Threat Hunter (gco)

Sheffield, United Kingdom

Job Description


Job description

Job Title: Threat Hunter

Big Bank Funding. FinTech Thinking.

Our technology teams in the UK work closely with HSBC\xe2\x80\x99s global businesses to help design and build digital services that allow our millions of customers around the world, to bank quickly, simply and securely. We also run and manage our IT infrastructure, data centres and core banking systems that power the world\xe2\x80\x99s leading international bank.

Our multi-disciplined teams include: DevOps engineers, IT architects, front and back end developers, infrastructure specialists, cyber experts, as well as project and programme managers.

Role Description:

Sitting within the Monitoring and Threat Detection sub-function, the \xe2\x80\x98Cybersecurity Threat Hunter\xe2\x80\x99 role is primarily charged with proactively searching through the HSBC global estate for evidence of malicious activities in our systems and on our networks and finding ways to illuminate behaviours that have managed to evade current defences. Rather than relying primarily on static indicators and reacting to automatic rules and alerts, the Threat Hunter uses a deep knowledge of internal defences, cyber-security expertise and the latest cyber-threat intelligence to develop hypotheses and anticipate how those attackers will seek to bypass existing controls to continuously improve our cyber-defences.

Responsibilities:

\xc2\xb7 Hunting for malicious or anomalous activity across the enterprise, using the various cybersecurity tools, platforms and capabilities available. Acting in co-ordination with GCO staff to lead the development and implementation of an advanced analysis and search capability focused on identifying potentially sophisticated APT and insider threat activities within the organisation.

\xc2\xb7 Leveraging a \xe2\x80\x98cyber intelligence led approach\xe2\x80\x99 to researching new and existing threat actors and associated tactics, techniques and procedures (TTPs); developing a detailed understanding of their potential impact to the organisation, providing, developing and implementing recommended solutions for improving our defensive and detective capability.

\xc2\xb7 Collaboration with Cybersecurity functions, e.g. Red Team, Cyber-threat Intelligence to develop hypotheses for the detection and/or presence of new attack techniques and evasion methods.

\xc2\xb7 Coordinating threat hunting activities, leveraging intelligence from multiple internal and external sources.

\xc2\xb7 Reviewing incident and penetration testing reports and corresponding logs, to identify gaps in our detection capability and provide recommendations to improve them.

\xc2\xb7 Providing expert analytic investigative support on large scale and complex security incidents.

\xc2\xb7 Contributing to the continued evolution of hunting, monitoring, detection, analysis and response capabilities and processes

\xc2\xb7 Training, mentoring and inspiring colleagues across the function and strengthening Cybersecurity Operations capabilities.

Requirements

Essential Skillset/Experience:

\xc2\xb7 Excellent investigative skills, instinctive and creative, with an ability to think like the enemy

\xc2\xb7 Strong problem-solving and trouble-shooting skills

\xc2\xb7 Deep knowledge of hacker culture

\xc2\xb7 Developed external peer network for sharing intelligence

\xc2\xb7 Excellent understanding of cyber security principles, global financial services business models, regional compliance regulations and laws.

\xc2\xb7 Excellent understanding and knowledge of common industry cyber security frameworks, standards and methodologies, including; OWASP, ISO2700x series, PCI DSS, GLBA, EU data security and privacy acts, FFIEC guidelines, CIS and NIST standards.

\xc2\xb7 Highest level of technical expertise in information security, including deep familiarity with relevant penetration and intrusion techniques and attack vectors

\xc2\xb7 Expert level knowledge and demonstrated experience of common intelligence sharing platforms / protocols and experiencing operating within a collective defence environment with internal stakeholders and external partners.

\xc2\xb7 Expert level knowledge of common enterprise technology infrastructure, platforms and tooling, including; Windows, Linux, infrastructure management and networking hardware.

The role will be based in Sheffield and will require you to go into the office 1 or 2 days a week. This role supports Hybrid working.

Come Power a Business that Defines How to Power the World

HSBC is committed to being an inclusive employer and providing an inclusive and accessible recruitment process for all. We will provide reasonable adjustments to remove any disadvantage to you being considered for this role. We are proud members of the Disability Confident Scheme, and will offer an interview to disabled candidates who meet the minimum criteria for the role. If you would like to receive any information in a different way or would like us to do anything differently to help you apply for our roles, please contact our Recruitment Helpdesk:

Email:

Telephone: +44 2078328500.

Within the workplace you will have access to various employee resource groups which aim to promote and achieve a healthy work / life balance and support our diversity ambitions. HSBC has processes in place to avoid nepotism. This means we will avoid circumstances in which the appearance or possibility of conflicts of interest may exist within the hiring process.\xe2\x80\x9d

We want everyone to be able to fulfil their potential which is why we provide a range of flexible working arrangements and family friendly policies.

As an HSBC employee in the UK, you will have access to tailored professional development opportunities and a competitive pay and benefits package. This includes private healthcare for all UK-based employees, enhanced maternity and adoption pay and support when you return to work, and a contributory pension scheme with a generous employer contribution.

Personal data held by the Bank relating to employment applications will be used in accordance with our Privacy Statement, which is available on our website.

HSBC

Beware of fraud agents! do not pay money to get a job

MNCJobs.co.uk will not be responsible for any payment made to a third-party. All Terms of Use are applicable.


Job Detail

  • Job Id
    JD3000834
  • Industry
    Not mentioned
  • Total Positions
    1
  • Job Type:
    Full Time
  • Salary:
    Not mentioned
  • Employment Status
    Permanent
  • Job Location
    Sheffield, United Kingdom
  • Education
    Not mentioned