Oferta pracy

Thank you for interest in HSBC. . Before you apply, please note that we will take into the consideration only applications that include the following statement: . “I hereby declare that I have familiarised myself with the Privacy Statement for Applicants published at http://www.about.hsbc.pl/careers and I give my consent to use my personal data included in my application for the purposes of recruitment in HSBC Service Delivery (Polska) Sp. z o. o. according to the rules described in the Privacy Statement for Applicants, as per the Regulation (EU) 2016/679 of the European Parliament and of the Council of 27 April 2016 on the protection of natural persons with regard to the processing of personal data and on the free movement of such data, and repealing Directive 95/46/EC (GDPR).” . Due to the high number of applications, we reserve the right to contact selected candidates only. . In case you would like to resign from participation in the recruitment process or withdraw previously sent application, please email us at: [email protected]
Oferta z szybkim aplikowaniem 
co to?
Na oferty z aktywnym „Aplikuj szybko” zaaplikujesz jednym kliknięciem. Korzystają one z danych używanych przez Ciebie przy ostatnim aplikowaniu. Jeśli jeszcze tego nie robiłaś/eś, nie przejmuj się. Za pierwszym razem trafisz na pełny formularz aplikowania.

(CCO) IT and Third Party Controls Testing – Senior Manager

HSBC Service Delivery (Polska) Sp. z o.o.About the company

  • Kapelanka 42a, Kraków
    Kraków, Lesser Poland
  • Valid for 25 days
    until: 11 Jul 2021
  • Remote recruitment
  • contract of employment
  • full-time
  • manager / supervisor

HSBC Service Delivery (Polska) Sp. z o.o.

Kapelanka 42a


Your responsibilities

  • This role provides strategic support to the Global Businesses and Functions in the oversight of key third party relationships in order to strengthen risk management

  • This support includes the identification and ongoing review of key controls operated by these third parties, as captured in their service auditor control reports

  • As part of the role you will be required to work effectively with key stakeholders: Third Party Engagement Managers (TPEM), Third Party Risk Officers (TPRO), SOX Process Owners and Control Owners

  • Prior knowledge of service auditor reporting standards (SSAE18/ ISAE3402) and experience in reviewing these reports to assess financial reporting impact is essential

  • In addition, this role will provide support to the wider IT control testing team by leading control testing reviews.

  • Knowledge of IT General Computer controls and third party controls is required, including an understanding of operational risks impacted by third parties.

  • Support the delivery of the annual plan, highlighting gaps and control deficiencies in SOX third parties that could have an impact on financial reporting

  • Raising awareness and understanding of OSP risks and controls

  • Delivering reviews and creating risk assessments in conjunction with technology and businesses where deficient third party controls are identified

  • Working closely with TPEMs to understand changes in third party control environments, including remediation of control deficiencies identified

  • Supporting the SOX Internal Control Certificate (ICC) bi-annual process required by all Businesses and Functions where there are dependencies on OSPs

Our requirements

  • Demonstrable knowledge in Technology operational risk management, internal control, or internal audit preferably within Financial Services

  • Experience of service auditor reporting standards (SSAE18/ ISAE3402) and reviewing these reports of third party vendors

  • Knowledge of IT General Computer controls and third party management controls are essential to this role

  • Experience with control testing especially in IT area

  • Understanding of operational risks impacted by third party vendors

  • Proven project management experience

  • Strong communication and interpersonal skills to a wide range of individuals and groups and at different levels of seniority

  • Self-starter and effective collaborator

  • Innovative and able to assess needs and propose solutions

  • Excellent time management skills

  • Ability to influence without direct management authority

  • Good understanding and or experience in the following: Risk Management


  • Risk qualification CRISC, ACA, ACCA, CISM, CISA, CISSP or equivalent

  • Benefits

  • sharing the costs of sports activities

  • private medical care

  • sharing the costs of foreign language classes

  • sharing the costs of professional training & courses

  • life insurance

  • remote work opportunities

  • flexible working time

  • integration events

  • corporate sports team

  • doctor’s duty hours in the office

  • retirement pension plan

  • corporate library

  • no dress code

  • video games at work

  • coffee / tea

  • parking space for employees

  • leisure zone

  • extra social benefits

  • employee referral program

  • opportunity to obtain permits and licenses

  • charity initiatives

  • family picnics

  • extra leave

Recruitment stages

Phone interview


Online assessment


Zoom interview


Welcome to HSBC!

HSBC Service Delivery (Polska) Sp. z o.o.

HSBC is one of the world’s largest banking and financial services organisations. Our global businesses serve more than 40 million customers worldwide through a network that covers 64 countries and territories.

HSBC Service Delivery (Polska) Sp. z o.o. is HSBC's global finance, operations, risk and technology centre. We use our unique expertise and capabilities to provide specialised services – our people range from technologists transforming the banking experience to operations professionals managing 1.7 trillion payments a year.

Our Purpose – Opening up a world of opportunity – explains why we exist. We are bringing together the people, ideas and capital that nurture progress and growth, helping to create a better world – for our customers, our people, our investors, our communities and the planet we all share.

Scroll to the company’s profile
This is how we work
This is how we work