Vice President, Cyber Threat Intelligence Analyst, Global Information Security, Sydney, Australia
- Sydney
- Full-time
- POSTED TODAY
About the job
Job Description:
At Bank of America, we are guided by a common purpose to help make financial lives better through the power of every connection. We do this by driving Responsible Growth and delivering for our clients, teammates, communities and shareholders every day.
Being a Great Place to Work and providing a culture of caring is core to how we drive Responsible Growth. We are intentional about fostering an inclusive workplace where every teammate has the opportunity to succeed, build a career and contribute to our shared success. This includes attracting and developing exceptional talent, recognizing and rewarding performance, and supporting our teammates’ physical, emotional, and financial wellness through affordable, competitive and flexible benefits.
We value the unique perspectives individuals bring from all backgrounds and career paths - whether shaped by military service, community college education, or a wide range of work and life experiences. These journeys foster resilience, leadership and innovation, strengthening our workforce and positively impact the communities we serve.
Bank of America is committed to an in-office culture that supports collaboration, engagement, and career development. Our approach includes clear in-office expectations, while providing an appropriate level of flexibility based on role-specific responsibilities and business needs.
At Bank of America, you can build a successful career with opportunities to learn, grow, and make an impact. Join us!
Location: Sydney, Australia
Job Description:
The VP Cyber Threat Intelligence will be responsible for responsible for providing timely situational awareness on open and closed source intelligence related to the actions of nation-state, eCrime, insider threat, and hacktivist entities that seek to disrupt the financial sector.
You will have multiple opportunities to work with an extensive array of intelligence sources and partners across the financial sector including the various FS-ISAC communities in Australia, and set new standards on intelligence-gathering operations in a frontier AI model age, working with a best-in-class global enterprise team to defend one of the world's largest financial organizations.
The VP Cyber Threat Intelligence role is to monitor, find and then provide actionable intelligence via the multiple threat intelligence and OSINT sources, commercial platforms, Closed intel sources (ACSC, FS-ISAC Australia working groups, FS-ISAC Cyber Crime working groups), dark web sources etc., summarized with the who, what, where, when, how’s, and what the Bank is actioning upon to the Bank’s organizational stakeholders and various GIS response teams.
You will be also responsible for the effective filtering and dissemination of any or all indicators of compromise and/or warnings of threat actor TTPs expected to be used and leveraged by key operational response teams for defensive and response operations, and/or by executive stakeholders for decision-making.
Additionally, the VP Cyber Threat Intelligence will be assessing new intelligence for relevance, credibility, urgency, prioritizing threats based on severity, affected technologies, geographies and any Bank exposure.
CTI teams are also responsible for investigative efforts on requests from the Incident Response Team, Malware Defense Response team, amongst other to ensure that all Incident response activities are effectively handled, with an emphasis on rapid response to defend the Bank.
Skills:
The candidate should exhibit a firm understanding of the cyber threat landscape, geopolitical issues that could have cyber impacts, security vulnerabilities, exploits, malware, digital forensics, network security vulnerabilities, exploits and attacks. Experience with threat intelligence platforms, tools, and threat intelligence vendors. Experience supporting or contributing to incident response or major security investigations. Experience with JIRA/ServiceNow, Python, and other programming languages will be a strong plus. Experience working in a Security Operations, Incident Management or Fusion Center operation. Minimum 1 year working in a 24/5 or 24/7 operational environment. This position requires strong verbal and written communication skills. Bachelor’s degree or higher-level education is a strong plus. Technical or information security certifications are also a strong plus.