Analyst I - System Administration and Support
Bank of America
Analyst I - System Administration and Support
Chennai, India;Saki-naka,Andheri E
**Job Description:**
**About Us**
At Bank of America, we are guided by a common purpose to help make financial lives better through the power of every connection. Responsible Growth is how we run our company and how we deliver for our clients, teammates, communities, and shareholders every day.
One of the keys to driving Responsible Growth is being a great place to work for our teammates around the world. We are devoted to being a diverse and inclusive workplace for everyone. We hire individuals with a broad range of backgrounds and experiences and invest heavily in our teammates and their families by offering competitive benefits to support their physical, emotional, and financial well-being.
Bank of America believes both in the importance of working together and offering flexibility to our employees. We use a multi-faceted approach for flexibility, depending on the various roles in our organization.
Working at Bank of America will give you a great career with opportunities to learn, grow and make an impact, along with the power to make a difference. Join us!
**Global Business Services**
Global Business Services delivers Technology and Operations capabilities to Lines of Business and Staff Support Functions of Bank of America through a centrally managed, globally integrated delivery model and globally resilient operations.
Global Business Services is recognized for flawless execution, sound risk management, operational resiliency, operational excellence, and innovation.
In India, we are present in five locations and operate as BA Continuum India Private Limited (BACI), a non-banking subsidiary of Bank of America Corporation and the operating company for India operations of Global Business Services.
**Process Overview**
The Global Information Security (GIS) team is responsible for protecting bank information systems, confidential and proprietary data, and customer information. The team develops the bank’s Information Security strategy and policy, manages the Information Security program, identifies and addresses vulnerabilities, develops, deploys and manages a risk-based controls portfolio, and manages and operates global security operations centers that monitor, detect and responds to cybersecurity incidents.
The GIS team goal is to ensure that the control processes and effectiveness are within the identified risk tolerance. The team manages the performance and effectiveness of the working control through the establishment of metrics with thresholds. They also validate the reasonability of Laws, Rules and Regulations mapping alignment to the controls, as aligned by the GIS Policy team.
**Job Description**
This position will be a member of the Business Information Security Office (BISO) Governance and Execution team. The role requires executing against the quality assurance strategy to validate cyber security risk is being mitigated appropriately across lines of business as well as Third Parties. This role will support the ERP Review Framework Strategy to ensure a consistent risk management process is being leveraged when assessing vulnerability risks by ensuring that appropriate mitigations and/or compensating controls are applied if remediation cannot be completed within SLA. For each Observation there must be relevant Mitigating or Compensating Control(s) in place before an exception can be considered and Level of residual risk is determined based on the completeness of the aligned Controls. In conjunction of this role, the key team members will perform QAs on additional processes ensuring adherence to audit process guidelines. The QA output will be utilized to identify and incorporate future process enhancements to maintain consistency and quality across BISO functions.
**Responsibilities**
+ Perform monthly risk review on business justification and exception expiration date for GIS Policy exception requests for GIS employees
+ Ability to evaluate business justification to ensure it sufficiently describes a valid business purpose and expiration date is for acceptable timeframe per indicated use
+ Ability to apply quality standards consistently during risk review and document results defensibility and clearly
+ Strong background in information security and risk management
+ Analyze vulnerabilities and validation of remediation plans
+ Skilled in requirement analysis, test plan/scenario preparations, design and execution, defect logging and management
+ Self-starter with minimal management oversight
+ Strong analytical skills/problem solving/conceptual thinking/attention to detail.
+ Ability to work effectively with peers and various levels of management.
+ Well organized and thorough, with the ability to balance and prioritize assigned tasks
+ Ability to take ownership of an initiative/issue through completion.
+ Ability to work in a collaborative environment.
+ Process reporting and strategic thinking of process improvisation.
+ Ability to work with minimal supervision.
+ Ability to own and deliver on complex initiatives in a high paced, evolving environment.
+ Knowledge in Application security, Risk assessments, Cloud technologies, GRC (Governance, Risk, and Compliance) with emphasis on security processes and controls is desirable.
