(Cybersecurity) Lead Cloud Security Analyst
3 miesięcy temu
about-project :
Operating within the Cybersecurity Global Defence function and under the management of the Global Head of Cybersecurity Operations, the Global Cybersecurity Operations (GCO) team provides a coordinated suite of “Network Defence” related services and are responsible for the detection and response to information and cybersecurity threats across the global HSBC assets and estate.
Critical to the success of GCO are its close partnerships with other Cybersecurity Global Defence teams including Cybersecurity Engineering, Service Reliability Engineering, Cyber Intelligence & Threat Analysis teams and the wider HSBC businesses and functions.
The overall GCO mission is placed under the purview of the Cybersecurity Chief Technology Officer / Head of Cybersecurity Global Defence.
Lead Cloud Security Analysts report into the Cloud Security Manager / Crew Lead and are responsible for leading the identification, analysis, and response to cyber security incidents within HSBC, using the latest technologies to detect, analyse and respond.
responsibilities :
Develop, manage, and maintain intelligence and risk led threat detection capabilities across the entire global HSBC Cloud hosted technology and information estate to quickly detect and respond to harmful behaviours and events in coordination with the Cybersecurity Incident Management and Response Team, effectively containing, mitigating, and remediating more serious incidents.
Identify, develop, and implement new detections (Use cases) and mitigations (Playbooks) across the Cloud focussed security platforms and prioritising the use automation and orchestration opportunities.
Review and approve new Use Cases and Playbooks created by Cybersecurity colleagues.
Proactively research emerging threats and vulnerabilities to aid in the identification of cyber incidents.
Perform and support the technical and forensic investigations into Cloud related cyber security events across the globe.
Provide expert-level advice and technical leadership to the team, driving the continued evolution of hunting, monitoring, detection, analysis and response capabilities and processes.
Train, develop, mentor, and inspire cybersecurity colleagues in area(s) of specialism.
requirements-expected :
5+ years of experience in cyber security senior analyst role or similar within an enterprise scale organisation; including hands-on experience of complex data centre environments, preferably in the finance or similarly regulated sector.
Formal education and advanced degree in Information Security, Cybersecurity, Computer Science or similar and/or commensurate demonstrated work experience in the same. Cloud platform specific certifications relating to the major cloud providers. Industry recognised cyber security related certifications (including CEH, EnCE, SANS GSEC, GCIH, GCIA and/or CISSP) are nice to have.
Excellent investigative skills, insatiable curiosity, and an innate drive to win. Instinctive and creative, with an ability to think like the adversary. Experience defining and refining operational procedures, workflows, and processes to support the team in consistent, quality execution of monitoring and detection.
Good understanding and knowledge of common industry cyber security frameworks, standards, and methodologies, including OWASP, MITRE ATT&CK, ISO2700x series, PCI DSS, GLBA, EU data security and privacy acts, FFIEC guidelines, CIS and NIST standards.
Intermediate level knowledge and demonstrated experience in analysis and dissection of advanced attacker tactics, techniques, and procedures to inform adjustments to the control plane. Intermediate level of knowledge and demonstrated experience of common log management suites, Security Information and Event Management (SIEM) tools for the collection and real-time analysis of security information.
Intermediate level knowledge of one of more leading Cloud platforms including Microsoft Azure, Amazon Web Services, Google Cloud Platform and Alibaba Cloud. Intermediate level knowledge of security event logging, monitoring, detection, and response on one or more of the leading Cloud platforms using tools and native capabilities such as AWS GuardDuty, Azure Sentinel, Google Security Command Center and Alibaba Cloud Security Center.
Detailed knowledge and demonstrated experience of common cybersecurity technologies such as IDS / IPS / HIPS, EDR, Advanced Anti-malware prevention and analysis, Firewalls, Proxies, WAF, etc. Excellent knowledge and demonstrated experience of common operating systems and platforms to include Windows, Linux, UNIX, Citrix, GSX Server, iOS, OSX, etc. Excellent knowledge of common network protocols such as TCP, UDP, DNS, DHCP, IP, HTTP, etc. and network protocol analysis suites.
Good knowledge and demonstrated experience in common cybersecurity incident response and forensic investigation tools such as: EnCase, BlackLight, Kali Linux, IDA Pro, etc. Good knowledge and demonstrated experience in incident response tools, techniques and process for effective threat containment, mitigation, and remediation.
