Bank Of America

Information Security Exposure Management Specialist

Bank Of America
Chennai
Not disclosed
Work from OfficeWork from Office
Full TimeFull Time
Min. 4 yearsMin. 4 years

Job Description

Info Security Exposure Management Specialist I B

Job Description:

About Us

At Bank of America, we are guided by a common purpose to help make financial lives better through the power of every connection. We do this by driving Responsible Growth and delivering for our clients, teammates, communities and shareholders every day.

Being a Great Place to Work and providing a culture of caring is core to how we drive Responsible Growth. We are intentional about fostering an inclusive workplace where every teammate has the opportunity to succeed, build a career and contribute to our shared success. This includes attracting and developing exceptional talent, recognizing and rewarding performance, and supporting our teammates’ physical, emotional, and financial wellness through affordable, competitive and flexible benefits.

We value the unique perspectives individuals bring from all backgrounds and career paths - whether shaped by military service, community college education, or a wide range of work and life experiences. These journeys foster resilience, leadership and innovation, strengthening our workforce and positively impact the communities we serve.

Bank of America is committed to an in-office culture that supports collaboration, engagement, and career development. Our approach includes clear in-office expectations, while providing an appropriate level of flexibility based on role-specific responsibilities and business needs.

At Bank of America, you can build a successful career with opportunities to learn, grow, and make an impact. Join us!

Global Business Services

Global Business Services delivers Technology and Operations capabilities to Lines of Business and Staff Support Functions of Bank of America through a centrally managed, globally integrated delivery model and globally resilient operations.

Global Business Services is recognized for flawless execution, sound risk management, operational resiliency, operational excellence and innovation.

In India, we are present in five locations and operate as BA Continuum India Private Limited (BACI), a non-banking subsidiary of Bank of America Corporation and the operating company for India operations of Global Business Services.

Process Overview*

Global Information Security (GIS) is responsible for protecting Bank information systems, confidential and proprietary data and customer information. The team develops the Bank’s information security strategy and policy, manages the information security Program and identifies address vulnerabilities, develops, deploys and manages a risk based controls portfolio, manages and operates at global security operations center that monitors, detects and responds to Cyber security incidents. GIS, Cyber Security Assurance (CSA) team identifies the Potential Vulnerabilities and is designed to validate and report potential vulnerabilities identified through Qualys tool and OSINT process addresses external, internet-accessible security concerns or poor internet hygiene impacting Bank of America’s internet reputation. Team works with outside-in approach which leverages external open-source intelligence (OSINT) and internal data to analyze internet-accessible hosts associated with Bank of America that pose a potential security risk to the Bank and negatively impact the Bank’s internet reputation or brand.

Job Description*

The Information Security Exposure Management Specialist role will involve identifying risks and promoting Internet hygiene improvement opportunities to enhance the Bank’s overall public security posture. The role also requires working as part of a team developing methods to quickly reference systems of record (SOR’s), systems of origin (SOO’s) and other available data stores for a comprehensive reliable and timely view of the Bank’s attack surface and vulnerability exploitability potential, with the goal of enabling answers to the following three questions as quickly as possible.

•              Do we have it?

•              Are we vulnerable?

•              Is it exploitable?

Responsibilities*

  • Identify and remove older, no longer maintained Bank branded sites.
  • Ability to communicate effectively across all levels of a global finance institution
  • Ensure all external assets align to LOB ownership.
  • Identify and eradicate end of life software or software in use exposing the Bank to risk.
  • Address issues impacting CRR (Cyber Risk Rating) scores that impact the reputational risk of Bank of America  
  • Submits false positives to Cyber Risk Rating vendors.
  • Evaluates true positives for inclusion escalation. 
  • Proactively perform Risk Analysis (DNS Records Cleanup, Expired/Malformed Digital   Certificates)
  • Assist CSA/CSD in Identifying P1/CAPD level risks leveraging an outside in view along with Bank data intelligence.
  • Escalate issues to management in a timely manner with appropriate severity, exposure and action items; this role requires critical thinking, and investigative mindset coupled with effective written and verbal communication skills
  • Identifies gaps with external perimeter findings to internal bank policies and raises them up with the team.
  • Excellent research skills – able to identify relevant data sources for information about bank technologies, gain an understanding of how things work and be willing to dig in and help identify usage throughout the firm.
  • Strong analytical skills/problem solving/conceptual thinking.
  • Excellent communication and presentation skills.
  • Collaborate with peers and business units in a team-focused environment.

Requirements:

Education: Bachelor’s degree in IT Discipline

Certifications (if any): CISSP, CEH, CCNP, Qualys certifications would be good but not mandatory.

Experience Range: 4 to 6+ Years

Foundational skills*

  • Excellent research skills – able to identify relevant data sources for information about bank technologies, gain an understanding of how things work and be willing to dig in and help identify usage throughout the firm
  • A broad knowledge of Information security principles
  • Knowledge of externally facing network DNS architecture and associated vulnerabilities
  • Understanding of Vulnerability Management principles
  • Understanding of Risk Assessment Methodologies & Data Analytics background
  • Basic network fundamentals, like OSI model, TCP/IP model, DNS Records
  • Prior experience in leveraging MS Access or other data repositories.
  • Background in Network Security /Application Security preferred.

Desired skills

  • Understanding Network devices such as servers, switches, load balancers, etc.
  • Qualys and Tanium Tools experience
  • Knowledge of information security concepts, research tools, and products
  • Ability to work with Technical and Non-Technical business owners
  • SQL/Python Basic Knowledge, Power BI

Work Timings* 7.30am to 4.30PM IST / 12:30PM to 09:30PM IST

Job location: Chennai/Hyderabad/Mumbai

Experience Level

Entry Level

Job role

Work location
Work locationChennai Tamil Nadu, India
Department
DepartmentIT & Information Security
Role / Category
Role / CategoryIT Security
Employment type
Employment typeFull Time
Shift
ShiftDay Shift

Job requirements

Experience
ExperienceMin. 4 years

About company

Name
NameBank Of America
Job posted by Bank Of America

Similar jobs you can apply for

Manufacturing / Production
Quess Corp Limited

Installation Engineer

Quess Corp Limited
Chennai
₹17,000 - ₹25,000
Field Job
Full Time
Any experience
No English Required
Airtel

Field Installation Engineer

Airtel
Chennai
₹23,000 - ₹31,000*
Field Job
Full Time
Any experience
No English Required
Gofix

Laptop Repair Technician

Gofix
Chennai
₹20,000 - ₹55,000*
Work from Office
Full Time
Min. 1 year
Basic English
Teamlease Services Limited

Installation Engineer

Teamlease Services Limited
Chennai
₹23,000 - ₹27,000
Field Job
Full Time
Any experience
No English Required
Airtel

Field Installation Engineer

Airtel
Chennai
₹20,000 - ₹25,000*
Field Job
Full Time
Any experience
Basic English
Airtel

Field Installation Engineer

Airtel
Chennai
₹23,000 - ₹30,000*
Field Job
Full Time
Any experience
No English Required

You can expect a minimum salary of 0 INR. The salary offered will depend on your skills, experience and performance in the interview.

The candidate should have completed the required education and people who have 4 to 6 years are eligible to apply for this job. You can apply for more jobs in Chennai to get hired quickly.

The candidate should have sound communication skills and sound communication skills for this job.

Both Male and Female candidates can apply for this job.

No, it's not a work from home job and can't be done online. You can explore and apply for other work from home jobs in Chennai at apna.

No work-related deposit needs to be made during your employment with the company.

Go to the apna app and apply for this job. Click on the apply button and call HR directly to schedule your interview.

The last date to apply for this job is . For more details, download apna app and find Full Time jobs in Chennai . Through apna, you can find jobs in 64 cities across India. Join NOW!