HSBC Service Delivery (Polska) Sp. z o.o.Kraków, Lesser Poland, Poland
6 days ago
Job description
technologies-expected :
Google Cloud Platform
about-project :
Operating within the Cybersecurity Global Defence function and under the management of the Global Head of Cybersecurity Operations, the Global Cybersecurity Operations (GCO) team provides a coordinated suite of “Network Defence” related services and are responsible for the detection and response to information and cybersecurity threats across the global HSBC assets and estate.
Critical to the success of GCO are its close partnerships with other Cybersecurity Global Defence teams including Cybersecurity Engineering, Service Reliability Engineering, Cyber Intelligence & Threat Analysis teams and the wider HSBC businesses and functions.
The overall GCO mission is placed under the purview of the Cybersecurity Chief Technology Officer / Head of Cybersecurity Global Defence.
Lead Cloud Security Analysts report into the Cloud Security Manager / Crew Lead and are responsible for leading the identification, analysis, and response to cyber security incidents within HSBC, using the latest technologies to detect, analyse and respond.
responsibilities :
Develop, manage, and maintain intelligence and risk led threat detection capabilities across the entire global HSBC Cloud hosted technology and information estate to quickly detect and respond to harmful behaviours and events in coordination with the Cybersecurity Incident Management and Response Team, effectively containing, mitigating, and remediating more serious incidents.
Identify, develop, and implement new detections (Use cases) and mitigations (Playbooks) across the Cloud focussed security platforms and prioritising the use automation and orchestration opportunities.
Review and approve new Use Cases and Playbooks created by Cybersecurity colleagues.
Proactively research emerging threats and vulnerabilities to aid in the identification of cyber incidents.
Perform and support the technical and forensic investigations into Cloud related cyber security events across the globe.
Provide expert-level advice and technical leadership to the team, driving the continued evolution of hunting, monitoring, detection, analysis and response capabilities and processes.
Train, develop, mentor, and inspire cybersecurity colleagues in area(s) of specialism.
requirements-expected :
5+ years of experience in cyber security senior analyst role or similar within an enterprise scale organisation; including hands-on experience of complex data centre environments, preferably in the finance or similarly regulated sector.
Formal education and advanced degree in Information Security, Cybersecurity, Computer Science or similar and / or commensurate demonstrated work experience in the same. Cloud platform specific certifications relating to the major cloud providers. Industry recognised cyber security related certifications (including CEH, EnCE, SANS GSEC, GCIH, GCIA and / or CISSP) are nice to have.
Excellent investigative skills, insatiable curiosity, and an innate drive to win. Instinctive and creative, with an ability to think like the adversary. Experience defining and refining operational procedures, workflows, and processes to support the team in consistent, quality execution of monitoring and detection.
Good understanding and knowledge of common industry cyber security frameworks, standards, and methodologies, including OWASP, MITRE ATT&CK, ISO2700x series, PCI DSS, GLBA, EU data security and privacy acts, FFIEC guidelines, CIS and NIST standards.
Intermediate level knowledge and demonstrated experience in analysis and dissection of advanced attacker tactics, techniques, and procedures to inform adjustments to the control plane. Intermediate level of knowledge and demonstrated experience of common log management suites, Security Information and Event Management (SIEM) tools for the collection and real-time analysis of security information.
Intermediate level knowledge of one of more leading Cloud platforms including Microsoft Azure, Amazon Web Services, Google Cloud Platform and Alibaba Cloud. Intermediate level knowledge of security event logging, monitoring, detection, and response on one or more of the leading Cloud platforms using tools and native capabilities such as AWS GuardDuty, Azure Sentinel, Google Security Command Center and Alibaba Cloud Security Center.
Detailed knowledge and demonstrated experience of common cybersecurity technologies such as IDS / IPS / HIPS, EDR, Advanced Anti-malware prevention and analysis, Firewalls, Proxies, WAF, etc. Excellent knowledge and demonstrated experience of common operating systems and platforms to include Windows, Linux, UNIX, Citrix, GSX Server, iOS, OSX, etc. Excellent knowledge of common network protocols such as TCP, UDP, DNS, DHCP, IP, HTTP, etc. and network protocol analysis suites.
Good knowledge and demonstrated experience in common cybersecurity incident response and forensic investigation tools such as : EnCase, BlackLight, Kali Linux, IDA Pro, etc. Good knowledge and demonstrated experience in incident response tools, techniques and process for effective threat containment, mitigation, and remediation.
Functional knowledge of scripting, programming and / or development of bespoke tooling or solutions to solve unique problems.
offered :
Competitive salary
Annual performance-based bonus
Additional bonuses for recognition awards
Multisport card
Private medical care
Life insurance
One-time reimbursement of home office set-up (up to 800 PLN)
Corporate parties & events
CSR initiatives
Nursery discounts
Financial support with trainings and education
Social fund
Flexible working hours
Free parking
benefits :
sharing the costs of sports activities
private medical care
sharing the costs of professional training & courses
life insurance
remote work opportunities
flexible working time
integration events
corporate sports team
retirement pension plan
corporate library
no dress code
coffee / tea
parking space for employees
leisure zone
extra social benefits
employee referral program
opportunity to obtain permits and licenses
charity initiatives
family picnics
extra leave
In-office gym
Create a job alert for this search
Security Analyst • Kraków, Lesser Poland, Poland
Related jobs
Cloud Security Expert
Alior BankKraków
Mamy dla Ciebie pracę, która polega na.Microsoft (Azure, Microsoft 365),.Sentinel, Defender, Azure Information Protection, DLP,.
AAD oraz dobrych praktyk w zakresie zarządzania tożsamością,.Multispo...Show moreLast updated: 30+ days ago
Security Analyst, Cyber Readiness
AutodeskLubomirskiego, Kraków, Poland
As a Security Analyst - Cyber Readiness, you will be a key player in establishing and shaping the Cyber Readiness function at Autodesk.
This net-new role involves creating and implementing processes...Show moreLast updated: 18 days ago
Automated Security Scanning Analyst
Groupe SIIRemote work, poland
Join the Cybersecurity team of one of the largest financial institutions in the world.You will be a key part of the Secure Development team, reporting to the Global Head of Secure Development Lifec...Show moreLast updated: 30+ days ago
Lead Cloud Security Engineer
WP EngineKrakow
Remote
We engage the most inspired minds to do their best work wherever they work best—powering the freedom to create worldwide.
We are hiring a Lead Cloud Security Engineer with cloud, linux and automatio...Show moreLast updated: 17 days ago
Cloud Engineer Lead
Fedex GroundPoland, Lesser Poland, Kraków
As multi-region Cloud Engineer Lead at Fedex Dataworks Poland you will help us in setting up a global Azure infrastructure for the new FedEx data-driven e-commerce platform fdx (www.You will design...Show moreLast updated: 30+ days ago
Cloud Security Engineer - 33134
Splunk IncKrakow, Poland
Splunk, a Cisco company, is building a safer and more resilient digital world with an end-to-end full stack platform made for a hybrid, multi-cloud world.
Leading enterprises use our unified securit...Show moreLast updated: 14 days ago
People Analytics Lead Analyst
AptivKrakow, Poland
We are seeking a detail-oriented HR Data Analyst to join our team.In this role, you will collect, analyze, and interpret human resources data to optimize HR processes, enhance employee experience, ...Show moreLast updated: 18 days ago
Cloud Engineer Lead
FedExKrakow, Województwo małopolskie, PL
As multi-region Cloud Engineer Lead.FedEx data-driven e-commerce platform.That includes setting up storage accounts, event hubs, AKS, Databricks components, gateways, databases, service accounts bo...Show moreLast updated: 30+ days ago
Cloud Information Security Engineer
HedgeServKrakow, Poland
HedgeServ is a leading global fund administrator with more than $450 billion in assets under administration across all investment vehicles including Hedge Funds, Private Equity Funds, UCITS, Hybrid...Show moreLast updated: 8 days ago
Oracle HRIS Analyst Lead
Royal and RossHouston, Texas, United States Partially remote
Full time - all applicants must be able to workwithout sponsorship.The HRIS Analyst Lead role ensures the efficient operation, configuration, and continuous improvement of our HRIS system and relat...Show moreLast updated: 30+ days ago
Promoted
Cloud Security Architect AWS
Infotree Global SolutionsKraków, Lesser Poland Voivodeship, Poland
About this position : We are looking for talented cyber security architects to down full stack security architecture and implementation for the industry-leading cloud-native DevOps and edge deployme...Show moreLast updated: 25 days ago
Lead Analyst-F&A GL
TechnipFMCKrakow, PL
Employment type : Employee Place of work : Hybrid Offshore / Onshore : Offshore.TechnipFMC is committed to driving real change in the energy industry.
Our ambition is to build a sustainable future throug...Show moreLast updated: 17 days ago
AWS Cloud Security Engineer
ZendeskKrakow, Poland
As part of the Foundation Secure team, you will bring your DevOps knowledge and software engineering skill set into the world of cloud security engineering.
Our team uses automation to protect nearl...Show moreLast updated: 4 days ago
Cyber Security Analyst
ExperisKraków, Malopolskie
Cyber Security Operations Center (CSOC) as part of the threat detection and response team.Perform case triage, gathering additional information as needed to determine if the case warrants further i...Show moreLast updated: 7 days ago
Cloud Security Engineer
VOLT TECHNOLOGIES sp. z o.o.Kraków, małopolskie, Polska
We are looking for a Cloud Security Engineer to make an impact working within the Security team.Reporting directly to the CISO this role will be responsible mainly for implementing and operating cl...Show moreLast updated: 13 days ago
Cloud Development Engineer, Security Services
PegasystemsPoland - Krakow
Pega Poland is a leading technology hub in Europe, driving innovation and delivering cutting-edge software solutions.Employees are encouraged to collaborate, develop their skills, and share their e...Show moreLast updated: 4 days ago
Lead IT Security Analyst / Cybersecurity Scanning @ Strefa IT Kandydata
Strefa IT KandydataKraków, Poland
B2B contract until the end of 2025, with an option to extend for 2026.Hybrid (6 times / month onsite in Kraków – preferred – or Warsaw).
We are looking for an experienced.Cybersecurity Scanning Consul...Show moreLast updated: 20 days ago
Lead IT Security Analyst (Cybersecurity) @ Antal
AntalKraków, Poland
Job Title : Secure Development – Lead IT Security Analyst.Location : Kraków (preferred) or Warsaw – Hybrid (6 days per month in office).
Business Area : IT – Cybersecurity.Cybersecurity team with a foc...Show moreLast updated: 21 days ago