Offers “HSBC”

Expires soon HSBC

IT Security/Information Security Risk Delivery Manager/Cyber Security

  • Pune (Pune)
  • IT development

Job description

Designation: ISR Delivery Manager

Location: Pune

This job role is responsible for providing subject matter expertise in a relevant specialist related field in Cybersecurity. They will operate as part of a global/regional team within the Cybersecurity organisation to lead activities to provide expertise, oversight and assurance around security process, controls, standards and regulatory requirements.

This role will carry out some or all of the following activities:
· Lead and support peers within the Cybersecurity function to define and implement an industry leading Cybersecurity Service that supersedes our constantly changing information security threats.
· Provides key representation for and source of expertise on all issues with relevant subject matter
· Participate and designs best practices in relevant subject matter across the business
· Ensure adherence to the three lines of defence organisational model with clear lines of responsibility, accountability and segregation of duties.
· Ensure compliance with internal audit and external regulators that any organisational changes are fit for purpose and meet their expectations
· Collaborate with relevant stakeholders to enhances the delivery of a Cybersecurity strategy to secure the bank's technology from the inside out, whilst maintaining, protecting and enhancing HSBC's values, reputation and stakeholder value
· Contribute to the overall definition of responsibilities and accountabilities of Cybersecurity within HSBC and build a team which supports the Cybersecurity model and defined strategy
· Provide supervision, guidance and mentor less experienced members of a team
· Maintain contact with relevant internal teams/forums and external regional associations, specialist interest groups, government agencies, forums, etc.

Also responsible to:
· Perform and execute activities to ensure end to end assurance around security processes & controls
· Contribute to process, procedures and tool identification/development.
· Expand skills, knowledge and experience to enhance the overall capability of the function
· Support CSAT Teams to support delivery of the services.
· Support current eGRC tool (Comet).
· Assist in driving down open CyberSec Threats & Defects in collaboration with Remediation Utility by ensuring accurate data on findings is recorded.
· Provide Primary/Secondary support CSAT Communications – Global notificaitons,Confluence/Sharepoint etc
· Provide Primary/Secondary support CSAT Data Quality efforts.
· Provide Primary /Secondary support CS Phishing Delivery Service
· Provide Primary/Secondary CSAT reporting (using Excel, Tableau) including driving the necessary change to support both internal and external MI, reporting is automated wherever feasible and reporting capability is continuously improved. Work closely with Cybersecurity Reporting.
· Provide Primary/Secondary support for all CSAT process and procedures are consistent, in line with internal/external, published and maintained.
· Provide Primary support for CSAT Audit/Review central response. Risk and audit issue management – Ensure regulatory, risk and audit issue mitigation actions, owned by CSAT are actioned within agreed timescales.
· Provide Primary support for Business Impact Analysis (BIA) – BAU processes, Critical Asset Identification and certification.

Desired profile

Qualifications :


Certifications, Qualifications & Experience:

The ideal candidate for this position will have:
·  Advanced interpersonal skills to effectively promote ideas and collaboration at the various levels of the organization
·  Ability to build strong relationships and communicate on complex issues with a wide spectrum of stakeholders.
·  Knowledge of cybersecurity practices
·  Excellent analytical skills, organizational skills, ingenuity and the ability to work as part of a team
·  Strong problem-solving skills and critical thinking skills.

This position requires an individual with:
·  have extensive experience with IT, cybersecurity best practices
·  Reporting/MI experience and skills
·  Strong Process and workflow documentation experience.
·  have a minimum 5-7 years in a Cybersecurity or Risk role
·  have a minimum of 3 years leadership (projects, resource etc.)

Make every future a success.
  • Job directory
  • Business directory