As a Cyber Defence & Fusion Centre Lead you\'d be able to work on and solve some of the many interesting challenges we are facing, learn new ways of working, and build delightful high-quality products
Responsibilities:
Defining an appropriate control and event monitoring strategy and operational framework, integrating existing frameworks and capabilities available in the group where relevant
Managing the Managed Security Service Provider in charge of SIEM engineering and L1/L2 monitoring, to review and maintain effective SLAs and SLIs
Building, testing and maintaining the effectiveness of cybersecurity and incident response playbooks
Working closely with Product squads, Application Security and End-user Computing to ensure threat models are established and maintained, deriving adequate control plans adapted to each business context
Collaborating closely with business stakeholders to improve persona-based risk identification, tune custom monitoring and improve insider threat anomaly detection
Develop synergies with the Group\'s counterpart to enable the maximum of capabilities and consolidate reporting frameworks
Providing meaningful metrics and dashboards to product owners and control functions to facilitate the risk-based decision-making through quantification
Defining and developing Fusion Center capabilities with a focus on fraud prevention synergies and risk analytics
Working with Offensive Security team to ensure the result of intrusion tests and bug bounties positively improve our capacity to detect and respond to flaws and attacks
Developing and growing a team of talented engineers and analysts to support the delivery of our Bank\'s exciting customer services and the above outcomes
Requirements:
10+ years of relevant experience, with a blend on operational analysis, incident response and vendor management
Hands-on expertise to build and support the operational objective of faster-growing
Has in depth experience of building and running security operation centers and fusion centers, ideally with a good grasp of threats and requirements specific to Banking
Self-driven can articulate the risk of missing controls to all levels of executives
Solid experience in control effectiveness assessment frameworks such as MITRE ATT&CK
Collaborative, with a vision of how to work with developers to embed immutability, anomaly detection, forensics and normal-state resumption in the fabric of the application
Ideally, has experience working in supporting regulated payment services such as the payment industry & banking, or e-commerce services
Experienced in monitoring, incident response and forensics in cloud environments
If you are interested in this position, please click "Apply Now" and we will review your qualifications & reach out to you for further discussion & next steps.
Only shortlisted candidates will be responded to, therefore if you do not receive a response within 14 days please accept this as notification that you have not been shortlisted. EA Licence No: 11C5502 Registration No: R1876903
eFinancialCareers
Beware of fraud agents! do not pay money to get a job
MNCJobz.com will not be responsible for any payment made to a third-party. All Terms of Use are applicable.