Join us as a Security Assessment Analyst. What you'll do
This key role will see you working with the domain lead to define the product backlog and analyze a broad range of security information. You’ll help the wider bank ensure a robust security environment across our centres of excellence and domains. We’ll look to you to develop appropriate security strategies by understanding the needs and demands of the customer and business, while making sure that organizational system health and security are maintained and improved where possible. Acting as the interface with security experts when needed. Enabling a culture of continuous improvement, promoting the benefits of security and working closely with teams to reinforce the robustness of the domain. Analyzing business requirements, technical solutions or processes to identify security-related risks and providing guidance on how they can be managed effectively. Making sure that decisions made are based on robust data, return on investment and value measures that demonstrate thoughtful and intelligent cost management. Building relationships with colleagues across the bank to ensure decisions are commercially focused and create long-term value for the organization. The skills you'll need
You’ll need the ability to perform security assessments of internal and external Information Security Threat environments, including applications, infrastructure and business units. You’ll also need in-depth Information Security experience in order to understand and advise on identification and management of Information Security risks and mitigation in relation to technical infrastructure and applications. Understanding, prioritizing, and assisting with developing and implementing solutions for Functions and Franchises to reduce and close Security gaps between risk appetite and current risk position based on understanding of regional regulatory requirements to support compliance across the region. Knowledge of networking and associated infrastructure components. Knowledge and experience on cloud platforms AWS, Azure, and GCP. Knowledge and experience with vulnerability tools such as Qualys, AWS Security Hub, and Gitlab.
#J-18808-Ljbffr