Functional knowledge of scripting, programming and/or development of bespoke tooling or solutions to solve unique problems.
offered :
Competitive salary
Annual performance-based bonus
Additional bonuses for recognition awards
Multisport card
Private medical care
Life insurance
One-time reimbursement of home office set-up (up to 800 PLN)
Corporate parties & events
CSR initiatives
Nursery discounts
Financial support with trainings and education
Social fund
Flexible working hours
Free parking (Cracow office)
benefits :
sharing the costs of sports activities
private medical care
sharing the costs of professional training & courses
life insurance
remote work opportunities
flexible working time
integration events
corporate sports team
doctor’s duty hours in the office
retirement pension plan
corporate library
no dress code
coffee / tea
parking space for employees
leisure zone
extra social benefits
employee referral program
opportunity to obtain permits and licenses
charity initiatives
family picnics
extra leave
In-office gym
-
Cloud Security Lead
2 tygodni temu
Krakow, Polska HSBC Service Delivery (Polska) Sp. z o.o. Pełny etatAbout the RoleWe are seeking a highly skilled Cloud Security Lead to join our Cybersecurity Global Defence team at HSBC Service Delivery (Polska) Sp. z o.o. The successful candidate will be responsible for leading the identification, analysis, and response to cyber security incidents within HSBC, using the latest technologies to detect, analyse and...
-
Cybersecurity Lead Analyst
4 miesięcy temu
Krakow, Polska HSBC Service Delivery (Polska) Sp. z o.o. Pełny etattechnologies-expected : Oracle Citrix iOS about-project : The Cybersecurity Monitoring and Threat Detection Team are charged with efficiently and effectively monitoring the HSBC global technology and information estate 24x7. The team’s mission is to detect the presence of any adversary within the estate, quickly analyse the severity and scope of the...
-
Cybersecurity Operations Lead
2 tygodni temu
Krakow, Polska HSBC Service Delivery (Polska) Sp. z o.o. Pełny etat{"title": "Cybersecurity Operations Lead", "description": "Cybersecurity Operations LeadHSBC Service Delivery (Polska) Sp. z o.o. is seeking a highly skilled Cybersecurity Operations Lead to join our team. As a key member of our Cybersecurity Operations team, you will be responsible for leading the analysis and response to cyber security events within HSBC,...
-
Lead Analyst
3 miesięcy temu
Krakow, Polska HSBC Service Delivery (Polska) Sp. z o.o. Pełny etattechnologies-expected : oscp sans gcih gcia technologies-optional : cissp about-project : Some careers shine brighter than others. If you’re looking for a career that will help you stand out, join HSBC, and fulfil your potential. Whether you want a career that could take you to the top, or simply take you in an exciting new direction, HSBC offers...
-
Incident Response Senior Security Analyst
2 tygodni temu
Krakow, Polska HSBC Service Delivery (Polska) Sp. z o.o. Pełny etatJob Title: Incident Response Senior AnalystJoin our team at HSBC Service Delivery (Polska) Sp. z o.o. as an Incident Response Senior Analyst, where you will play a critical role in our Global Cybersecurity Operations (GCO) team.About the Role:The Cybersecurity Incident Management and Response Team is responsible for efficiently and effectively handling all...
-
Automated Security Scanning Analyst
2 miesięcy temu
Krakow, Polska ITDS Polska Sp. z o.o. Pełny etattechnologies-expected : Jenkins GitHub Ansible Python about-project : As an Automated Security Scanning Analyst, you will be working for our client, a global financial institution that leads innovative digital services and manages cutting-edge IT infrastructure. Your role will focus on ensuring the security of technology products and services by...
-
Cloud Security Assessment Specialist
1 miesiąc temu
Krakow, Polska ITDS Polska Sp. z o.o. Pełny etattechnologies-expected : Google Cloud Platform AWS Microsoft Azure Python Bash PowerShell SQL technologies-optional : Jenkins Terraform Ansible GitHub Nexus about-project : As a Cloud Security Assessment Specialist, you will be working for our client, a leading global financial institution dedicated to maintaining the highest standards of security and...
-
Cloud Security Specialist
2 tygodni temu
Krakow, Polska ITDS Polska Sp. z o.o. Pełny etatJob Title: Cloud Security Assessment SpecialistITDS Polska Sp. z o.o. is seeking a highly skilled Cloud Security Assessment Specialist to join our team. As a Cloud Security Assessment Specialist, you will play a crucial role in ensuring the security and compliance of our cloud-hosted services.About the RoleWe are looking for a talented individual with strong...
-
Cybersecurity Business Analyst
2 tygodni temu
Krakow, Polska ITDS Polska Sp. z o.o. Pełny etatAbout the RoleWe are seeking a highly skilled Cybersecurity Business Analyst to join our team at ITDS Polska Sp. z o.o. in Krakow. As a Cybersecurity Business Analyst, you will play a vital role in supporting our client, a leading global financial institution, in enhancing cybersecurity and promoting awareness across its organization.Key...
