Enter a job title or keyword

UK Cyber Lead CMB

HSBC


Job Location:

London - UK

Monthly Salary: Not provided by the employer
Posted: 21 July 2026 (30+ days ago)
Application Deadline: 18 October 2026
Vacancies: 1 Vacancy

Job Summary

If youre looking for a career that will help you stand out join HSBC and fulfil your potential - whether you want a career that could take you to the top or simply take you in an exciting new direction HSBC offers opportunities support and rewards that will take you further.

HSBC is one of the largest banking and financial services organisations in the world with operations in 64 countries and territories. We aim to be where the growth is enabling businesses to thrive and economies to prosper and ultimately helping people to fulfil their hopes and realise their ambitions.

Were currently seeking an experienced professional to join our UK Cybersecurity Team in the role of UK Cyber Lead Commercial Banking (CMB).

Youll play a key part in supporting and enhancing cybersecurity across HSBC UKs CMB entities helping the business grow securely within risk appetite in a fast-changing threat landscape. Reporting to the UK CMB Chief Information Security Officer (CISO) youll work closely with technology and business stakeholders to strengthen risk and control standards ensuring our cyber approach is engineering-led pragmatic and aligned to business objectives.

As an HSBC employee in the UK youll have access to tailored professional development opportunities and a competitive pay and benefits package. This includes private healthcare for all UK-based employees enhanced maternity and adoption pay and support when you return to work and a contributory pension scheme with a generous employer contribution.

In this role you will:

  • Support delivery of the UK CMB cybersecurity strategy aligned to business goals and risk appetite driving continuous improvement of controls processes and security technologies with a strong customer focus.
  • Manage cybersecurity risk governance and compliance activities (NIST ISO 27001 GDPR FCA) coordinating audits/assessments maintaining evidence and reporting for senior management and supporting external engagement as required.
  • Lead day-to-day stakeholder engagement incident management and security culture initiatives coordinating response to major incidents under UK CMB CISO direction developing team capability and contributing to policy standards and awareness programmes.

To be successful in this role you should meet the following requirements:

  • Technical & Regulatory Experience: Practical engineering experience supporting the design and implementation of security controls and tooling (including exposure to AI-enabled solutions). Solid knowledge of cybersecurity technology and risk management with working familiarity of security frameworks (NIST ISO 27001) and regulatory requirements (GDPR FCA).
  • Stakeholder Management: Experience working in complex fast-paced environments managing cybersecurity issues and coordinating with senior stakeholders risk/compliance partners and (where required) supporting regulator-facing activities.
  • Leadership: Demonstrated experience leading junior team members and delivering cybersecurity initiatives improving control standards and contributing to function maturity and transformation outcomes.
  • Commercially aware decision-maker: Uses business and market insight to spot emerging trends and translate them into practical plans and priorities for their area.
  • Action-oriented leader who delivers through others: Works at pace coordinates across teams and supports an inclusive environment to deliver agreed outcomes.
  • Influential and accountable in complexity: Builds alignment with stakeholders raises and resolves issues constructively and delivers reliably in ambiguous situations.
  • Leadership experience: Demonstrated experience contributing to and delivering security strategy leading teams and programmes and applying strong security risk methodologies and engineering practices.
  • Governance frameworks and certifications: Strong working knowledge of ISO/IEC 27001 and NIST supported by a relevant degree (or equivalent experience) and one or more professional certifications (e.g. CISSP/CISM/CISA/CRISC) or progress towards them.
  • Senior stakeholder communication and influence: Clear written and verbal communication skills able to engage and influence senior stakeholders and explain security risk and control decisions in practical business terms.
  • Willingness to travel as required

Opening up a world of opportunity.

Being open to different points of view is important for our business and the communities we serve. At HSBC were dedicated to creating diverse and inclusive workplaces - no matter their gender ethnicity disability religion sexual orientation socio-economic background or age. We are committed to removing barriers and ensuring careers at HSBC are inclusive and accessible for everyone to be at their best. We take pride in being a Disability Confident Leader and will offer an interview to people with disabilities long term conditions or neurodivergent candidates who meet the minimum criteria for the role.

If you have a need that requires accommodations or changes during the recruitment process please get in touch with our Recruitment Helpdesk via .



About Company

Company Logo

HSBC Holdings plc is a British multinational investment bank and financial services holding company. It was the 7th largest bank in the world by 2018, and the largest in Europe, with total assets of US$2.558 trillion.

View Profile View Profile