Compañía

HSBCVer más

addressDirecciónMéxico
type forma de trabajoPermanente: tiempo completo
CategoríaTecnologías de la información

Descripción del trabajo

If you’re looking for a career where you can make a real impression, join Global Service Center (GSC) HSBC and discover how valued you’ll be.

HSBC is one of the largest banking and financial services organizations in the world, with operations in 64 countries and territories. We aim to be where the growth is, enabling businesses to thrive and economies to prosper, and, ultimately, helping people to fulfil their hopes and realize their ambitions.

We are currently seeking an experienced professional to join our team in the role of AVPBusiness InformationRisk Officer (Resilience Risk):

 

Role purpose

Business InformationRisk Officers are responsible for discharging their responsibilities across the Businesses and Regions. This involves working directly with back, middle and front office staff, including Control Officers in each business, to ensure all Information Security, Technology and Cyber risks are appropriately identified, assessed, managed and tracked.

The risk utility BIRO will support the broader WCCO organisation by providing timely guidance and support to the business on Information Security related issues and supporting BIRO driven risk reduction activities including CTB initiatives. The scope of this role is Global Wholesale Business including WCOO, GB & CMB and shall use their subject matter expertise to drive de-risking of business processes.

 

Principal accountabilities

·       Be responsible for providing cyber and Information Security Risk management input to the business in support of their overall operational risk management activities, working alongside the business management and control officers to articulate and understand these risks and ensuring that they are appropriately reflected in business Risk Control Assessment (RCA) – driving related RCA activities as required.

·       Assist the Wholesale businesses in the identification, documentation and resolution of Information Security and Cyber risk issues (liaising with relevant functions, e.g. Cybersecurity, where required) as guided by lead / onshore BIRO.

·       Assist the Wholesale businesses in preparation of MI which can assist in the required analysis.

·       Provide timely guidance to business on queries relating to Information Security, leveraging strong knowledge of Bank policies, industry good practice and requirements of NFR management process to drive de-risking of Business processes. 

·       Support the business in ensuring that technology, cyber and Information Security Risks in the RCAs are adequately assessed, documented, with gaps identified and appropriate remedial actions agreed. Support the business in developing and executing appropriate monitoring plans for these risks.

·       Provide SME input into risk reductions initiatives and support BIRO delivery of these initiatives by supporting programme management, reporting & governance activities for initiatives. Support the business by ensuring business owned risk reduction activities are robust and sustainable.

·       Be responsible for providing Business and WCCO management with a view of their information risk landscape through appropriate assessment of technology, Information Security and cyber issues across the front-to-back businesses, reviewing the external risk landscape, available metrics and providing timely updates, and for re-visiting these assessments periodically to ensure ongoing relevance. 

·       Be responsible for undertaking deep dives of cyber and information technology issues, as directed by the Chief Control Officer and Lead BIRO, recommending and delivering practical remediation activities. 

·       Develop relationships with Resilience Risk, and other 2LOD functions as required, ensuring 2LoD observations are understood and where required, remediation plans are in place and remediation is appropriately tracked and reported.

·       Understand the impact of, and advise on related risk categories such as Third Party Risk.   

Solicitud

  • Technical Skill Requirements

    ·       Strong understanding of information security, technology & cyber risks and potential mitigating actions, industry / good practices and related risk/control frameworks

    ·       Good understanding of technology and information security risk/control disciplines

     

    Educational Requirements

    ·       Information Security certifications e.g. CISA, CISM, CRISC, ISO27001, etc. will be an advantage

    ·       Scholarship in Information Technology, Computing Science, Informatics, Business Management

     

    Personal Skill Requirements

    ·       Excellent written communication, research and analytical skills

    ·       Ability to work autonomously

    ·       Ability to work across regions, and build relationships with stakeholders globally

    Experience 

    ·       Minimum 5 years’ experience in the information risk / information security space, at least some of which should have been Banking.

    ·       Minimum 4-6 years of risk & control experience – e.g. 2LOD / 1LOD operational risk, information security risk, audit with a focus on information security / information risk.

    ·       Performance of risk and controls assessments related to information technology and information security.

    At HSBC we offer our colleagues a greater number of days, so that they can fully enjoy their wedding, take care of the new member of the family, or grieve the loss of a family member. Our paid leave package is at the forefront in Mexico, now you have one more reason to be HSBC and proudly live a culture of well-being, balance and care.

    HSBC is an equal opportunity employer committed to building a culture where all employees are valued, respected and opinions count. We take pride in providing a workplace that fosters continuous professional development, flexible working and, opportunities to grow within an inclusive and diverse environment. We encourage applications from all suitably qualified persons irrespective of, but not limited to, their gender or genetic information, sexual orientation, ethnicity, religion, social status, medical care leave requirements, political affiliation, people with disabilities, color, national origin, veteran status, etc., We consider all applications based on merit and suitability to the role.

    Personal data held by the Bank relating to employment applications will be used in accordance with our Privacy Statement, which is available on our website.

     
    ***Issued By HSBC Electronic Data Process Mexico Private LTD***

     

Refer code: 983588. HSBC - El día anterior - 2023-12-27 22:52

HSBC

México

Compartir trabajos con amigos