Offers “HSBC”

New HSBC

US Cyber Regulatory Program Manager

  • USA

Job description

Job description

Our purpose – Opening up a world of opportunity – explains why we exist. Here at HSBC we use our unique expertise, capabilities, breadth and perspectives to open up new kinds of opportunity for our more than 40 million customers. We’re bringing together the people, ideas and capital that nurture progress and growth, helping to create a better world – for our customers, our people, our investors, our communities and the planet we all share.

The US Cyber Regulatory Program Manager is primarily responsible for supporting the US Chief Information Security Officer (CISO) in providing regulatory support by coordinating the US FFIEC Cybersecurity Assessment & Exam and US GLBA programs, as well as other regulatory examinations as required. The key responsibilities include managing the programs to include development and maintenance of procedures, providing status reports to various levels of management, producing required artifacts in support of these programs, and developing training materials and supplemental documentation. The role is expected to manage the cybersecurity assessment responses, collaborating with other cybersecurity team members within the region, the central global functions of Group Cybersecurity, virtual team (PODs), technology teams, information security control owners, non-cyber control owners, and the regional/ business Chief Controls Office to achieve their goals. The role requires building of strong internal and external relationships and operating with transparency and consistency.

HSBC operates from over 3,900 offices in 67 countries, supporting 38 million customers in an increasingly digital offering that requires always on and secure operations of the technology estate. Any lapse in the confidentiality, integrity or availability of these systems impacts our customers access to their accounts, incur operational losses for the firm, damage the HSBC brand, and could lead to censure by external regulators.

As our US Cyber Regulatory Program Manager  you will:
• Lead the HSBC FFIEC CAT, or equivalent, program, including coordination of responses as well as ensuring efficient, accurate submissions.
• Coordinate and ensure accurate and complete assessment of GLBA requirements and subsequent delivery of the GLBA Report to the Board of Directors; this role will additionally own surrounding procedures and processes that ensure consistent quality of delivery.
• Partner with internal stakeholders to develop, improve, and document the processes.
• Develop and maintain program documentation, such as policies, procedures, and templates.
• Develop and maintain training to support execution of the programs and meet regulatory requirements.
• Produce reporting and papers on status of the programs as well as their outcomes. These outputs must be fit-for-purpose for their given audiences, up to and including the Board of Directors as well as regulatory bodies.
• Assist with other US regulatory examinations and audits as needed, including gathering evidence and responding to inquiries.
• Prepare and deliver clear and concise reports on cybersecurity risks, compliance status, and program updates to various stakeholders including senior management, the board of directors, and regulatory bodies.
• Stay abreast of emerging cybersecurity threats, vulnerabilities, and regulatory changes.
• Proactively identify opportunities to improve the effectiveness of the cybersecurity program.

For this role, HSBC targets a pay range between $120,000.00 and $222,500.00

The final fixed pay offer will depend on the candidate and a number of variables, including but not limited to, role responsibilities, skill set, depth of experience and education, licensing/certification requirements, internal relativity, and specific work location.

At HSBC, our overall goal is to provide a competitive Total Reward Package, with an appropriate mix of fixed pay, and variable pay, as part of an employee’s overall total compensation and benefits. Variable pay generally takes the form of discretionary, annual awards (sometimes referred to as a “bonus”). Additionally, HSBC offers a wide range of competitive and flexible benefits designed to help you improve your health and well-being, finances, and lifestyle.

Requirements

You´ll likely have the following qualifications to succeed in this role:

• Minimum bachelor’s degree and/or experience in working in risk, governance or regulatory reporting is required
• One or more industry-recognized cybersecurity-related certifications required, such as CISA, CISM, CISSP, CRISC.  If the candidate does not possess a relevant certification at the time of hire, they must attain certification within the first 12 months of employment
• Strong, demonstrated program management acumen and experience; ability to coordinate multiple complex tasks across an international group of stakeholders
• Excellent spoken and written communication, and ability to adapt style based on audience (Fluent in spoken / written English); proficient in professional business communication styles to stakeholders up to and including the Board of Directors and external regulatory bodies
• Ability to efficiently operate and manipulate large data sets in excel
• Experience contributing to the implementation and monitoring of policies, governance frameworks, procedures, practices and standards preferred
• Positive and professional attitude; team player; flexible, adaptable, and open to change
• Confident and takes responsibility and ownership for work and personal development
• Ability to communicate technical subject matter to non-technical stakeholders
• Ability to quickly develop effective working relationships with stakeholders, and manage same
• Ability and self motivation to learn quickly
• Utmost attention to detail in the work product is essential
• Desirable, but not essential, is experience in one or more areas of risk management or audit

In compliance with applicable laws, HSBC is committed to employing only those who are authorized to work in the U.S. Applicants must be legally authorized to work in the U.S. as HSBC will not engage in immigration sponsorship for this position.

As an HSBC employee, you will have access to tailored professional development opportunities to ensure you have the right skills for today and tomorrow. We offer a competitive pay and benefits package including a robust Wellness Hub, all in a welcoming, diverse and inclusive work environment. You will be empowered to drive HSBC’s engagement with the communities we serve through an industry-leading volunteerism policy, a generous matching gift program, and a comprehensive program of immersive Sustainability and Climate Change Initiatives. You’ll want to join our Employee Resource Groups as they play a central part in life at HSBC, including the development of our employees and networking inside and outside of HSBC. We value difference. We succeed together. We take responsibility. We get it done. And we want you to help us build the bank of the future!

All qualified applicants will receive consideration for employment without regard to age, ancestry, color, race, national origin, ethnicity, disability or medical condition, genetic information, military or veteran service, religion, creed, sex, gender, pregnancy, childbirth, caregiver status, marital status, citizenship or immigration status, sexual orientation, gender identity or expression or any other trait protected by applicable law.

Make every future a success.
  • Job directory
  • Business directory