Digital Business Services is a pivotal part of the Group, providing essential operational and technical support to our global businesses and helping improve customer service and efficiency. Digital Business Services combines global expertise and technology to help keep us ahead of the competition.
The Cybersecurity function is responsible for enabling businesses and functions to manage Cybersecurity risks as well as ensuring risk and controls are assessed and implemented appropriately, objectively and independently through professional and specialized subject matter experts
People responsibility: N
Report to: Chief Information Security Officer
Job content
Ensure adherence to the three lines of defence organisational model with clear lines of responsibility, accountability and segregation of duties
Lead and support peers within the Cybersecurity function to define and implement an industry leading Cybersecurity Service that supersedes our constantly changing information security threats
Managing and analysis cyber security threats and incident to safeguard HSBC enviornment.
Provide Cyber Secuirty Technical expertise to tackle emerge cyber secuitry threats
Skill set to handling Cyber Security technical issue and communicate with business stakeholder and senior management
Ensure compliance with internal audit and external regulators that any organisational changes are fit-for-purpose and meet their expectations
Analyse and execute activities to ensure compliance with HSBC Cybersecurity policies and standards
Contribute to process, procedures and tool identification/development that will strength the bank's response to threats and incidents
Assess new technology products and projects utilising security technologies pertinent to the department
Engagement with other Global / Regional Cybersecurity teams, senior management and members of the Business when confronted with potential security issues
Expand Cyber Security skills, knowledge and experience to enhance the overall capability of the function
Maintain and implement cryptographic key management strategies, policies, and controls for safeguarding cryptographic keys to fulfill HSBC and regulatory requirement
Governance and support of data loss prevention(DLP) and information protection incident response(IPR) controls
Qualifications
Typically educated within IT (Cybersecurity specialist) is preferred.
Years of experience in Cybersecurity is preferred.
Managerial role within an Cybersecurity (including operational security experience) is preferred.
Regulatory engagement, experience in dealing with compliance matters, and regulatory liaison.
Knowledge of Asia Pacific regulatory requirements (in-depth knowledge of specific country regulatory requirements).
Ability to build strong relationships and communicate on complex Cybersecurity issues with a wide spectrum of stakeholders.
Understanding of business finance and experience of effective management of budgets and expenditure
Comprehensive understanding of banking and security in context of wider industry trends and direction.
Industry qualifications (CISSP, CISA, CISM), or Certifications ie.. CEH, ISO27001, SSCP, CND preferred
Mind set to follow defined procedure and following the cryptography compliance process
Knowledge and experience of PKI and digital certificate management, including creation, installation and renewal, are the advantage
Knowledge of Hardware Security Modules, e.g. Pay Shield or n Shield, would be added advantage
Reading and Speaking in Chinese is a must ability
#TWE
We regret to inform you that this job opportunity is no longer available