Control Owner - London, United Kingdom - HSBC

    HSBC
    Default job background
    Permanent - temps plein
    Description
    Control Owner - Secrets Management

    Join a digital first bank that's powered by people.

    Our technology team builds innovative digital solutions rapidly and at scale to deliver the next generation of banking services for our customers around the world.


    In our cybersecurity team you'll be helping to safeguard the financial system on which millions of people depend.

    You'll be making banking more secure by designing, implementing, and operating controls to manage cybersecurity risk.

    You'll help define HSBC Group cyber security standards, deliver Global Security Operations ad Threat management services, provide round-the-clock monitoring and security incident response services, and oversee Network/Application/Infrastructure Security.

    The work you do will provid3e assurance of the adequacy and effectiveness of security controls to Business Risk Owners.


    The role of the Head of Secrets Management is to develop, implement and monitor centralised Group IAM non-interactive authentication (, Secrets Management) controls.

    The ideal candidate will have a strong background in Information Security and IAM and be responsible for ensuring the protection of sensitive data and systems through effective secrets management control practices for at least the following:


    • Secrets storage and vaulting solutions
    • Creation of a Secure Identity Framework for non-interactive identities

    This includes assessing and reporting on the status of the HSBC IT estate's compliance to Secrets Management Policy, Standards, and Operational Risk Controls.

    As an HSBC employee in the UK, you will have access to tailored professional development opportunities and a competitive pay and benefits package.

    This includes private healthcare for all UK-based employees, enhanced maternity and adoption pay and support when you return to work, and a contributory pension scheme with a generous employer contribution.


    In this role you will:

    • Develop, implement, and maintain secrets management control policies and procedures to ensure the protection of sensitive data and systems and monitor secrets management control activities to ensure compliance with policies and procedures and report on this by introducing relevant Key Control Indicators (KCI's).
    • Collaborate (as the control SME) with cross functional teams, including Cybersecurity, IT, and business units, to ensure secrets management control strategies align with organisational goals and requirements.
    • Manage secrets management control lifecycle activities, including IT service change control eligibility and oversee the administration of secrets management control services, including remediation of non-compliance instances.
    • Stay current on industry trends and advancements in secrets management controls to identify opportunities for enhancement, automation, and innovation scanning the internal/external (regulatory and audit) requirements for the IAM function in relation to the secrets management control and ensuring that the policies and procedures are updated accordingly.
    • Develop and deliver training and awareness programs to educate stakeholders on secrets management control practices and responsibilities.
    Requirements
    To be successful in this role you should meet the following requirements:


    • Cyber Security and IAM experience on controls and experience in supporting IAM change initiatives to deliver successful control outcomes.
    • Advanced Excel skills essential.
    • Technical and architectural skills are desirable.
    • Demonstrated experience of making timely and rational decisions, based on relevant information
    • Role relevant qualifications, , CISSP/CISM/CISA is desirable.
    This role is based in London.

    Opening up a world of opportunity

    Being open to different points of view is important for our business and the communities we serve. At HSBC, we're dedicated to creating diverse and inclusive workplaces. Our recruitment processes are accessible to everyone -no matter their gender, ethnicity, disability, religion, sexual orientation, or age.

    We take pride in being part of the Disability Confident Scheme.

    This helps make sure you can be interviewed fairly if you have a disability, long term health condition, or are neurodiverse.


    If you'd like to apply for one of our roles and need adjustments made, please get in touch with our