CISO CTO Infrastructure

CISO CTO Infrastructure

Full-Time 120000 - 150000 € / year (est.) No home office possible
hackajob

At a Glance

  • Tasks: Lead global security strategy for HSBC's tech infrastructure across cloud and on-premises.
  • Company: HSBC, a leading global banking and financial services organisation.
  • Benefits: Competitive salary, diverse workplace, and opportunities for professional growth.
  • Other info: Join a diverse team committed to inclusivity and accessibility in the workplace.
  • Why this job: Make a real impact on global security while shaping the future of banking technology.
  • Qualifications: Proven leadership in security within a regulated environment and deep technical expertise.

The predicted salary is between 120000 - 150000 € per year.

About HSBC

HSBC is one of the world’s largest banking and financial services organisations, serving millions of customers through our global network. We connect people, businesses and institutions to opportunities across international markets, supported by a broad range of banking and wealth services. At HSBC, we’re focused on opening up a world of opportunity – helping people and businesses thrive and supporting economies to prosper. If you’re looking for work with global reach, real‑world impact and the chance to collaborate with colleagues across markets, you’ll find it here.

The Role

As Chief Information Security Officer for CTO Infrastructure you’ll define and drive the security posture of HSBC’s global technology infrastructure estate across cloud, on‑premises data centres, network, identity, endpoint and operational technology. You’ll operate at the intersection of the CTO and CISO organisations to protect a complex, globally distributed environment across more than 40 jurisdictions. The role is directly relevant to the bank’s obligations under DORA, PRA/FCA supervisory expectations, NIS2 and emerging AI Act requirements. You’ll represent the bank before UK, EU and US regulators on infrastructure security matters and serve on the Group Security Leadership Committee. You’ll lead a globally distributed team of c.8–12 specialists and manage an operating budget typically in the range of $25–50M. Success means measurable improvement in infrastructure security resilience, strong regulatory outcomes and security embedded into the bank’s technology transformation.

What You Will Be Doing

  • Own the multi‑year infrastructure security strategy aligned to technology transformation, cloud migration and AI adoption
  • Define and govern Zero Trust architecture standards across hybrid cloud and on‑premises environments
  • Lead security architecture review and approval for major infrastructure programmes including cloud platform, SD‑WAN, core network refresh and OT modernisation
  • Set and enforce multi‑cloud security posture across AWS, Azure, GCP and private cloud including CSPM, CNAPP and cloud workload protection
  • Establish secure‑by‑default configuration standards and IaC guardrails across compute, storage, networking and container platforms
  • Own infrastructure‑layer identity controls including PAM, machine identity and secrets management across management and control planes
  • Strengthen detection, resilience and response for infrastructure‑layer threats including exercises, TLPT scope and P1/P2 incident leadership
  • Govern security risk across critical infrastructure suppliers including DORA‑aligned third‑party monitoring and concentration risk assessments

Essential

  • Demonstrated security leadership experience including senior director‑level leadership in a Tier 1 global financial institution or equivalent regulated enterprise
  • Deep technical grounding across infrastructure security including network, multi‑cloud, identity and PAM, endpoint and OT/ICS security
  • Show accountability for a significant infrastructure security programme in a multi‑jurisdictional regulated environment
  • Evidence strong engagement with regulators including PRA, FCA, ECB, NYDFS and MAS on infrastructure security matters
  • Lead major incident response for infrastructure security events including ransomware, nation‑state intrusions or significant cloud incidents
  • Design and implement Zero Trust architecture at enterprise scale
  • Apply strong cloud security architecture expertise across AWS, Azure and GCP including CSPM, CNAPP, cloud IAM and network security
  • Build and lead globally distributed security engineering teams and manage large budgets and vendor relationships with rigour

Desirable

  • Secure agentic AI and LLM infrastructure including MCP server security, AI gateway controls and GPU cluster hardening
  • Manage TIBER‑EU / CBEST red team scoping and remediation programmes
  • Plan quantum‑safe cryptography transition for infrastructure components
  • Hold CCSP or AWS/Azure Security Specialty certification or CREST or equivalent TLPT qualification

Securing HSBC’s infrastructure backbone

This is a senior leadership role with real accountability for the resilience of the technology foundations HSBC depends on every day. You’ll shape how security is designed into cloud platforms, networks, identity and OT environments at global scale – protecting critical services across 40+ jurisdictions. If you’re at your best when translating complex technical risk into clear executive decisions and leading teams through high‑stakes moments, you’ll thrive here. Bring your judgement, technical depth and collaborative influence and help set the standard for infrastructure security across the bank.