-
Senior Cybersecurity Specialist
2 tygodni temu
Krakow, Polska HSBC Service Delivery (Polska) Sp. z o.o. Pełny etatAbout the RoleWe are seeking a highly skilled Senior Security Engineer to join our Global Cybersecurity Core Engineering team at HSBC Service Delivery (Polska) Sp. z o.o. This is an exciting opportunity to work with a talented team of professionals who are passionate about delivering cutting-edge cybersecurity solutions.Key ResponsibilitiesCollaborate with...
-
(Cybersecurity) Incident Response Senior Analyst
4 miesięcy temu
Krakow, Polska HSBC Service Delivery (Polska) Sp. z o.o. Pełny etattechnologies-expected : AWS Microsoft Azure Google Cloud Platform about-project : Global Cybersecurity Operations (GCO) provides a coordinated suite of “Network Defence" services responsible for detecting and responding to information and cybersecurity threats to HSBC assets across the globe and is under the management of the Head of Global Cybersecurity...
-
Container Security Technical SME
2 miesięcy temu
Krakow, Polska ITDS Polska Sp. z o.o. Pełny etattechnologies-expected : AWS Google Cloud Platform Python about-project : As a Container Security Technical SME, you will be working for our client, a global financial leader that focuses on building secure and innovative digital services. This role is part of the Cybersecurity Assessment and Testing (CSAT) function, which is responsible for protecting the...
-
Senior Security Engineer – Enpoint Security
2 miesięcy temu
Krakow, Polska HSBC Service Delivery (Polska) Sp. z o.o. Pełny etattechnologies-expected : Linux CrowdStrike Cloud Infrastructure (AWS Azure) GIT Ansible Puppet Jenkins about-project : Some careers shine brighter than others. If you’re looking for a career that will help you stand out, join HSBC, and fulfil your potential. Whether you want a career that could take you to the top, or simply take you in an exciting new...
-
Senior Cloud Security Engineer @ LTIMindtree
4 tygodni temu
Krakow, Polska LTIMindtree Pełny etatRole: Senior Cloud Security Engineer Primary Skills: TrendMicro ScanMail, Microsoft Defender for Identity & MDCA Location: Warsaw/Krakow, Poland Employment Type: Permanent, B2B Experience: 3 to 8 Years Work Mode: Hybrid (2 days a week in office) Language: English and German (B2 level minimum) Duration: 12 Months on B2B with extension About...
-
Incident Response Senior Analyst
2 tygodni temu
Krakow, Polska HSBC Service Delivery (Polska) Sp. z o.o. Pełny etatJob Title: Incident Response Senior AnalystJoin our team of cybersecurity experts at HSBC Service Delivery (Polska) Sp. z o.o. as an Incident Response Senior Analyst. In this role, you will be responsible for detecting and responding to information and cybersecurity threats to HSBC assets across the globe.About the Role:We are seeking a highly skilled and...
-
AWS Cloud Security Architect
2 miesięcy temu
Krakow, Polska emagine sp. z o.o. Pełny etattechnologies-expected : AWS about-project : Industry: automotive Location: Cracow Remote work: In general yes, depends on current tasks and necessity to use testing environment. Rate: up to 175 PLN/H net + VAT, B2B Project language: Polish, English We are looking for talented cyber security architects to down full stack security architecture and...
-
Lead Analyst @ Antal Sp. z.o.o.
4 tygodni temu
Krakow, Polska Antal Sp. z.o.o. Pełny etatLocation: Cracow Contract Type: employment contract directly with the client Salary: 20 000 PLN gross - 25 000 PLN gross Work Model: hybrid work (50% in the office, 50% home office) ABOUT THE PROJECT: We have a unique opportunity for you to join our Cybersecurity Monitoring and Threat Detection Team, responsible for monitoring the global technology...
-
Container Security Technical SME
2 miesięcy temu
Krakow, Polska Mindbox S.A. Pełny etattechnologies-expected : AWS Google Cloud Platform Kubernetes Python about-project : The Container Security Technical SME will be a key part of the Secure Development team, reporting to the Global Head of Cloud and Container Security. They will, closely collaborate with peers across Cybersecurity and the business development teams to enable the rapid build...
-
Cybersecurity Testing and Education Specialist
2 miesięcy temu
Krakow, Polska HSBC Service Delivery (Polska) Sp. z o.o. Pełny etattechnologies-expected : Nessus Nessus IQ Kubernetes about-project : If you’re looking for a career that will help you stand out, join HSBC, and fulfil your potential. Whether you want a career that could take you to the top, or simply take you in an exciting new direction, HSBC offers opportunities, support and rewards that will take you...
-
Cybersecurity Business Analyst
4 tygodni temu
Krakow, Polska ITDS Polska Sp. z o.o. Pełny etatabout-project : Krakow-based opportunity with the possibility to work 100% remotely! As a Business Analyst, you will be working for our client, a leading global financial institution dedicated to enhancing cybersecurity and promoting awareness across its organization. You will play a vital role in supporting the Cybersecurity Education and Awareness team by...