Develop and implement comprehensive strategies for endpoint protection and threat configuration aligned with the overarching cyber defence goals.
Drive innovative approaches in threat intelligence, incident response, and preventive measures, ensuring they align with business objectives.
Collaborate with executive leadership to integrate cutting-edge technologies and proactive methodologies within the endpoint security framework.
**Business
- Define and communicate the business impact of endpoint security posture, both in risk mitigation and business continuity.
- Implement frameworks for secure business operations, ensuring that security measures complement and enable seamless business activities.
- Regularly assess and communicate the business value and ROI of endpoint security investments.
**Processes:**
- Oversee the development and enhancement of robust processes for endpoint protection, incident response, and threat configuration.
- Establish and optimize procedures for continuous monitoring, analysis, and adaptation to evolving cyber threats.
- Streamline and automate processes to enhance efficiency while maintaining the highest level of security standards.
**People and Talents:**
- Foster a culture of excellence, mentorship, and continuous learning within the team.
- Attract, retain, and develop top-tier talent in the field of endpoint security, ensuring a diverse and skilled workforce.
- Cultivate a collaborative and inclusive environment to maximize team productivity and effectiveness.
- Lead through example and build the appropriate culture and values. Set appropriate tone and expectations from their team and work in collaboration with risk and control partners.
- Ensure the provision of ongoing training and development of people and ensure that holders of all critical functions are suitably skilled and qualified for their roles ensuring that they have effective supervision in place to mitigate any risks.
- Employ, engage and retain high quality people, with succession planning for critical roles.
- Responsibility to review team structure/capacity plans.
- Set and monitor job descriptions and objectives for direct reports and provide feedback and rewards in line with their performance against those responsibilities and objectives.
**Risk Management:**
- Identify and evaluate emerging cyber threats, and strategize for proactive risk mitigation.
- Implement and oversee risk management protocols to minimize potential vulnerabilities.
- Regularly assess the risk landscape and adapt strategies to address new and existing threats.
**Governance:**
- Enforce and maintain governance protocols to ensure adherence to the highest security standards.
- Oversee the compliance and alignment of endpoint security with industry standards and best practices.
- Establish governance frameworks to manage security policies, procedures, and controls effectively.
- responsible for assessing the effectiveness of the Group\'s arrangements to deliver effective governance, oversight and controls in the business and, if necessary, oversee changes in these areas
- Awareness and understanding of the regulatory framework, in which the Group operates, and the regulatory requirements and expectations relevant to the role.
**Regulatory & Business Conduct:**
Ensure compliance with regulatory requirements and industry standards, managing audits and certifications related to endpoint security.
Advise on regulatory changes impacting endpoint security and lead adaptations accordingly.
Uphold ethical conduct and adherence to all applicable laws and regulations in the implementation and management of endpoint security strategies.
This role demands a strategic visionary with a strong understanding of both technology and business, capable of leading and driving change in the ever-evolving landscape of cybersecurity, particularly in the realm of endpoint protection and threat configuration within a tier-one banking institution.
Display exemplary conduct and live by the
. * Take personal responsibility for embedding the highest standards of ethics, including regulatory and business conduct, across Standard Chartered Bank. This includes understanding and ensuring compliance with, in letter and spirit, all applicable laws, regulations, guidelines and the Group Code of Conduct.
Effectively and collaboratively identify, escalate, mitigate and resolve risk, conduct and compliance matters.
Lead the [country / business unit / function/[team] to achieve the outcomes set out in the Bank\xe2\x80\x99s Conduct Principles: [Fair Outcomes for Clients; Effective Financial Markets; Financial Crime Compliance; The Right Environment.]
Key stakeholders
This role necessitates close collaboration with essential stakeholders, including Microsoft for cutting-edge endpoint security technologies, enterprise technology teams to align strategies, network security units for a unified approach, cyber defence teams for a holistic defence strategy, security monitoring and analytics teams for real-time threat analysis, cloud platform teams for secure cloud operations, and risk management 2nd and 3rd line of defence. Effective coordination with these stakeholders is critical in ensuring a cohesive, robust, and holistic approach to endpoint protection and threat configuration within the bank\'s cyber defence operations.
