https://bayt.page.link/HVqzpq5tE8MJWcg78
Create a job alert for similar positions

Job Description

Some careers shine brighter than others.


If you’re looking for a career that will help you stand out, join HSBC and fulfil your potential. Whether you want a career that could take you to the top, or simply take you in an exciting new direction, HSBC offers opportunities, support and rewards that will take you further.


HSBC is one of the largest banking and financial services organisations in the world, with operations in 64 countries and territories. We aim to be where the growth is, enabling businesses to thrive and economies to prosper, and, ultimately, helping people to fulfil their hopes and realise their ambitions.


We are currently seeking an experienced professional to join our team in the role of Lead Analyst.


In this role, you will:


  • Work as a senior member of the Monitoring and Threat Detection team within an “Analysis POD” tasked with triage of threat detection events from across the entire global HSBC technology estate.
  • Collaborate with colleagues across Threat Detection and Incident Management areas to ensure a rapid and focussed identification and escalation of potential threat events.
  • Provide support into Incident Response actions, providing SME knowledge to ensure continuity and depth of investigation.
  • Involvement in “Purple Team” and Threat Simulation activities, ensuring that the detection capability is accurately assessed and validated.
  • Collaborate with the Threat Hunters on hypothesis driven threat hunt and advanced data analysis.
  • Apply structured analytical techniques and critical thinking to ensure consistent triage of threat events.
  • Contribute to Post-Incident reviews, ensuring that output is captured and use to continually improve detection posture.
  • Provide quality assurance and oversight to investigation tickets, ensuring that ideas for improvement and training are captured in an objective manner.
  • Support the Crew Lead during shift handovers, ensuring the effective operations 24x7x365.
  • Provide expert-level advice and technical leadership to the team, driving the continued evolution of hunting, monitoring, detection, analysis and response capabilities and processes.
  • Train, develop, mentor and inspire cybersecurity colleagues in area(s) of specialism.
  • Review technical threat intelligence reports and apply detailed analysis of Indicators of Attack to ensure that we are able to defend against similar threats.
  • Identifying new SIEM detection use cases, taking end-to-end ownership of the delivery including testing, triage documentation and training requirements.
  • Identify processes that can be automated and orchestrated to ensure maximum efficiency of Global Cybersecurity Operations resources, reducing manual repetitive tasks where possible.



You have reached your limit of 15 Job Alerts. To create a new Job Alert, delete one of your existing Job Alerts first.
Similar jobs alert created successfully. You can manage alerts in settings.
Similar jobs alert disabled successfully. You can manage alerts in settings.