AVP - IT Security Specialist
London, England, United Kingdom
CLS Group
CLS's innovative settlement, processing and data solutions reduce risk and deliver efficiency.About CLS:
CLS is the trusted party at the centre of the global FX ecosystem. Utilized by thousands of counterparties, CLS makes FX safer, smoother and more cost effective. Trillions of dollars’ worth of currency flows through our systems each day.
Created by the market for the market, our unrivalled global settlement infrastructure reduces systemic risk and provides standardization for participants in many of the world’s most actively traded currencies. We deliver huge efficiencies and savings for our clients: in fact, our approach to multilateral netting shrinks funding requirements by over 96% on average, so clients can put their capital and resources to better use.
CLS products are designed to enable clients to manage risk most effectively across the full FX lifecycle – whether through more efficient processing tools or market intelligence derived from the largest single source of FX executed data available to the market.
Our ambition to make a positive difference starts with our people. Our values – Protect, Improve, Grow – underpin everything that we do at CLS and define and shape a supportive and inclusive working environment in which everyone is encouraged to be open and forward-thinking.
Job information:
- Functional title - IT Security Specialist
- Department - Technology
- Corporate level - AVP
- Location - London, onsite 2 days per week
What you will be doing:
The AVP IT Security Specialist role is responsible for the delivery of security related activities and enhancements of security solutions to improve the security posture of the CLS estate.
This individual will interact with the IT Security Architecture Team, IT Security Operations Team, Project Management Teams, global IT Teams, and outsourcing partners to deliver solutions that enhance the overall security program for CLS.
- As part of the CLS Information Security BISO team, develop and implement CLS security strategy in consultation with CLS and vendor IT teams, ensuring that all initiatives are mirrored in respective strategies including the overall CLS Strategy
- Provide technical security governance, advice and support for information technology projects and day-to-day activities
- Liaise with our outsourcing partner and provide security assurance for BAU activities such as security operations, incident management and vulnerability management
- Chair weekly meetings with our outsourcing partner to review and approve security control tuning
- Chair daily security management review meetings with our outsourcing partner, to provide situational awareness and a level of due diligence
- Review and help refine CLS security operation procedures to ensure compliance with cyber resilience requirements
- Assist with the remediation of security related Regulatory and Internal Audit finding(s)
- Improving current reporting and metrics in relation to security posture, vulnerability and risk management
- Performing regular security document review and enhancements
- Support red and purple team penetration activities and remediation of findings
- Work as a team member and individual contributor being able to work independently and confidently without direct supervision
- Strong communication (verbal and written) skills to engage with technical and non-technical audiences
- Ability to clarify technical detail and confidently communicate business risks to senior management
- Execute the overall CLS Security vision and mission, as well as with CLS’s strategic direction as it pertains to cyber resilience.
What we’re looking for:
- A minimum of 3 years of information security experience
- Intermediate knowledge of one or more of the following: firewalls, TCP/IP, network IDS/IPS, host-based IDS/IPS, endpoint and network-based DLP, web proxies, email protection, endpoint protection software, SIEM
- Broad knowledge of IT and Security processes, methodologies and frameworks
- Ability to collaborate effectively with others to drive forward key security objectives
- Strong documentation and report writing skills (to both technical and business audiences)
- Excellent time management and organizational skills combined with technical CLS Security acumen
- Financial and/or Banking industry experience preferred
Professional qualifications / certifications:
- in a technology discipline (Computer Science, Information Management, Computer Engineering, Cybersecurity or equivalent) or Security Certifications such as CISSP, CISM, SANS GIAC GSEC, GCED, GCIA, GCIH, GREM; or Cisco CCNA, CCNP; or equivalent
- Industry recognized cloud security qualifications (e.g. CCSK, CCSP, AWS Security Fundamentals, AWS Certified Security)
- Knowledge of frameworks and regulations, such as: ISO 27001/2, SANS Top 20 Critical Security Controls, NIST 800-53/800-61/CSF, FFIEC handbook, GDPR, DORA, Reg HH etc.
Our commitment to employees:
At CLS, we celebrate diversity and consider this to be one of our strongest assets. We are committed to fostering an environment in which everyone feels comfortable to be who they are, and inclusion is valued. All employees have access to our inclusive benefits, including:
- Holiday - UK/Asia: 25 holiday days and 3 ‘life days’ (in addition to bank holidays). US: 23 holiday days.
- 2 paid volunteer days so that you can actively support causes within your community that are important to you.
- Generous parental leave policies to ensure you can enjoy valuable time with your family.
- Parental transition coaching programmes and support services.
- Wellbeing and mental health support resources to ensure you are looking after yourself, and able to support others.
- Affinity Groups (including our Women’s Forum, Black Employee Network and Pride Network) in support of our organisational commitment to embrace and always be learning more about DE&I.
- Hybrid working to promote a healthy work/life balance, enabling employees to work collaboratively in the office when needed and work from home when they don’t.
- Active support of flexible working for all employees where possible.
- Monthly ‘Heads Down Days’ with no meetings across the whole company.
- Generous non-contributory pension provision for UK/Asia employees, and 401K match from CLS for US employees.
- Private medical insurance and dental coverage.
- Social events that give you opportunities to meet new people and broaden your network across the organisation.
- Annual flu vaccinations.
- Discounts and savings and cashback across a wide range of categories including health and retail for UK employees.
- Discounted Gym membership – Complete Body Gym Discount/Sweat equity program for US employees.
- All employees have access to Discover – our comprehensive learning platform with 1000+ courses from LinkedIn Learning.
- Access to frequent development sessions on a number of topics to help you be successful and develop your career at CLS.
* Salary range is an estimate based on our InfoSec / Cybersecurity Salary Index 💰
Tags: AWS Banking BISO CCNP CCSK CCSP CISM CISSP Cloud Compliance Computer Science FFIEC Firewalls GCED GCIA GCIH GDPR GIAC Governance GREM GSEC IDS IPS ISO 27001 NIST NIST 800-53 Risk management SANS Security strategy SIEM Strategy TCP/IP Vulnerability management
Perks/benefits: 401(k) matching Career development Fitness / gym Flex hours Health care Medical leave Parental leave Team events
More jobs like this
Explore more career opportunities
Find even more open roles below ordered by popularity of job title or skills/products/technologies used.