Other Responsibilities
Embed Here for good and Group\xe2\x80\x99s brand and values in [MY/IN/PL / Cyber security / Cyber defence and ops technology]; Perform other responsibilities assigned under Group, Country, Business or Functional policies and procedures; Multiple functions (double hats); [Additional duties entail: outlining the strategy for malware protection across various channels\xe2\x80\x94such as endpoint, email, and online platforms\xe2\x80\x94and driving the execution of transformative initiatives. Developing and establishing a governance structure equipped with metrics and assurance processes. Defining the governance framework for network security and actively monitoring for any potential gaps. Planning and implementing firewall governance processes across the bank\'s entire estate.]
Our Ideal Candidate
Qualifications
Training, licenses, memberships and certifications
Academic or Professional Qualifications:** A relevant bachelor\xe2\x80\x99s or master\xe2\x80\x99s degree in Cyber Security, Information Technology, Computer Science, or a related field.
Licenses and Certifications:** Preferred certifications such as Certified Information Systems Security Professional (CISSP), Certified Ethical Hacker (CEH), Certified Information Security Manager (CISM), or other industry-recognized certifications in cyber security.
Professional Memberships:** Membership in professional bodies or associations related to cyber security and information technology, such as (ISC)\xc2\xb2, ISACA, or other relevant organizations.
specific training or certifications related to banking compliance, regulations, or security protocols specific to the banking sector.
Language Skills:** Proficiency in English, with additional language skills considered a plus, particularly if operating within a multi-national or multi-cultural environment.
The ideal candidate should possess a strong academic or professional background, along with relevant certifications and memberships within the cyber security domain. Specific training related to banking compliance and regulations, as well as linguistic abilities, are also beneficial for this role, particularly within a diverse and global banking environment
Role Specific Technical Competencies
Product management
Malware analysis
Cloud security
Risk management
Security architecture
SRE
About Standard Chartered
We\'re an international bank, nimble enough to act, big enough for impact. For more than 160 years, we\'ve worked to make a positive difference for our clients, communities, and each other. We question the status quo, love a challenge and enjoy finding new opportunities to grow and do better than before. If you\'re looking for a career with purpose and you want to work for a bank making a difference, we want to hear from you. You can count on us to celebrate your unique talents. And we can\'t wait to see the talents you can bring us. Our purpose, to drive commerce and prosperity through our unique diversity, together with our brand promise, to be here for good are achieved by how we each live our valued behaviours. When you work with us, you\'ll see how we value difference and advocate inclusion. Together we:
\xc2\xb7 Do the right thing and are assertive, challenge one another, and live with integrity, while putting the client at the heart of what we do
\xc2\xb7 Never settle, continuously striving to improve and innovate, keeping things simple and learning from doing well, and not so well
\xc2\xb7 Be better together, we can be ourselves, be inclusive, see more good in others, and work collectively to build for the long term
In line with our Fair Pay Charter, we offer a competitive salary and benefits to support your mental, physical, financial and social wellbeing.
\xc2\xb7 Core bank funding for retirement savings, medical and life insurance, with flexible and voluntary benefits available in some locations
\xc2\xb7 Time-off including annual, parental/maternity (20 weeks), sabbatical (12 weeks maximum) and volunteering leave (3 days), along with minimum global standards for annual and public holiday, which is combined to 30 days minimum
\xc2\xb7 Flexible working options based around home and office locations, with flexible working patterns
\xc2\xb7 Proactive wellbeing support through Unmind, a market-leading digital wellbeing platform, development courses for resilience and other human skills, global Employee Assistance Programme, sick leave, mental health first-aiders and all sorts of self-help toolkits
\xc2\xb7 A continuous learning culture to support your growth, with opportunities to reskill and upskill and access to physical, virtual and digital learning
\xc2\xb7 Being part of an inclusive and values driven organisation, one that embraces and celebrates our unique diversity, across our teams, business functions and geographies - everyone feels respected and can realise their full potential.
Recruitment assessments - some of our roles use assessments to help us understand how suitable you are for the role you\'ve applied to. If you are invited to take an assessment, this is great news. It means your application has progressed to an important stage of our recruitment process.