Established in 1912, Bank of China is one of the largest banks in the world, with over $3 trillion in assets and a footprint that spans more than 60 countries and regions. Our long-term outlook, institutional weight and global breadth provide our clients with a stable and reliable financial partner, whether in Corporate or Personal Banking or our Trade Services, Commodities, Financial Institutions and Global Markets lines of business.
This incumbent will provide Security Services and Cyber Defense functions as required to fulfill the Bank's information security program requirements. This incumbent will provide support to Security Architecture, Security Engineering, Security Operations, Identity & Access Management, Threat Management, Vulnerability Management and Penetration Testing functions.
Security Architecture, Security Engineering & Security Operations (45%)
Threat Management, Vulnerability Management & Penetration Testing (45%)
Bachelor’s degree in business, Computer Science, Management Information Systems, Engineering, Mathematics, or related field is required.
Minimum 1 year of work experience in Information security, cybersecurity, vulnerability management, security architecture, network, security tools and computer systems administration, risk management.
Good understanding of regulatory requirements including FFIEC, GLBA, NIST.
Knowledge of Information security and cyber security best practices.
Knowledge of systems administration such as Windows Server, Active Directory management, Firewall, UNIX system, network architectures, etc.
Knowledge of security tools such as SIEM, DLP, XDR, EDR, Web Filter etc.
Good understanding of protocol behaviors, validity of identified vulnerabilities.
Actual salary is commensurate with candidate’s relevant years of experience, skillset, education and other qualifications.