Lead Analyst
Job Description:
About Us
At Bank of America, we are guided by a common purpose to help make financial lives better through the power of every connection. Responsible Growth is how we run our company and how we deliver for our clients, teammates, communities, and shareholders every day. One of the keys to driving Responsible Growth is being a great place to work for our teammates around the world. We're devoted to being a diverse and inclusive workplace for everyone. We hire individuals with a broad range of backgrounds and experiences and invest heavily in our teammates and their families by offering competitive benefits to support their physical, emotional, and financial well-being. Bank of America believes both in the importance of working together and offering flexibility to our employees. We use a multi-faceted approach for flexibility, depending on the various roles in our organization. Working at Bank of America will give you a great career with opportunities to learn, grow and make an impact, along with the power to make a difference. Join us!
Want more jobs like this?
Get jobs in Hyderabad, India delivered to your inbox every week.

Global Business Services
Global Business Services delivers Technology and Operations capabilities to Lines of Business and Staff Support Functions of Bank of America through a centrally managed, globally integrated delivery model and globally resilient operations. Global Business Services is recognized for flawless execution, sound risk management, operational resiliency, operational excellence and innovation. In India, we are present in five locations and operate as BA Continuum India Private Limited (BACI), a non-banking subsidiary of Bank of America Corporation and the operating company for India operations of Global Business Services.
Process Overview
Global Information Security (GIS) functions by analyzing, researching, improving, defining, implementing, and executing information security processes defined, in large part, by past high profile audit issues. Key responsibilities include Data Quality management of closed manually identified P2 vulnerabilities, developing an understanding of the LOBs that report vulnerabilities via manual flat file to GIS, following standard practices and procedures in analyzing situations or data, and supporting team members in performing specialized GIS functions, primarily Data Quality assurance. Job expectations include partnering with teams inside, and outside, of GIS, inclusive of GIS, CTI, EET, APS&E, GT Risk, and others.
Job Description
This job is responsible for supporting Global Information Security (GIS) functions by analyzing, researching, improving, defining, implementing, and executing information security processes defined, in large part, by past high profile audit issues. Key responsibilities include Data Quality management of closed manually identified P2 vulnerabilities, developing an understanding of the LOBs that report vulnerabilities via manual flat file to GIS, following standard practices and procedures in analyzing situations or data, and supporting team members in performing specialized GIS functions, primarily Data Quality assurance. Job expectations include partnering with teams inside, and outside, of GIS, inclusive of GIS, CTI, EET, APS&E, GT Risk, and others.
Responsibilities
- Actively leads, executes, and managed weekly Data Quality activities required by audit issue sustainability.
- Supports activities requiring Global Information Security (GIS) engagement and facilitating problem resolution for cyber security related issues
Supports adherence to appropriate risk tolerance levels, operating in accordance with defined information security policies to protect against threats to data confidentiality, integrity, and availability.
Supports teammates who serve as vulnerability remediation validation support to help mitigate vulnerability exposure to the bank. - Engages with peer GIS report and application development teams, vulnerability identification/scanning, and vendor support teams.
- Interprets the information security requirements outlined in polices, standards, and procedures and reinforces requirements through education and awareness.
Engages with key stakeholders in GIS, Core Technology Infrastructure, APS&E, EET, and GT Risk as/when needed. - Ensures CIO partners are evaluating the right set of un-scannable CVE vulnerabilities utilizing the expected set of GIS rated P2 CVEs.
- Manages a small set of simply SPI metrics monthly.
Requirements
Education : B.E. / B Tech / M.E. / M Tech / MCA / M.Sc.
Certifications (If Any) : ISO 27001 LA, Ethical Hacking
Experience Range : 8 -10 Years
Foundational Skills
- Remediation Evidence Validation
- Vulnerability Management / Assessment
- Understands CVE Vulnerability Data
- Vendor Management
- Leads Meetings / Coordinates across Stakeholders
- Controls Management
- Product Version Interpretation
- NVD / NIST / Discovery / CMDB Remedy / other SOR tool usage
- Visio Flowcharting
- Data Governance
- Risk Management
- Business Acumen
- Cyber Security
- Advisory
Desired Skills
- Knowledge in Vulnerability Assessment
- Vulnerability Remediation
- Strong Technical knowledge
Work Timings : 1:30 PM - 10:30 PM
Location* : HYD, CHE
Perks and Benefits
Health and Wellness
- FSA
- HSA
- On-Site Gym
- Health Insurance
- Dental Insurance
- Vision Insurance
- Life Insurance
Parental Benefits
- Non-Birth Parent or Paternity Leave
- Birth Parent or Maternity Leave
Work Flexibility
Office Life and Perks
Vacation and Time Off
- Leave of Absence
- Personal/Sick Days
- Paid Holidays
- Paid Vacation
- Sabbatical
Financial and Retirement
- Performance Bonus
- Company Equity
- 401(K) With Company Matching
Professional Development
- Promote From Within
- Mentor Program
- Access to Online Courses
- Lunch and Learns
- Tuition Reimbursement
Diversity and Inclusion
- Diversity, Equity, and Inclusion Program