Enable job alerts via email!

VP - Senior Threat Hunter

CLS Group

Greater London

Hybrid

GBP 60,000 - 100,000

Full time

8 days ago

Boost your interview chances

Create a job specific, tailored resume for higher success rate.

Job summary

Join a forward-thinking company as a Senior Threat Hunter, where your expertise will be vital in safeguarding critical infrastructure. This role involves leading proactive efforts against sophisticated cyber threats, utilizing advanced tools and techniques. Collaborate with a global team to enhance security measures and mentor fellow team members. With a commitment to employee well-being and a supportive culture, you will thrive in an environment that values innovation and inclusivity. If you're ready to make a significant impact in the cybersecurity landscape, this opportunity is for you.

Benefits

25 days vacation plus additional life days
Private medical and dental cover
Generous pension contributions
Hybrid working model
Access to learning platform with 1000+ courses
Paid parental leave
Diversity and Affinity groups
Social events
Heads down days with no meetings

Qualifications

  • 6-10+ years of direct threat hunting experience.
  • 5+ years in information security, preferably in Threat Intelligence.

Responsibilities

  • Lead efforts to identify and mitigate cyber threats using various tools.
  • Research and develop Use Cases for proactive hunting in cybersecurity.

Skills

Threat Hunting
Incident Response
Cyber Security
Analytical Skills
Interpersonal Skills

Education

Bachelor's Degree in Cybersecurity
Security Certification (SANS GIAC)

Tools

SIEM
EDR
Splunk
Network Monitoring Tools

Job description

CLS Group Greater London, England, United Kingdom

VP - Senior Threat Hunter

CLS Group Greater London, England, United Kingdom

3 weeks ago Be among the first 25 applicants

Direct message the job poster from CLS Group

About CLS:

CLS is the trusted party at the centre of the global FX ecosystem. Utilized by thousands of counterparties, CLS makes FX safer, smoother and more cost effective. Trillions of dollars’ worth of currency flows through our systems each day.

Created by the market for the market, our unrivalled global settlement infrastructure reduces systemic risk and provides standardization for participants in many of the world’s most actively traded currencies. We deliver huge efficiencies and savings for our clients: in fact, our approach to multilateral netting shrinks funding requirements by over 96% on average, so clients can put their capital and resources to better use.

CLS products are designed to enable clients to manage risk most effectively across the full FX lifecycle – whether through more efficient processing tools or market intelligence derived from the largest single source of FX executed data available to the market.

Our ambition to make a positive difference starts with our people. Our values – Protect, Improve, Grow – underpin everything that we do at CLS and define and shape a supportive and inclusive working environment in which everyone is encouraged to be open and forward-thinking

Job information:

  • Functional title – Senior Threat Hunter
  • Department – IT Security
  • Report to – Executive Director

Job purpose:

CLS is seeking a highly motivated, and skilled Senior Threat Hunter to join a global threat management team. The role will be located in London. The position will report to the Head of Cyber Threat Intelligence and will proactively identify, investigate, and mitigate advanced cyber threats across our organization’s network and systems. Leveraging a deep understanding of the latest attack techniques, threat actor tactics, and security tools, you will help safeguard our infrastructure and ensure the resilience of our networks. The ideal candidate will be aware of industry trends and frameworks and how they could impact our business. This role will also be responsible for mentoring others on the team.

This position requires someone with an analytical mind, a quick learner, and the ability to create and deliver briefings, propose, and execute program initiative’s/improvements, and collaborate with a wide range of key stakeholders.

Key responsibilities include:

  • Lead proactive efforts to identify and mitigate sophisticated cyber threats, leveraging a variety of tools, techniques, and data sources
  • Research, document, and develop Use Cases and Hypotheses for proactive hunting in cyber security tools including SIEM, EDR, and IDS/IPS (extract TTPs and behaviours from research to apply to logging and tool queries/hunts and detections)
  • Research, document and develop threat detections based on behavioural attributes of actors, malware operators, and general threats
  • Identify and execute tuning/configuration changes to improve detection or reporting capabilities
  • Perform deep analysis of alerts, network traffic, and security data to detect anomalous activity, indicators of compromise, and advanced persistent threats (APTs)
  • Collaborate with the Security Operations team to investigate and respond to active incidents as needed
  • Translate threat intelligence into actionable threat hunting hypotheses
  • