking for a career where you can make a real impression, join Global Service Center (GSC) HSBC and discover how valued you’ll be. HSBC is one of the largest banking and financial services organisations in the world, with operations in 64 countries and territories. We aim to be where the growth is, enabling businesses to thrive and economies to prosper, and, ultimately, helping people to fulfil their hopes and realise their ambitions.
We are currently seeking an experienced professional to join our team in the role of Lead Analyst (GCO) .
Global Cybersecurity Operations (GCO) provides a coordinated suite of “Network Defence” services responsible for detecting and responding to information and cybersecurity threats to HSBC assets across the globe and is under the management of the Head of Global Cybersecurity Operations. This includes dedicated functions for the monitoring and detection of threats within the global estate as well as Cybersecurity Incident Management and Response activities. Critical to the success of GCO is its close partnership with sister Cybersecurity teams, IT Infrastructure Delivery and Global Business and Function clients. The overall GCO mission is placed under the purview of the Cybersecurity Chief Technology Officer (CTO) and the Group Chief Information Security Officer (CISO).
The Cybersecurity Monitoring and Threat Detection Team are charged with efficiently and effectively monitoring the HSBC global technology and information estate 24x7. The team’s mission is to detect the presence of any adversary within the estate, quickly analyse the severity and scope of the issue and work with the Cybersecurity Incident Management and Response Team to contain, mitigate and remediate the incursion. In addition, the team is responsible for constantly improving its detection capability through attack analysis and ensuring that the appropriate security event information is being fed into the team and that the alerting rules are tuned for maximum effectiveness. This mission is critical to the protection of HSBC customers, the HSBC brand, shareholder value, as well as HSBC information and financial assets.
Lead Analysts are responsible for leading the analysis of and supporting the response to cyber security events within HSBC, using the latest threat monitoring and detection technologies to detect, analyse and respond.
The Lead Analyst must:
- Work as a senior member of the Monitoring and Threat Detection team within an “Analysis POD” tasked with triage of threat detection events from across the entire global HSBC technology estate.
- Collaborate with colleagues across Threat Detection and Incident Management areas to ensure a rapid and focused identification and escalation of potential threat events.
- Provide support into Incident Response actions, providing SME knowledge to ensure continuity and depth of investigation.
- Involvement in “Purple Team” and Threat Simulation activities, ensuring that the detection capability is accurately assessed and validated.
- Collaborate with the Threat Hunters on hypothesis driven threat hunt and advanced data analysis.
- Apply structured analytical techniques and critical thinking to ensure consistent triage of threat events.
- Contribute to Post-Incident reviews, ensuring that output is captured and used to continually improve detection posture.
- Provide quality assurance and oversight to investigation tickets, ensuring that ideas for improvement and training are captured in an objective manner.
- Support the Crew Lead during shift handovers, ensuring the effective operations 24x7x365.
- Provide expert-level advice and technical leadership to the team, driving the continued evolution of hunting, monitoring, detection, analysis and response capabilities and processes.
- Train, develop, mentor and inspire cybersecurity colleagues in area(s) of specialism.
- Review technical threat intelligence reports and apply detailed analysis of Indicators of Attack to ensure that we are able to defend against similar threats.
- Identifying new SIEM detection use cases, taking end-to-end ownership of the delivery including testing, triage documentation and training requirements.
- Identify processes that can be automated and orchestrated to ensure maximum efficiency of Global Cybersecurity Operations resources, reducing manual repetitive tasks where possible.
- Skills
- Excellent investigative skills, insatiable curiosity and an innate drive to win.
- Instinctive and creative, with an ability to think like the enemy.
- Strong problem-solving and troubleshooting skills.
- Strong decision-making capabilities, with a proven ability to weigh the relative costs and benefits of potential actions and identify the most appropriate one.
- An understanding of business needs and commitment to delivering high-quality, prompt and efficient service to the business.
- An understanding of organisational mission, values and goals and consistent application of this knowledge.
- Self-motivated and possessing a high sense of urgency and personal integrity.
- Highest ethical standards and values.
- Experience defining and refining operational procedures, workflows and processes to support the team in consistent, quality execution of monitoring and detection.
- Good understanding of HSBC cyber security principles, global financial services business models, regional compliance regulations and laws.
- Good understanding and knowledge of common industry cyber security frameworks, standards and methodologies, including; MITRE ATT&CK, OWASP, ISO2700x series, PCI DSS, GLBA, EU data security and privacy acts, FFIEC guidelines, CIS and NIST standards.
- Good communication and interpersonal skills with the ability to produce clear and concise reports for targeted audiences across internal and external stakeholders.
- Ability to speak, read and write in English, in addition to your local language.
- Technical expertise in analysing threat event data, evaluating malicious activity, documenting unusual files and data and identifying tactics, techniques and procedures used by attackers.
- Expert level knowledge and demonstrated experience in analysis and dissection of advanced attacker tactics, techniques and procedures in order to inform adjustments to the control plane.
- Expert level of knowledge and demonstrated experience of common Security Information and Event Management (SIEM) platforms for the collection and real-time analysis of security information.
- Expert level knowledge of Enterprise Detect and Response (EDR) tooling for the identification, prevention and detection of cyber-threats and for use in triage, investigation and threat hunting.
- Detailed knowledge and demonstrated experience of common cybersecurity technologies such as; IDS / IPS / HIPS, Advanced Anti-malware prevention and analysis, Firewalls, Proxies, MSS, etc.
- Excellent knowledge and demonstrated experience of common operating systems and end user platforms to include Windows, Linux, Citrix, ESX, OSX, etc.
- Excellent knowledge of common network protocols such as TCP, UDP, DNS, DHCP, IPSEC, HTTP, etc. and network protocol analysis suites.
- Good knowledge and demonstrated experience in incident response tools, techniques and process for effective threat containment, mitigation and remediation.
- Functional knowledge of scripting, programming and/or development of bespoke tooling or solutions to solve unique problems.
- Functional knowledge of Security Orchestration Automation and Response (SOAR) platforms including development and implementation of automation routines.
- Functional knowledge and technical experience of cloud computing platforms such as AWS, Azure and Google.
- Basic knowledge and demonstrated experience in common cybersecurity incident response and forensic investigation tools such as: EnCase, FTK, Sleuthkit, Kali Linux, IDA Pro, etc.
Candidates will be evaluated primarily upon their ability to demonstrate the competencies required to be successful in the role, as described above. For reference, the typical work experience and educational background of candidates in this role are as follows:
- 5+ years of experience in cyber security senior analyst role or similar.
- Experience within an enterprise scale organisation; including hands-on experience of complex data centre environments, preferably in the finance or similarly regulated sector.
- Industry recognised cyber security related certifications including; CEH, OSCP, EnCE, SANS GSEC, GCIH, GCIA, and/or CISSP.
- Formal education and advanced degree in Information Security, Cyber-security, Computer Science or similar and/or commensurate demonstrated work experience in the same.
At HSBC we offer our colleagues a greater number of leave days so that they can fully enjoy their wedding, take care of the new member of the family, or grieve the loss of a family member. Our paid leave package is at the forefront in Mexico, now you have one more reason to be HSBC and proudly live a culture of well-being, balance and care.
HSBC is an equal opportunity employer committed to building a culture where all employees are valued, respected and opinions count. We take pride in providing a workplace that fosters continuous professional development, flexible working and opportunities to grow within an inclusive and diverse environment. We encourage applications from all suitably qualified persons irrespective of, but not limited to, their gender or genetic information, sexual orientation, ethnicity, religion, social status, medical care leave requirements, political affiliation, people with disabilities, color, national origin, veteran status, etc. We consider all applications based on merit and suitability to the role.
Personal data held by the Bank relating to employment applications will be used in accordance with our Privacy Statement, which is available on our website.
- Issued By HSBC Electronic Data Process Mexico Private LTD***
-
Lead Analyst
hace 2 semanas
distrito federal, México HSBC A tiempo completoJob description If you’re looking for a career where you can make a real impression, join Global Service Center (GSC) HSBC and discover how valued you’ll be. HSBC is one of the largest banking and financial services organisations in the world, with operations in 64 countries and territories. We aim to be where the growth is, enabling businesses to thrive...
-
FP & A Lead Analyst
hace 1 mes
distrito federal, México Citigroup Inc. A tiempo completoThe Financial Planning and Analysis Lead Analyst is a senior professional role responsible for providing management with an analysis and insight of Citi’s financial results in coordination with the broader Finance team. The overall objective is to contribute to directional strategy as well as utilize in-depth specialty knowledge to provide advice/counsel...
-
Data Quality Lead Analyst
hace 2 semanas
distrito federal, México Citi A tiempo completoThe Data Quality Lead Analyst contributes to efforts to ensure data that is sourced and provisioned meet all required data quality standards. The Data Quality Lead Analyst leads the continuous Data Quality by assessing, evaluating and analyzing data, setting controls and guidelines for measurement, evaluation, adoption and communication of Data Quality and...
-
FP & A Lead Analyst
hace 1 mes
distrito federal, México Citi A tiempo completoThe Financial Planning and Analysis Lead Analyst is a senior professional role responsible for providing management with an analysis and insight of Citi’s financial results in coordination with the broader Finance team. The overall objective is to contribute to directional strategy as well as utilize in-depth specialty knowledge to provide advice/counsel...
-
FP & A Lead Analyst
hace 4 semanas
distrito federal, México Citibank A tiempo completoThe Financial Planning and Analysis Lead Analyst is a senior professional role responsible for providing management with an analysis and insight of Citi’s financial results in coordination with the broader Finance team. The overall objective is to contribute to directional strategy as well as utilize in-depth specialty knowledge to provide advice/counsel...
-
Tax Attorney Lead Analyst
hace 2 semanas
distrito federal, México Citi A tiempo completoThe Tax Lead Analyst is a strategic professional who stays abreast of developments within own field and contributes to directional strategy by considering their application in own job and the business. Recognized technical authority for an area within the business. Requires basic commercial awareness. There are typically multiple people within the business...
-
Apps Dev Tech Lead Analyst
hace 1 mes
distrito federal, México 09516 Banco Nacional de Mexico, S.A., integrante del Grupo Financiero Banamex A tiempo completoThe Applications Development Technology Lead Analyst is a senior level position responsible for establishing and implementing new or revised application systems and programs in coordination with the Technology team. The overall objective of this role is to lead applications systems analysis and programming activities. Responsibilities : Partner with...
-
Tax Attorney Lead Analyst
hace 3 semanas
distrito federal, México Citigroup Inc. A tiempo completoThe Tax Lead Analyst is a strategic professional who stays abreast of developments within own field and contributes to directional strategy by considering their application in own job and the business. Recognized technical authority for an area within the business. Requires basic commercial awareness. Developed communication and diplomacy skills are required...
-
Lead Business Analyst
hace 5 meses
Federal, México EPAM Systems A tiempo completo**DESCRIPTION**: Are you a seasoned professional with a knack for business analysis in software development projects? Join our dynamic team at EPAM, a leading global provider of digital platform engineering and software development services. We are seeking a **Lead Business Analyst **who can thrive in a challenging, fast-paced, and rewarding...
-
Tax Attorney Lead Analyst
hace 3 semanas
distrito federal, México CitiGroup A tiempo completoThe Tax Lead Analyst is a strategic professional who stays abreast of developments within their field and contributes to directional strategy by considering their application in their job and the business. Recognized as a technical authority for an area within the business, this role requires basic commercial awareness. There are typically multiple people...
-
Tax Attorney Lead Analyst
hace 3 semanas
distrito federal, México Citi A tiempo completoThe Tax Lead Analyst is a strategic professional who stays abreast of developments within own field and contributes to directional strategy by considering their application in own job and the business. Recognized technical authority for an area within the business. Requires basic commercial awareness. There are typically multiple people within the business...
-
Lead Data Analyst
hace 5 días
distrito federal, México Zendesk, Inc. A tiempo completoBy clicking “Apply Now,” I understand and agree that Zendesk and its affiliates will collect and process my information in accordance with Zendesk’s Candidate Privacy Notice. Job Description As a member of Zendesk's Pricing and Packaging Team, the lead analyst plays a key role in shaping Zendesk’s monetization strategy. Reporting to the Senior...
-
Lead Data Analyst
hace 5 días
distrito federal, México Zendesk A tiempo completoBy clicking “Apply Now,” I understand and agree that Zendesk and its affiliates will collect and process my information in accordance with Zendesk’s Candidate Privacy Notice. Job Description As a member of Zendesk's Pricing and Packaging Team, the lead analyst plays a key role in shaping Zendesk’s monetization strategy. Reporting to the Senior...
-
Lead Analyst
hace 1 semana
distrito federal, México HSBC Mexico A tiempo completoKey Skills and Qualifications Excellent investigative skills, insatiable curiosity and an innate drive to win. Strong problem-solving and trouble-shooting skills. Strong decision-making capabilities, with a proven ability to weigh the relative costs and benefits of potential actions and identify the most appropriate one. An understanding of business needs...
-
FP&A/Investment Analyst
hace 1 mes
distrito federal, México WBL California, LLC A tiempo completoAbout World Business Lenders ( wbl.com ) World Business Lenders (WBL) provides general purpose short-term real estate collateralized commercial loans to a broad customer base comprised of small and medium sized businesses throughout the United States that lack access to traditional funding. WBL is a U.S. based company with a 100% remote workforce . This is...
-
Data Team Lead
hace 3 semanas
distrito federal, México World Business Lenders, LLC A tiempo completoAbout World Business Lenders ( World Business Lenders (WBL) provides general purpose short-term real estate collateralized commercial loans to a broad customer base comprised of small and medium sized businesses throughout the United States that lack access to traditional funding. WBL is a U.S.-based company with a 100% remote workforce. This is a remote...
-
Data Team Lead
hace 1 mes
distrito federal, México WBL California, LLC A tiempo completoAbout World Business Lenders ( World Business Lenders (WBL) provides general purpose short-term real estate collateralized commercial loans to a broad customer base comprised of small and medium sized businesses throughout the United States that lack access to traditional funding. WBL is a U.S.-based company with a 100% remote workforce. This is a remote...
-
Info Sec Tech Lead Analyst
hace 4 semanas
distrito federal, México Citibank A tiempo completoThe Info Sec Tech Lead Analyst - Tandem & Linux Platform is a senior level professional position responsible for driving efforts to prevent, monitor and respond to information/data breaches and cyber-attacks. The overall objective of this role is to ensure the execution of Information Security directives and activities in alignment with Citi's data security...
-
Info Sec Tech Lead Analyst
hace 3 semanas
distrito federal, México Citigroup Inc. A tiempo completoThe Info Sec Tech Lead Analyst - Tandem & Linux Platform is a senior level professional position responsible for driving efforts to prevent, monitor and respond to information/data breaches and cyber-attacks. The overall objective of this role is to ensure the execution of Information Security directives and activities in alignment with Citi's data security...
-
Sr Programmer Analyst
hace 4 semanas
distrito federal, México GRUPO STT A tiempo completoWork as a Sr Programmer Analyst A global leader in scientific research, healthcare and pharmaceutical solutions, that provides a comprehensive range of products and services that enable scientists, researchers, and healthcare professionals to make the world healthier, cleaner, and safer is looking for new talent in Mexico! Join our fantastic global team!...