SI&O Business Analyst (GCO)

Sheffield, South Yorkshire, United Kingdom, United Kingdom
Competitive salary
21 Jun 2021
07 Jul 2021
Job role
Business analyst, CFO
SI&O Business Analyst (GCO)

Big Bank Funding. FinTech Thinking.

Our technology teams in the UK work closely with HSBC's global businesses to help design and build digital services that allow our millions of customers around the world, to bank quickly, simply and securely. We also run and manage our IT infrastructure, data centres and core banking systems that power the world's leading international bank.

Our multi-disciplined teams include: DevOps engineers, IT architects, front and back end developers, infrastructure specialists, cyber experts, as well as project and programme managers.

We work in small, agile DevOps teams with colleagues around the world from our offices at the Bluefin Building in Southwark, our global headquarters in Canary Wharf, and multiple other locations around the UK including Sheffield, Leeds, Barnsley and Birmingham.

Business area overview

Global Cybersecurity Operations (GCO) provides a coordinated suite of "Network Defense" services responsible for detecting and responding to information and cybersecurity threats to HSBC assets across the globe and is under the management of the Head of Global Cybersecurity Operations. This includes dedicated functions for the Monitoring and Detection of threats within the global estate as well as Cybersecurity Incident Management and Response activities. These two principal functions are supported by additional internal GCO capabilities in; Cyber Intelligence and Threat Analysis and Strategic Innovation and Operations. Critical to the success of GCO is its close partnership with Cybersecurity Engineering, IT Infrastructure Delivery, and Global Business and Function clients. The overall GCO mission is placed under the purview of the Group Chief Information Security Officer (CISO).

Cybersecurity Strategic Innovation and Operations (SI&O) are charged with managing change and innovation for the Cybersecurity Operations teams. The SI&O mission is to champion change and innovation, whilst ensuring a smooth operational transition. This involves working hand-in-hand with the operational teams and Cybersecurity Engineering, to understand the challenges and requirements, and engaging with internal HSBC functions, or external Vendors to address and resolve these. In addition, the team is responsible for the innovation process, including Proof-of-Concepts, Pilots and Vendor engagement, to gain a viability and impact assessment for GCO prior to deploying any technological change. Once the impact is understood, the SI&O team will be responsible for automation, content, technology and process integration into GCO and support projects on their route-to-live, ensuring that the GCO teams are prepared. The SI&O team will continue to support all content and automation delivered into production GCO environments under the BAU support process. This mission is critical to ensure minimal operational impact for the Operational Teams.

What you will be doing;

SI&O Business Analysts are responsible for leading requirements gathering from the GCO and wider Cybersecurity Teams to feed into the SI&O Team. The SI&O Business Analyst will work with the SI&O and DevSecOps Team to drive change, improvements and innovation, ensuring this meets the requirements, as well as supporting Projects from the proof-of-concept to route-to-live.

The primary responsibilities of the Business Analyst are:
  • Building relationships with the operational teams to understand the processes, procedures, control gaps and threats HSBC face.
  • Liaising between the operational teams and its partners to drive change and improvement initiatives that benefit all parties and align to the CISO vision.
  • Gathering and formalising requirements gathering from the GCO and Cybersecurity Teams.
  • Organising the DevSecOps backlog into manageable Sprints, ensuring that this is done in line with the priority of the requirements which have been gathered.
  • Ensuring the operational teams are prepared, and have the appropriate documentation and training needed to ensure a successful, uneventful go-live.
  • Identifying solutions to the problems and challenges raised by the operational teams; designing automation pipelines, processes and procedures.
  • Reviewing and quality assuring new automation pipelines, processes and procedures.
  • Prioritising improvement initiatives and projects, following agile methodology.
  • Conducting Operational Impact Assessments and planning deployments.
  • Acting as an engagement point into GCO for all 'change' requests from stakeholders and partners
  • Working with third parties and Cybersecurity Engineering to identify and productionise new features.
  • Training, developing and mentoring colleagues in area(s) of specialism.
  • Collaborating with the wider Cybersecurity (and IT) teams to ensure that the core, underlying technological capabilities that underpin an effective and efficient operational response to current and anticipated threats and trends remain fit for purpose.
  • Promoting a "self-critical" and continuous assessment and improvement culture whereby identification of weaknesses in the bank's control plane (people, process and technology) are brought to light and addressed in an effective and timely manner.
  • Supporting engagement in support of HSBC Global Businesses and Functions to drive a global up-lift in cyber-security awareness and help to evangelise HSBC Cybersecurity efforts and success.

