Job Description
Some careers shine brighter than others.
If you’re looking for a career that will help you stand out, join HSBC and fulfil your potential. Whether you want a career that could take you to the top, or simply take you in an exciting new direction, HSBC offers opportunities, support and rewards that will take you further.
HSBC is one of the largest banking and financial services organisations in the world, with operations in 64 countries and territories. We aim to be where the growth is, enabling businesses to thrive and economies to prosper, and, ultimately, helping people to fulfil their hopes and realise their ambitions.
We are currently seeking an experienced professional to join our team in the role of Remediation Manager/ Lead Consultant Specialist
In this role, you will:
- Collaborate with all internal and external customers through established governance to drive remediation of gaps and track to closure. This includes implementing and maintaining an effective working relationship with key stakeholders internally and externally.
- Coordinating the remediation activities required for all security driven risks across all the customers (i.e., Cybersecurity function, global businesses, global functions and regions).
- Providing tracking processes and reports that allow oversight of all red team issues and MSII’s for Vulnerability management control, working closely with the Delivery Support capability within each function, to ensure closure of identified issues within agreed target dates.
- Proactively track the gaps identified during Security Assessments, Threat modelling and other Security Testing activities (completed by the Cybersecurity Assurance and Testing function) and provide reports that support established governance to drive remediation of gaps and track to closure.
- Overseeing and supporting the team across various Vulnerability Management remediation workstreams in maintaining and documenting remediation plans, metrics and reports that support the team in tracking the closure of risks identified.
- Ownership and management of escalations if remediation activities are not complete on time.
- Working closely with Metrics and Reporting sub-function within Cybersecurity Risk and Control Strategy function to establish effective security testing metrics to support governance and reporting requirements of the business.
- Providing guidance on the Remediation framework as required.
- Embedding a culture of individual self-improvement, development and self-directed learning, whereby staff are expected to maintain subject matter expertise within their area of focus and within the realm of cyber security more broadly.
- Mentoring / Coaching / Guidance for other team members.
Management of Risk: This is a high-profile area, so risk management is the key underlying objective. This will be achieved by:
- Ensure the fair treatment (service excellence) of our customers is at the heart of everything we do, both personally and as an organization.
- Consistently displaying the behaviors that form part of the HSBC values and culture and adhering to HSBC risk policies and procedures, including notification and escalation of any concerns and taking required action in relation to points raised by regulators and/ or third parties.
- Continually reassess the operational risks associated with the role and inherent in the business, taking account of changing economic or market conditions, legal and regulatory requirements, operating procedures and practices, management restructurings, and the impact of new technology.
- Ensuring all actions take account of the likelihood of operational risk occurring. Also, by addressing any areas of concern in conjunction with Head of the function and other service line leads as appropriate.