CLS is the trusted party at the centre of the global FX ecosystem. Utilized by thousands of counterparties, CLS makes FX safer, smoother and more cost effective. Trillions of dollars’ worth of currency flows through our systems each day.
Created by the market for the market, our unrivalled global settlement infrastructure reduces systemic risk and provides standardization for participants in many of the world’s most actively traded currencies. We deliver huge efficiencies and savings for our clients: in fact, our approach to multilateral netting shrinks funding requirements by over 96% on average, so clients can put their capital and resources to better use.
CLS products are designed to enable clients to manage risk most effectively across the full FX lifecycle – whether through more efficient processing tools or market intelligence derived from the largest single source of FX executed data available to the market.
Job information:
- Functional title – Cyber & Network Security Engineer
- Department - CISO
- Report to – Cyber & Network Security Engineering Lead
What you will be doing:
The Assistant Vice President (AVP), Security Engineering is a junior technical engineering role responsible for assisting with the deployment, automation, and operational support of enterprise security platforms and controls. Ideally the candidate will have some AWS cloud infrastructure security tooling integration, security automation experience.
This role requires a hands‑on engineer who can build and deploy AWS‑based environments to evaluate, test, and operationalize new security technologies and engineer off the shelf security tools. They need to have an openness and desire to learn and get stuck in and help solve problems. They will be supported and mentored by senior engineers in the team.
Key Responsibilities:
Security Engineering & Tool Deployment
- Assist with configuring and maintaining enterprise security platforms and services.
- Be willing to assist and learn the following products with the mentoring of more senior security engineers (experience with any of the below is desirable but not essential)
- Splunk Enterprise / Splunk Cloud
- Forcepoint Web Security
- Forcepoint Email Security & DLP
- Zscaler DLP and Internet Access
- Microsoft Purview DLP
- Qualys VMDR
- Additional threat detection, monitoring, and data protection technologies.
- Troubleshoot platform, infrastructure, and integration issues across security ecosystems.
- Help build and manage AWS environments used for proof‑of‑concepts, product evaluation, security testing, and production deployments.
- Develop repeatable Infrastructure-as-Code (IaC) capabilities for rapid deployment of security tooling.
- EC2
- VPCs
- Security Groups
- IAM
- Route53
- S3
- Lambda
- CloudWatch
- GuardDuty
- AWS Organizations
- Support secure cloud adoption initiatives and platform modernization programs.
Security Automation & Development
- Develop automation solutions using Python to reduce operational overhead and improve security effectiveness.
- Create and maintain scripts, APIs, orchestration workflows, and automation frameworks for:
- Security tool deployment
- Configuration management
- Monitoring and alerting
- Compliance validation
- Data collection and reporting
- Integrate security tooling with enterprise workflows and operational platforms.
Security Monitoring & Detection Engineering
- Design and implement security monitoring use cases.
- On board new log sources.
- Develop Splunk searches, correlation rules, dashboards, and reporting capabilities.
- Improve threat detection coverage through security telemetry integration and log onboarding.
- Partner with Cyber Defense teams to improve detection engineering and incident response capabilities.
Data Protection Engineering
- Deploy and manage enterprise Data Loss Prevention (DLP) solutions.
- Configure and optimize:
- Forcepoint DLP
- Microsoft Purview DLP
- Work with data owners and security architects to implement controls protecting sensitive information.
Technical Leadership
- Collaborate closely senior engineers and architects to deliver secure‑by‑design solutions.
- Support security technology roadmaps and strategic initiatives.
Experience
- 2-3 years of experience in Security Engineering, Cloud Security Engineering, or Infrastructure Security.
- Experience building and deploying AWS environments from the ground up.
- Hands‑on experience onboarding, configuring, and operating enterprise security platforms.
- Strong experience automating security operations using Python.
- Experience supporting security technology evaluations, proof‑of‑concepts, and production rollouts.
Technical Skills:
- AWS (preferred)
- Infrastructure-as-Code concepts
- Linux and Windows administration
- Networking fundamentals (TCP/IP, DNS, HTTP/S, Routing, Proxies)
Desirable Security Technologies (all not essential)
- Splunk
- Forcepoint Web Security
- Forcepoint DLP
- Forcepoint Email Security
- Microsoft Purview DLP
- SIEM, Endpoint Detection & Response (EDR), DLP, and Vulnerability Management technologies
- Ansible
- SCCM
Development & Automation
- SPL
- Python
- REST APIs
- Automation frameworks
- Scripting and orchestration
- CI/CD concepts
Desirable Qualifications
- AWS Solutions Architect, Security Specialty, or equivalent certification.
- Splunk Power User, Admin, or Architect certification.
- Experience with Terraform or CloudFormation.
- Troubleshooting and problem‑solving skills.
- Strong engineering mindset with a passion for automation.
- Strong desire to learn new technologies.
Success Measures
- Engineering and onboarding of security technologies.
- Increased automation and reduction in manual operational effort.
- Improved security monitoring and detection capabilities.
- Effective implementation of DLP and data protection controls.
- Stable, scalable, and secure AWS‑hosted security infrastructure.
- Successful delivery of security engineering initiatives aligned with business and security objectives.
What we’re looking for:
- 2-3 years’ experience in security engineering / cyber engineering / engineering
- Engineering mindset: able to go deep on architecture, automation, telemetry, and operational resilience.
- Data-driven and outcome-focused, with a bias toward measurable security improvements.
- Comfortable operating in fast‑paced, evolving environments.
- Willingness to learn and tackle new challenges.
Our commitment to employees:
We are a small company with a big mandate, so every person is essential to our success. We are also committed to employing and retaining the most talented and dedicated people.
What makes us interesting goes beyond our competitive salaries and great benefits. Our work environment is designed around quality outcomes, not output. The FX market would cease to function without our services, and we take pride in being responsible for keeping it running smoothly.
We are different from other financial institutions in that we have a flatter and more transparent structure, with accessible leadership. You will be seen, heard and empowered to develop your career.
We are a purpose‑driven organization, with an inclusive culture that focuses on doing what is right. The well‑being of our people is as important to us as the resilience of our systems. In addition to encouraging our people to ‘locate for your day,’ we run a range of initiatives that support a sense of belonging, as well as physical, emotional and mental well‑being.
Our extensive benefits for employees typically include:
- Vacation/annual leave: 25 days in UK/Asia + 3 life days, 23 in US + 3 life days
- Private medical and dental cover and life insurance
- Generous pension contributions in the UK and Asia; matching 401(k) in the US
- ‘Locate for your day’ hybrid working - 2 days a week in office
- Access to Discover – our learning platform with 1000+ courses from LinkedIn Learning
- Paid parental leave / Coaching and support services
- ‘Heads down days’ with no meetings on the last Friday of every month
- Employee Networks (Black Employee Network, Parents & Caregivers Network, Pride Network, Sustainability Network, Veterans Network, Women’s Forum)
- Social events
Awards:
- The Sunday Times Best Places to Work 2023, 2024, 2025 / Big Company / The Sunday Times Awards
- Third place in Britain’s Healthiest Workplace 2022 / Medium Company / Vitality Awards