The Senior IT Security Analyst will act as a subject matter expert and escalation point for advanced identity and access management incidents, focusing on Microsoft Entra ID and hybrid identity solutions. The role involves troubleshooting, managing identity risks, collaborating with Microsoft teams, and mentoring junior engineers to enhance internal IAM capabilities. Candidates should have extensive experience in IAM engineering, incident management, and relevant Microsoft certifications.
Some careers have more impact than others. If you’re looking for a career where you can make a real impression, join HSBC and discover how valued you’ll be. We are currently seeking an experienced professional to join our team in the role of Senior IT Security Analyst. Business: Cybersecurity. Principal responsibilities: Act as SME and final escalation point for incidents related to Microsoft Entra ID, Identity Protection, Conditional Access, MFA, Privileged Identity Management (PIM), and Cloud Infrastructure Entitlement Management (CIEM). Troubleshoot and remediate hybrid identity issues involving on-premises Active Directory, Azure AD Connect, and AD FS. Manage identity risk investigations, suspicious sign-in events, and Conditional Access enforcement issues. Support integration of Microsoft Defender for Identity with Entra ID and on-prem AD for advanced threat detection and response. Provide expert IAM support across Microsoft Entra, AWS IAM, and GCP IAM. Lead advanced RCAs for high-severity identity incidents and drive permanent fixes. Collaborate with Microsoft engineering and product teams on complex escalations. Create advanced runbooks, troubleshooting playbooks, and automation scripts. Partner with application, infrastructure, and security teams to secure IAM integrations. Mentor Level 1 and Level 2 engineers to build internal IAM capability. Participate in on-call rotations and provide leadership during major incidents. Knowledge & Experience/Qualifications: Expert-level knowledge of Microsoft Entra ID (Azure AD), including Identity Protection, Conditional Access, PIM, CIEM, and Governance. Strong expertise in hybrid identity environments: AD DS, AD Connect, AD FS. Hands-on experience with Microsoft Defender for Identity. Deep understanding of authentication and authorization protocols: SAML, OAuth, OpenID Connect, Kerberos, LDAP. Experience managing IAM integrations with AWS IAM and GCP IAM. Advanced PowerShell scripting and automation capabilities. Proven track record in high-severity incident management and RCA delivery. Microsoft certifications: SC-300, SC-100, AZ-500, or equivalent. 7-10 years’ experience in IAM engineering or advanced enterprise support. Experience with large-scale application onboarding and federation to Entra ID. Familiarity with Zero Trust security architecture. HSBC Technology China develops, implements and supports software and IT services and processes that allow HSBC to remain at the forefront of high-quality banking systems. HSBC is an equal opportunity employer committed to building a culture where all employees are valued, respected and opinions count. Personal data held by the Bank relating to employment applications will be used in accordance with our Privacy Statement, which is available on our website. Issued By HSBC Software Development (GuangDong) Limited.