What you will bring to the role;

To be successful in this role you should have proven experience within the Technology sector with knowledge of the following skills:


  • An enabler who drives change and improvement initiatives.
  • Practices the art of simplification.
  • Ability to listen and understand others challenges and drive solutions.
  • Ability to build strong internal and external relationships with a global team.
  • Instinctive and creative.
  • Strong problem-solving and trouble-shooting skills.
  • Strong communication and interpersonal skills, with proven ability to communicate business requirements to a technical team.
  • Strong decision-making capabilities, with a proven ability to weigh the relative costs and benefits of potential actions and identify the most appropriate one.
  • Ability to learn quickly through hands on experience.
  • Experience in documenting requirements from a diverse, global team.
  • Experience defining and refining operational procedures, workflows and processes to support the team in consistent, quality execution of monitoring and detection
  • An understanding of business needs and commitment to delivering high-quality, prompt and efficient service to the business.
  • An understanding of organisational mission, values and goals and consistent application of this knowledge.
  • Self-motivated and possessing of a high sense of urgency and personal integrity.
  • Highest ethical standards and values.
  • Knowledge of cyber security principles, global financial services business models, regional compliance regulations and laws.
  • Functional knowledge of common industry cyber security frameworks, standards and methodologies, including; OWASP, ISO2700x series, PCI DSS, GLBA, EU data security and privacy acts, FFIEC guidelines, CIS and NIST standards.
  • Ability to speak, read and write in English, in addition to your local language.

Technical Skills

  • Excellent knowledge and demonstrated experience working with complex cross domain or cross product designs.
  • Excellent knowledge of agile project methodology.
  • Excellent knowledge and demonstrated experience in managing change and deployments that impact a global team in an enterprise scale organisation.
  • Excellent knowledge and demonstrated experience in managing Sprints and using tracking tools such as Jira.
  • Good Knowledge and demonstrated experience of working on Cybersecurity related projects for an enterprise scale organisation.
  • Functional Knowledge of Security Automation, Orchestration and Response (SOAR) tools, common log management suites, Security Information and Event Management (SIEM) tools, use of "Big Data" and Cloud-based solution for the collection and real-time analysis of security information.
  • Functional knowledge and demonstrated experience in incident response tools, techniques and process for effective threat containment, mitigation and remediation.
  • Functional knowledge and technical experience of 3 rd party cloud computing platforms such as AWS, Azure and Google.

Industry Experience and Qualifications

Candidates will be evaluated primarily upon their ability to demonstrate the competencies required to be successful in the role, as described above. For reference, the typical work experience and educational background of candidates in this role are as follows:
  • Proven experience in a similar business analyst role
  • Experience within an enterprise scale organisation; including hands-on experience of complex data centre environments, preferably in the finance or similarly regulated sector
  • Formal project management qualifications such as Prince 2 or Agile
  • A bachelor's degree or equivalent work experience

This role will primarily be Sheffield based but some travel may be required.

Come Power a Business that Defines How to Power the World

As a business operating in markets all around the world, we believe diversity brings benefits for our customers, our business and our people. This is why HSBC is committed to being an inclusive employer and encourages applications from all suitably qualified applicants irrespective of ethnicity, religion, age, physical or mental disability/long term health condition, marital status, sexual orientation, gender identity, gender expression, genetic information (including characteristics and testing), military and veteran status, and any other characteristic protected by local law in the jurisdictions in which we operate.

Within the work place you will have access to various employee resource groups which aim to promote and achieve a healthy work / life balance and support our diversity ambitions.

HSBC has in place processes in order to avoid nepotism, which means to avoid creating circumstances in which the appearance or possibility of conflicts of interest may exist within the hiring process.

Personal data held by the Bank relating to employment applications will be used in accordance with our Privacy Statement, which is available on our website.

Similar jobs

Similar jobs