16 Aug
|
Bank Of America
|
New South Wales
16 Aug
Bank Of America
New South Wales
Overview
Bank of America is committed to building a culture of care and inclusion. The Global Information Security (GIS) team protects bank information systems, confidential data, and customer information. Within GIS, the Cyber Security Defense (CSD) team focuses on protecting the bank by maintaining end‑to‑end security controls.
The CSD Information Security Threat Management team seeks to reduce risk through application‑layer intrusion detection, prevention, and response. As a senior team member, you will lead application security detection and response practices while collaborating with other security groups.
The team operates in a follow‑the‑sun model across Australia, Singapore, the United Kingdom and the United States. Mandatory onboarding duty and after‑hours work are part of the role, rotating approximately once every two months.
Responsibilities
- Analyze application layer alerts, conduct investigations, respond to disrupt malicious actions of threat actors and provide feedback to improve defensive capabilities.
- Leverage advanced investigative skills using data correlation and network/packet analysis tools to investigate incidents.
- Provide leadership in assessing new threat vectors and leveraging intelligence to update existing controls, design recent controls, and test and deploy those controls.
- Develop and implement custom alerts and dashboards monitoring controls based on OSI layer 7 attack and threat indicators.
- Mentor and develop the skill sets of less experienced team members.
- Develop and implement processes or controls in support of audit, compliance and risk requirements.
- Partner with senior leaders of business organizations to triage security events and report on impact.
- Execute and improve relevant risk management strategies.
Required Skills
- Strong hands‑on experience in application security detection and response technologies and processes.
- Understanding of common exploits, web application attacks, network protocols and infrastructure/application logs for efficient intrusion analysis.
- Advanced log analysis skills using SIEM solutions such as Splunk to find targeted attacks and conduct hunting exercises.
- Experience maintaining and fine‑tuning signatures on WAFs from leading vendors such as FE (ASM) and Akamai.
- Comfortable with scripting languages and regular expressions.
- Knowledge of common operating systems (Windows, Linux, OS X).
- Experience with packet captures and analysis using Wireshark is desirable.
- Self‑motivated to work independently in a rapid‑paced environment and drive continuous improvement.
- Relevant technical certifications (e.g., SANS, CISSP) desirable.
- Excellent verbal and written communication skills, able to adapt messages to various audiences.
#J-18808-Ljbffr
📌 Assistant Vice President / Vice President, Information Security Threat Management Specialist (A[...] (New South Wales)
🏢 Bank Of America
📍 New South Wales