Being open to different points of view is important for our business and the communities we serve. At HSBC, we’re dedicated to creating diverse and inclusive workplaces – no matter their gender, ethnicity, disability, religion, sexual orientation, socio‑economic background or age. We are committed to removing barriers and ensuring careers at HSBC are inclusive and accessible for everyone to be at their best. We take pride in being a Disability Confident Leader and will offer an interview to people with disabilities, long term conditions or neurodivergent candidates who meet the minimum criteria for the role. If you have a need that requires accommodations or changes during the recruitment process, please contact the Recruiter.

CISO CTO Infrastructure employer: hackajob

HSBC is an exceptional employer, offering a dynamic work environment where innovation meets global impact. With a strong commitment to diversity and inclusion, employees benefit from a culture that values different perspectives and fosters professional growth through leadership opportunities in a highly regulated financial landscape. The role of CISO CTO Infrastructure not only provides the chance to shape security strategies across a vast international network but also ensures meaningful contributions to the resilience of critical banking infrastructure.

hackajob

Contact Detail:

hackajob Recruiting Team

StudySmarter Expert Advice🤫

We think this is how you could land CISO CTO Infrastructure

Tip Number 1

Network like a pro! Reach out to current or former HSBC employees on LinkedIn. A friendly chat can give you insider info and maybe even a referral, which can really boost your chances.

Tip Number 2

Prepare for the interview by diving deep into HSBC's recent projects and initiatives. Show us that you’re not just another candidate; you’re genuinely interested in how you can contribute to their security strategy.

Tip Number 3

Practice your responses to common CISO interview questions. We want to see your leadership style and how you handle high-pressure situations, so be ready to share specific examples from your past.

Tip Number 4

Don’t forget to apply through our website! It’s the best way to ensure your application gets seen by the right people. Plus, it shows you’re serious about joining the HSBC team.

We think you need these skills to ace CISO CTO Infrastructure

Security Leadership
Infrastructure Security
Zero Trust Architecture
Cloud Security Architecture
Multi-Cloud Security Posture Management
Identity and Access Management (IAM)
Incident Response Management

Some tips for your application 🫡

Tailor Your CV:Make sure your CV is tailored to the CISO CTO Infrastructure role. Highlight your relevant experience in security leadership and infrastructure management, and don’t forget to mention any regulatory engagement you've had. We want to see how you can bring your unique skills to our team!

Craft a Compelling Cover Letter:Your cover letter is your chance to shine! Use it to explain why you're passionate about this role and how your background aligns with HSBC's mission. Be sure to mention your experience with Zero Trust architecture and cloud security – we love seeing that expertise!

Showcase Your Achievements:When detailing your past roles, focus on measurable achievements. Did you lead a successful incident response? How did you improve security resilience? Numbers speak volumes, so let us know how you made an impact in your previous positions.

Apply Through Our Website:We encourage you to apply through our website for the best chance of getting noticed. It’s straightforward and ensures your application goes directly to the right people. Plus, it shows us you’re keen on joining our team at HSBC!

How to prepare for a job interview at hackajob

Know Your Stuff

Make sure you have a solid understanding of infrastructure security, especially in a multi-cloud environment. Brush up on Zero Trust architecture and be ready to discuss how you've implemented it in past roles. This will show that you’re not just familiar with the concepts but can also apply them effectively.

Engage with Regulators

Since this role involves liaising with regulators like the PRA and FCA, prepare examples of your past interactions with regulatory bodies. Highlight how you’ve navigated compliance challenges and what outcomes you achieved. This will demonstrate your capability to handle the regulatory aspects of the job.

Show Leadership Skills

Be ready to talk about your experience leading teams, especially in high-pressure situations. Share specific examples of how you’ve managed incident responses or led significant security programmes. This will help convey your leadership style and ability to drive results in a complex environment.

Ask Insightful Questions

Prepare thoughtful questions about HSBC’s current security posture and future initiatives. This shows your genuine interest in the role and helps you gauge if the company aligns with your values and career goals. Plus, it gives you a chance to demonstrate your strategic thinking.