Chennai, India
22 hours ago
Senior Software Engineer

Job Description:

About Us

At Bank of America, we are guided by a common purpose to help make financial lives better through the power of every connection.  Responsible Growth is how we run our company and how we deliver for our clients, teammates, communities, and shareholders every day. One of the keys to driving Responsible Growth is being a great place to work for our teammates around the world. We’re devoted to being a diverse and inclusive workplace for everyone. We hire individuals with a broad range of backgrounds and experiences and invest heavily in our teammates and their families by offering competitive benefits to support their physical, emotional, and financial well-being.  Bank of America believes both in the importance of working together and offering flexibility to our employees. We use a multi-faceted approach for flexibility, depending on the various roles in our organization. Working at Bank of America will give you a great career with opportunities to learn, grow and make an impact, along with the power to make a difference. Join us!

Global Business Services

Global Business Services delivers Technology and Operations capabilities to Lines of Business and Staff Support Functions of Bank of America through a centrally managed, globally integrated delivery model and globally resilient operations. Global Business Services is recognized for flawless execution, sound risk management, operational resiliency, operational excellence and innovation. In India, we are present in five locations and operate as BA Continuum India Private Limited (BACI), a non-banking subsidiary of Bank of America Corporation and the operating company for India operations of Global Business Services.

Process Overview*

VIA– Cyber Security Assurance (CSA) team identifies the Potential Vulnerabilities and is designed to validate and report potential vulnerabilities identified through Qualys tool and OSINT process addresses external, internet-accessible security concerns or poor internet hygiene impacting Bank of America’s internet reputation. Team works with outside-in approach which leverages external open-source intelligence (OSINT) and internal data to analyze internet-accessible hosts associated with Bank of America that pose a potential security risk to the Bank and negatively impact the Bank’s internet reputation or brand.

Job Description*

The Information Security Exposure Management Specialist role will involve identifying risks and promote Internet hygiene improvement opportunities to enhance the Bank’s overall public security posture.

Responsibilities*

Identify and remove older, no longer maintained Bank branded sites.Ensure all external assets align to LOB ownership.Identify and eradicate end of life software or software in use exposing the Bank to risk.Address issues impacting CRR (Cyber Risk Rating) scores that impact the reputational risk of Bank of America  Submits false positives to Cyber Risk Rating vendors.Evaluates true positives for inclusion escalation. Proactively perform Risk Analysis (DNS Records Cleanup, Expired/Malformed Digital   Certificates)Assist CSA/CSD in Identifying P1/CAPD level risks leveraging an outside in view along with Bank data intelligence.Identifies gaps with external perimeter findings to internal bank policies and raises them up with the team.Collaborate with peers and business units in a team-focused environment.

Requirements:

Education*

Bachelor’s degree in IT Discipline

Certifications If Any

CISSP, CEH, CCNP, Qualys certifications would be good but not mandatory.

Experience Range*: 3+ years

Foundational skills*

A broad knowledge of Information security principlesKnowledge of externally facing network DNS architecture and associated vulnerabilitiesUnderstanding of Vulnerability Management principlesUnderstanding of Risk Assessment MethodologiesData Analytics backgroundBasic network fundamentals, like OSI model, TCP/IP model, DNS RecordsPrior experience in leveraging MS Access or other data repositories.Background in Network Security /Application Security preferred.Should be a critical thinker.

Desired skills

Basic Scripting knowledgeAbility to interpret Qualys Scan reports.

Work Timings*

7.30AM to 4.30PM (IST) / 12:30PM to 09:30PM (IST)

Job location: Hyderabad/Chennai

Por favor confirme su dirección de correo electrónico: Send Email