**Requirements**
**Education:** Bachelor’s Degree or technology and cybersecurity background
**Certification:** CEH, CompTIA Security+,CISA, CRISC, CISM, CISSP **(Good to have)**
**Experience Range:** 4+years
**Foundational skills:**
+ Extensive knowledge of analyzing vulnerabilities and remediation
+ Good experience in performing Quality reviews, identifying gaps and following up with stakeholders on closing the observations
+ Knowledge/Experience in Application security, Risk assessments, Cloud technologies, GRC (Governance, Risk, and Compliance) and/or third-party management with emphasis on security processes and controls
+ Experience evaluating threats/risks posed by new technologies spanning networks, hardware, software,
+ Ability to evaluate technology to ensure cyber-secure development that adheres to internal application policy, standards, and baselines.
+ Bachelor’s degree in information technology, information security or related field
+ Must be flexible to work during hours that needs collaboration with US partners.
**Desired skills:**
+ Minimum 4 years of experience in cyber security or a technology-related field
+ Strong project management experience
+ Strong analytical skills/problem solving/critical thinking.
+ Able to work with technical and non-technical business owners.
+ Able to take ownership of an initiative/issue through completion.
+ Able to work in a collaborative environment.
+ Able to own and deliver on complex initiatives in a high paced, evolving environment.
+ Excellent verbal and written communication skills; Ability to communicate with business leaders, users and tech-savvy stakeholders.
+ Proficient in MS Office (Word, Excel, PowerPoint)
+ Ability to work with minimal supervision.
**Work Timings:** 13:30 – 22:30 IST
**Job Location:** Chennai / Mumbai
Bank of America and its affiliates consider for employment and hire qualified candidates without regard to race, religious creed, religion, color, sex, sexual orientation, genetic information, gender, gender identity, gender expression, age, national origin, ancestry, citizenship, protected veteran or disability status or any factor prohibited by law, and as such affirms in policy and practice to support and promote the concept of equal employment opportunity, in accordance with all applicable federal, state, provincial and municipal laws. The company also prohibits discrimination on other bases such as medical condition, marital status or any other factor that is irrelevant to the performance of our teammates.
To view the "Know your Rights" poster, CLICK HERE (https://www.eeoc.gov/sites/default/files/2023-06/22-088\_EEOC\_KnowYourRights6.12.pdf) .
View the LA County Fair Chance Ordinance (https://dcba.lacounty.gov/wp-content/uploads/2024/08/FCOE-Official-Notice-Eng-Final-8.30.2024.pdf) .
Bank of America aims to create a workplace free from the dangers and resulting consequences of illegal and illicit drug use and alcohol abuse. Our Drug-Free Workplace and Alcohol Policy (“Policy”) establishes requirements to prevent the presence or use of illegal or illicit drugs or unauthorized alcohol on Bank of America premises and to provide a safe work environment.
To view Bank of America’s Drug-free Workplace and Alcohol Policy, CLICK HERE .
Bank of America is committed to an in-office culture with specific requirements for office-based attendance and which allows for an appropriate level of flexibility for our teammates and businesses based on role-specific considerations. Should you be offered a role with Bank of America, your hiring manager will provide you with information on the in-office expectations associated with your role. These expectations are subject to change at any time and at the sole discretion of the Company. To the extent you have a disability or sincerely held religious belief for which you believe you need a reasonable accommodation from this requirement, you must seek an accommodation through the Bank’s required accommodation request process before your first day of work.
This communication provides information about certain Bank of America benefits. Receipt of this document does not automatically entitle you to benefits offered by Bank of America. Every effort has been made to ensure the accuracy of this communication. However, if there are discrepancies between this communication and the official plan documents, the plan documents will always govern. Bank of America retains the discretion to interpret the terms or language used in any of its communications according to the provisions contained in the plan documents. Bank of America also reserves the right to amend or terminate any benefit plan in its sole discretion at any time for any reason.
Por favor confirme su dirección de correo electrónico: Send Email