Pracodawca zakończył zbieranie zgłoszeń na tę ofertę

(Cybersecurity Operations) Information Protection Incident Manager (GCO)

HSBC Service Delivery (Polska) Sp. z o.o.

  • Kapelanka 42a, Dębniki, Kraków
    Kraków, Lesser Poland
  • offer expired 3 months ago
  • contract of employment
  • full-time
  • specialist (Mid / Regular)
  • hybrid work
  • remote recruitment
  • запрошуємо працівників з України
Запрошуємо працівників з України
Роботодавець відкритий для працевлаштування громадян України

HSBC Service Delivery (Polska) Sp. z o.o.

Kapelanka 42a



Technologies we use


  • Azure

  • AWS

  • Android

  • Google

Operating system

About the project

Global Cybersecurity Operations (GCO) provides a coordinated suite of “Information & Network Defence” services responsible for detecting and responding to information and cybersecurity threats to HSBC assets across the globe and is under the management of the Head of Global Cybersecurity Operations. This includes dedicated functions for the Monitoring and Detection of threats within the global estate as well as Cybersecurity Incident Management and Response activities. These two principal functions are supported by additional internal GCO capabilities in; Cyber Intelligence and Threat Analysis, Security Sciences and Client Engagement and Support Services. Critical to the success of GCO is it close partnership with sister Cybersecurity teams, IT Infrastructure Delivery, and Global Business and Function clients. The overall GCO mission is placed under the purview of the Group Chief Information Security Officer (CISO). The Information Protection Team (IPT) will act as a strategic response function across the Group on a 24x7x365 basis where existing Information Security controls fail. This function is charged with efficiently and effectively handling Data related incidents resulting from high severity events and confirmed incidents. The objective is to ensure containment of the issue whilst maintaining close liaison with relevant internal and external parties ensuring an effective risk treatment plan is in place. This mission is critical to the protection of HSBC customers, the HSBC brand, shareholder value as well as HSBC information and financial assets.

Your responsibilities

  • Managing the response to Data Breach events and incidents across the globe, taking responsibility for the timely mitigation of data related risks and cyber-threats.

  • Coordinating the actions of multiple business units during the response to Data Breach events and incidents.

  • Providing timely and relevant updates to appropriate stakeholders and decision makers during data loss incidents.

  • Cultivating close working relationships with regional Data Protection Officers, Cybersecurity leads, Business Information Risk Officers (BIROs) and Risk Managers whose support and knowledge are vital in delivering the remediation of security data incidents.

  • Maintaining a strong awareness of regulatory trends, legislation and industry best practice.

  • Triaging potential Data Breach events.

  • Adhering to any defined SLA’s.

  • Following detailed processes and procedures to analyse, respond to and/or escalate Data Breaches.

  • Supporting information security incidents through to eradication and feedback lessons learned, in to improved cyber resilience.

  • Identifying and developing new ideas to enhance our detection capability (Use cases) and mitigations (Playbooks).

  • Reviewing and validating new Use Cases and Playbooks.

  • Supporting handovers to other teams and countries at the start and end of the working shift.

  • Collaborating with the wider Cybersecurity (and IT) teams.

  • Identifying processes that can be automated and orchestrated to ensure maximum efficiency.

  • Supporting engagement in support of HSBC Global Businesses and Functions to drive a global up-lift in cyber-security and information protection awareness.

Our requirements

  • Good investigative skills and insatiable curiosity.

  • Instinctive and creative, with an ability to think like the enemy.

  • Strong problem-solving and trouble-shooting skills.

  • Strong communication and interpersonal skills, with proven ability to communicate technical topics to diverse audiences.

  • Strong decision-making capabilities, with a proven ability to weigh the relative costs and benefits of potential actions and identify the most appropriate one.

  • Ability to learn quickly through hands on experience.

  • Experience defining and refining operational procedures, workflows and processes to support the team.

  • An understanding of business needs and commitment to delivering high-quality, prompt and efficient service to the business.

  • An understanding of organisational mission, values and goals and consistent application of this knowledge.

  • Self-motivated and possessing of a high sense of urgency and personal integrity.

  • Highest ethical standards and values.

  • Knowledge of cyber security principles, global financial services business models, regional compliance regulations and laws.

  • Good understanding and knowledge of common industry cyber security frameworks, standards and methodologies, including; ISO2700x series, PCI DSS, GLBA, EU data security and privacy acts, FFIEC guidelines, CIS and NIST standards.

  • Ability to speak, read and write in English, in addition to your local language.

  • Good level knowledge of GDPR requirements and regulations.

  • Understanding of common operating systems and platforms.

  • Understanding of 3rd party cloud computing platforms such as AWS, Azure and Google.

  • Understanding of common mobile platforms, such as Blackberry, iOS, Android and Windows.

  • Knowledge and understanding of the thought processes, methodologies (Tactics, Techniques & Procedures) used by advanced adversaries, including criminal and nation state adversaries, spanning multiple aspects of the security domain.

  • Knowledge of common log management suites, Security Information and Event Management (SIEM) tools, use of “Big Data” and Cloudbased solution for the collection and real-time analysis of security information.

  • Ability to produce key performance indicator (KPI) metrics for accurate and contextual evaluation of operational effectiveness as well as providing recommendations for control improvement and mitigating control adjustments.


  • Industry recognised cyber security related certifications including; CEH, EnCE, SANS GLEG, GSEC, GCIH, GCIA and/or CISSP.

  • Formal education and advanced degree in Information Security, Cyber-security, Computer Science or similar and/or commensurate demonstrated work experience in the same

What we offer

  • Stable job in professional team,

  • Interesting path of career in an international organization,

  • Consistent scope of responsibilities,

  • Private health care, employees’ benefits.


  • sharing the costs of sports activities

  • private medical care

  • sharing the costs of foreign language classes

  • sharing the costs of professional training & courses

  • life insurance

  • remote work opportunities

  • flexible working time

  • integration events

  • corporate sports team

  • doctor’s duty hours in the office

  • retirement pension plan

  • corporate library

  • no dress code

  • video games at work

  • coffee / tea

  • parking space for employees

  • leisure zone

  • extra social benefits

  • employee referral program

  • opportunity to obtain permits and licenses

  • charity initiatives

  • family picnics

  • extra leave

Recruitment stages

Online assessment


Phone interview


Zoom interview


Welcome to HSBC!

HSBC Service Delivery (Polska) Sp. z o.o.

HSBC is one of the world’s largest banking and financial services organisations. Our global businesses serve more than 40 million customers worldwide through a network that covers 63 countries and territories.

HSBC Service Delivery (Polska) Sp. z o.o. is HSBC's global finance, operations, risk and technology centre. We use our unique expertise and capabilities to provide specialised services – our people range from technologists transforming the banking experience to operations professionals managing 1.7 trillion payments a year.

Our Purpose – Opening up a world of opportunity – explains why we exist. We are bringing together the people, ideas and capital that nurture progress and growth, helping to create a better world – for our customers, our people, our investors, our communities and the planet we all share.

Scroll to the company’s profile