Job Description
Some careers shine brighter than others.
If you’re looking for a career that will help you stand out, join HSBC and fulfil your potential. Whether you want a career that could take you to the top, or simply take you in an exciting new direction, HSBC offers opportunities, support and rewards that will take you further.
HSBC is one of the largest banking and financial services organisations in the world, with operations in 64 countries and territories. We aim to be where the growth is, enabling businesses to thrive and economies to prosper, and, ultimately, helping people to fulfil their hopes and realise their ambitions.
We are currently seeking an experienced professional to join our team in the role of Senior Lead Consultant Specialist
In this role, you will:
- Define secure configuration baselines for database management system software, including but not limited to Oracle, Db2, SAP ASE, SQL Server, Db2 z/OS, MongoDB, and PostgreSQL, Teradata, HADOOP.
- Work with database technical subject matter experts to agree secure configuration baselines.
- Work with database technical subject matter experts to define/develop/implement checks for compliance scans.
- Work with database technical subject matter experts to provide remediation guidance for IT Service Owners.
- Work with the Configuration Baseline Management team to ensure they receive configuration compliance data.
- Interact with stakeholders across the organisation to understand their security needs and expectations.
- Define and maintain capability strategy, supported by Enterprise Architecture, Security Architecture and, Control Owners, in response to business strategies, regulator expectations, technology and practice advancement, best practice, and threat actor evolution [will overlap with Architecture].
- Ensure success with delivery partners (in alignment with support functions). Runs / drives respective Delivery forum, QBRs, SteerCos and Capability PODs.
- Maintain and prioritise a capability backlog based on objectives and value released to identify what teams work on next. Supports the prioritisation of backlogs from supporting technology and operations/service teams.
- Lead vendor relationships with owned technologies.
- Evaluate and adopt new technologies and practices which may impact the capability's needs and/or control environment.
- Monitor and communicate progress of capability performance through agreed indicators and metrics.
- Close working with Control Owners: Oversees Control Owner activity from a technical point-of-view, e.g. accurate assessment of control defect severities.
- Close working with Service Owners: understands general performance of associated services, exceptions, customer feedback and service uplift roadmaps.
- Close working with Technology/Platform Owners: understands general performance of associated IT services, significant bugs, technology health, customer feedback and technology uplift roadmaps (including technical debt resolution).
- Run a Pod per L2 capability with Architecture, Engineering, Service Delivery, Control Owner, Programme Manager, and Product Management
- Own all medium-rated and below risk Control Issues, Audit points and Regulatory findings