Are you a top-tier Cyber Security specialist and want to use your expertise to help safeguard the infrastructure that powers global financial markets?
We are seeking a Cyber Security Controls Specialist to work within the engineering team. This role is important in ensuring that our controls are well-understood, effectively implemented, and accurately represented during internal and external audits and assessments.
The ideal candidate will bring a strong blend of technical expertise, audit experience, and risk management knowledge. You will be the lead in representing technical controls to auditors, translating sophisticated security controls into clear, auditable evidence and narratives. You will help the teams in ensuring robust evidence exists to support control design and operation on an ongoing basis.
Key Responsibilities:
Control Testing & Validation:Conduct proactive internal control assessment activities to validate the effectiveness of controls and identify areas for improvement for the team. Ensuring controls are accurately documented, maintained and with the correct measurements in place to simplify audit and assessment activities.
Audit & Assessment:Lead the team response to audits, regulatory, customer assessments, and compliance reviews by representing and providing clear, concise, and technically accurate evidence and explanations. A key outcome is servicing multiple concurrent audit and assessment activities through standardised processes and evidence.
Technical Translation:Translate sophisticated technical security concepts and measures into plain-friendly language appropriate for collaborators, auditors, and risk managers.
Risk Management:
Collaborate with teams to ensure cyber risks are appropriately identified, assessed, accurately recorded and mitigated through effective control design and operation.
Continuous Improvement:
Identify gaps or weaknesses in existing controls and related documentation and recommend improvements by working closely with the control owners. Being technical, you have the ability to not only understand how security controls work but to influence how they're designed, implemented, and measured in conjunction with the team.
Required Qualifications & Experience:
Audit & Controls Experience:Proven experience working in a technical audit role assessing controls in highly regulated global organisations. Has comprehensive understanding of control evidencing and appropriate robust measures.
Technical Cyber Security Expertise:Strong understanding of common security technologies, security threats, security frameworks, foundational technologies such as cloud and associated processes.
Practical experience of providing guidance and support to first line of defence technical engineering teams in uplifting control related evidence and measures. Demonstration of continuous learning to expand technical understanding of controls to a comprehensive level.
Communication Skills:Outstanding ability to communicate technical concepts to non-technical audiences, including auditors, senior management, and business partners. Comfortable in questioning and challenging assertions when the facts, metrics and anecdotes differ.
Risk Management:
Solid understanding of risk management principles and how they apply to cyber security controls and governance. Experience of transforming risk conversations from theoretical to actionable, challenge assumptions, and bridge the gap between policy and practice. Experience of working in common GRC tooling platforms to capture and handle issues and risks.Continuous Control Monitoring & Automation (Preferred):
Experienced in automating controls monitoring, analysis and evidence collection to simplify assurance processes.Certifications (Preferred):
CISSP, CISA, CRISC or similar, and technical security certifications are highly desirable.
Join us and be part of a team that values innovation, quality, and continuous improvement. If you're ready to take your career to the next level and make a significant impact, we'd love to hear from you.
LSEG is a leading global financial markets infrastructure and data provider. Our purpose is driving financial stability, empowering economies and enabling customers to create sustainable growth.
Our purpose is the foundation on which our culture is built. Our values of Integrity, Partnership, Excellence and Change underpin our purpose and set the standard for everything we do, every day. They go to the heart of who we are and guide our decision making and everyday actions.
Working with us means that you will be part of a dynamic organisation of 25,000 people across 65 countries. However, we will value your individuality and enable you to bring your true self to work so you can help enrich our diverse workforce.
We are proud to be an equal opportunities employer. This means that we do not discriminate on the basis of anyone's race, religion, colour, national origin, gender, sexual orientation, gender identity, gender expression, age, marital status, veteran status, pregnancy or disability, or any other basis protected under applicable law. Conforming with applicable law, we can reasonably accommodate applicants' and employees' religious practices and beliefs, as well as mental health or physical disability needs.
You will be part of a collaborative and creative culture where we encourage new ideas. We are committed to sustainability across our global business and we are proud to partner with our customers to help them meet their sustainability objectives. Our charity, the LSEG Foundation provides charitable grants to community groups that help people access economic opportunities and build a secure future with financial independence. Colleagues can get involved through fundraising and volunteering.
LSEG offers a range of tailored benefits and support, including healthcare, retirement planning, paid volunteering days and wellbeing initiatives.
Please take a moment to read this privacy notice carefully, as it describes what personal information London Stock Exchange Group (LSEG) (we) may hold about you, what it's used for, and how it's obtained, your rights and how to contact us as a data subject.
If you are submitting as a Recruitment Agency Partner, it is essential and your responsibility to ensure that candidates applying to LSEG are aware of this privacy notice.
MNCJobs.co.uk will not be responsible for any payment made to a third-party. All Terms of Use are applicable.