Workforce Innovation Center Career Board

Leverage our network to build your career. Find companies that you will love to work for that have the benefits and perks you need.

Explore the careers Cincinnati USA Regional Chamber Members have to offer.

Senior Cyber Incident Response Manager, Global Information Security

Bank of America

Bank of America

Sydney, NSW, Australia
Posted on Monday, June 26, 2023

Job Description:

About Us

At Bank of America, we are guided by a common purpose to help make financial lives better through the power of every connection.  Responsible Growth is how we run our company and how we deliver for our clients, teammates, communities and shareholders every day.

One of the keys to driving Responsible Growth is being a great place to work for our teammates around the world. We’re devoted to being a diverse and inclusive workplace for everyone. We hire individuals with a broad range of backgrounds and experiences and invest heavily in our teammates and their families by offering competitive benefits to support their physical, emotional, and financial well-being.


Bank of America believes both in the importance of working together and offering flexibility to our employees. We use a multi-faceted approach for flexibility, depending on the various roles in our organization.


Working at Bank of America will give you a great career with opportunities to learn, grow and make an impact, along with the power to make a difference. Join us!

Your background

  • Proven experience handling Information Security related events and incidents
  • Experience in an operations focused role with an emphasis on cyber incident response
  • Demonstrable experience in the coordination of containment activities related to cyber security incidents
  • Familiarity with security vulnerabilities exploits and APT tools, techniques, and procedures
  • Familiarity with network security vulnerabilities, exploits, malware, and digital forensics desirable
  • An excellent verbal and written communicator who can adapt to their audience
  • Decisive and can make difficult decisions in what can be a high-pressure environment
  • Exercise independent judgment in methods, techniques, and evaluation criteria for obtaining results
  • Able to handle multiple competing priorities in a fast-paced environment and act without causing an undue delay
  • Supportive and can work well as part of a team as well as independently
  • Ability to remain calm under pressure
  • Ability to work in a strong team-orientated environment with a sense of urgency and resilience
  • Must be able to think outside the box and develop solutions to accomplish seemingly impossible tasks whilst remaining risk and objective focused, with an investigative mindset
  • Security+ or equivalent certification 
  • GCIH or equivalent certification required within six months of employment. 

What you can expect

Cyber Incident Response and Management is part of the Cyber Response & Recovery division who provides a globally coordinated and managed response capability for information security events and incidents that may impact the confidentiality, integrity, and/or availability of the Bank’s information and information systems or has privacy implications. 

The role of the Senior Incident Manager is to coordinate the response and recovery activities from information security incidents. This includes collaboration with appropriate response, assist with determining the root cause of incidents and work with stakeholders and responsible parties to remediate any identified control gaps or failures; Escalate issues to management in a timely manner with appropriate information regarding severity, exposure, and action items; this role requires critical thinking and investigative mindset coupled effective written, and verbal communication skills. 

This is a senior role on the team with high visibility at the global level including interacting with and providing direct updates to executives and senior leadership stakeholders. A Senior Incident Manager provides their knowledge and expertise in incident response to lead, mentor, and challenge associates on the team. The team conducts follow-the-sun (FTS) operations which you will work closely with AMRS and APAC regions.

What you will do 

  • Establish oversight of information security events and cyber incidents and communicate analysis, containment and remediation efforts to all business partners.
  • Cyber incident response and recovery plans will be available to use and should be maintained by the team. Any issues that require management escalation will be expected to be completed in a timely manner including all appropriate information in relation to risk and action times.
  • The Cyber Incident Manager will be expected to provide status updates and post-incident findings for executives and stakeholders in non-technical terms encompassing risk, impact, likelihood, containment and remediation activities and threat actors.
  • Risk management including briefing and recommending actions to executive leadership within Global Information Security and other business partners on events and incidents 
  • The incident manager will be part of a global 24/7/365 follow-the-sun rotation and there is a requirement to work 3-5 weekends per year on an on-call basis as a primary contact and 2-3 weekends as a secondary contact. There will also be a requirement to cover holidays for other regions.