CrawlJobs Logo

Principal Security Researcher

https://www.hsbc.com Logo

HSBC

Location Icon

Location:
Poland

Category Icon
Category:
IT - Software Development

Job Type Icon

Contract Type:
Not provided

Salary Icon

Salary:

Not provided

Job Description:

Offensive Security provides an independent challenge to HSBC’s cybersecurity posture by bringing the attacker’s mindset to find and exploit vulnerabilities and to simulate real-world attacks. Through this, OffSec discover weaknesses across people, process, and technology, enabling the Firm to better understand its exposure to cybersecurity attacks and to drive a proactive approach to protect itself and to manage risk more effectively. The Security Research team, within the Global Cybersecurity Research and Offensive Security CROS function, provides a specialist approach to assessing the security of systems and technology, identifying previously unknown vulnerabilities and new attack techniques. Additionally, the Security Research team supports the wider CROS function by developing tools and automation of processes to enhance security assessment.

Job Responsibility:

  • Deliver security research projects focused on HSBC critical services, ensuring that design, quality and implementation of controls do not expose the bank to a significant level of risk
  • Identify previously unknown vulnerabilities and new attack techniques
  • Work with key stakeholders to proactively drive the reduction in Cybersecurity risks and improve the security risk posture of HSBC within the business risk appetite
  • Provide subject matter expertise and guidance to a broad range of stakeholders across global business and functions
  • Engage with a diverse set of stakeholders to achieve CROS objectives, including Business and Functions, Cybersecurity leads, Head of Cybersecurity functions and Control Owners
  • Achieve excellence by driving performance, compliance and security
  • Engage with specialist technology functions such as, Cybersecurity Technology, Cybersecurity Operations and Security Architecture
  • Establish and maintain productive relationships across the bank in the client facing role

Requirements:

  • Experience with leading highly sensitive projects, 0-day discovery and vulnerability disclosure
  • Experience in the Cybersecurity, network security, embedded systems & hardware hacking
  • Understanding of analysis of mobile technologies, common operating system, such as Linux, Windows, Google Android and iOS
  • Demonstrable experience in tooling, automation and prototyping
  • Experience in source code review and penetration testing
  • Previous exposure to black box software security review techniques, including ‘fuzzing’ and reverse engineering
What we offer:
  • Competitive salary
  • Annual performance-based bonus
  • Additional bonuses for recognition awards
  • Multisport card
  • Private medical care
  • Life insurance
  • One-time reimbursement of home office set-up (up to 800 PLN)
  • Corporate parties & events
  • CSR initiatives
  • Nursery discounts
  • Financial support with trainings and education
  • Social fund
  • Flexible working hours
  • Free parking

Additional Information:

Job Posted:
May 08, 2025

Expiration:
June 09, 2025

Employment Type:
Fulltime
Work Type:
Hybrid work
Job Link Share:
Welcome to CrawlJobs.com
Your Global Job Discovery Platform
At CrawlJobs.com, we simplify finding your next career opportunity by bringing job listings directly to you from all corners of the web. Using cutting-edge AI and web-crawling technologies, we gather and curate job offers from various sources across the globe, ensuring you have access to the most up-to-date job listings in one place.