Skip to main content
Back to search results

Lead Analyst

Chennai, India;
Apply Refer a friend
Apply

Job Description:

About Us

At Bank of America, we are guided by a common purpose to help make financial lives better through the power of every connection.  Responsible Growth is how we run our company and how we deliver for our clients, teammates, communities and shareholders every day. One of the keys to driving Responsible Growth is being a great place to work for our teammates around the world. We’re devoted to being a diverse and inclusive workplace for everyone. We hire individuals with a broad range of backgrounds and experiences and invest heavily in our teammates and their families by offering competitive benefits to support their physical, emotional, and financial well-being.  Bank of America believes both in the importance of working together and offering flexibility to our employees. We use a multi-faceted approach for flexibility, depending on the various roles in our organization. Working at Bank of America will give you a great career with opportunities to learn, grow and make an impact, along with the power to make a difference. Join us!

Global Business Services

Global Business Services delivers Technology and Operations capabilities to Lines of Business and Staff Support Functions of Bank of America through a centrally managed, globally integrated delivery model and globally resilient operations. Global Business Services is recognized for flawless execution, sound risk management, operational resiliency, operational excellence and innovation. In India, we are present in five locations and operate as BA Continuum India Private Limited (BACI), a non-banking subsidiary of Bank of America Corporation and the operating company for India operations of Global Business Services.

Process Overview*

Global Information Security (GIS) functions by analyzing, researching, improving, defining, implementing, and executing information security processes defined, in large part, by past high profile audit issues. Key responsibilities include Data Quality management of closed manually identified P2 vulnerabilities, developing an understanding of the LOBs that report vulnerabilities via manual flat file to GIS, following standard practices and procedures in analyzing situations or data, and supporting team members in performing specialized GIS functions, primarily Data Quality assurance. Job expectations include partnering with teams inside, and outside, of GIS, inclusive of GIS, CTI, EET, APS&E, GT Risk, and others.

Job Description*

This job is responsible for supporting Global Information Security (GIS) functions by analyzing, researching, improving, defining, implementing, and executing information security controls and standards. Key responsibilities include developing an understanding of the business, validating remediation of manually reported. CVE vulnerabilities, engaging with Qualys vendor support, following standard practices and procedures in analyzing situations or data, creating and updating semi-technical Quality Control vulnerability related documentation, and supporting team members in performing specialized GIS functions. Job expectations include partnering with team to provide blended security and business insights to ensure appropriate management of information security risks.

Responsibilities*

  • Responsible for the development and execution of the vulnerability identification technology strategy
  • Hands on proof-of-concept testing of next generation Vulnerability identification technologies
  • Deliver routine Project progress updates to Senior Executive Leadership
  • Responsible for vulnerability scanning platforms optimization and resiliency
  • Responsible for the mapping of vulnerability identification gaps with remedial technology solutions
  • Maintain relationships with Vulnerability Management Solutions Providers and Technology implementation partners
  • Responsible for Technology-based thematic issue tracking, resolution, and reporting
  • Key participants to Vulnerability Identification Incident Management & Response. 
  • Provide technical guidance and mentorship to team members

Requirements*

Education* : Bachelor’s and/or master’s degree in computer science, Information Technology or related field

Certifications (If Any) : Qualys VMDR preferred, Relevant certifications such as CISSP, CISM, ISO 27001, NIST is a plus

Experience Range* : 8+ Years

Foundational Skills:

  • Hands-on technical experience deploying an Industry-leading Vulnerability Identification Scanning Solution(s) (Qualys and Tenable)
  • Working knowledge of Network architecture and Engineering concepts
  • Experience with deploying and managing cloud-based Vulnerability scanning solutions
  • Superior sense of urgency and ability to accurately prioritize deliverables
  • Good written and verbal communication Skills

Desired Skills:

  • BS or MS in Information technology/security or related areas of study
  • Experience with establishing and maintaining integration between Vulnerability identification tools and Vulnerability Management Workflows (e.g. ServiceNow)
  • Familiarity with mainstream attacker techniques, tactics, and procedures (i.e. MITRE ATT&CK Framework)
  • Experience with deploying and managing Cloud-based Vulnerability scanning solutions
  • Familiarity with compliance regulations, frameworks, and certifications (e.g., NIST, FFIEC.)
  • Experience with Vulnerability ratings methodologies
  • Background in Windows & UNIX platform Administration
  • Experience with a scripting language(s)

Work Timings* :   1:30 PM - 10:30 PM

Job Location* : Chennai, Hyderabad

Learn more about this role

Apply Refer a friend
Apply

Full time

JR-25036374

Manages People:

Age requirement: Must at least be 18 years of age.

Street Address

Primary Location:
Block 2dt Taramani, Chennai, 600113
Additional Locations: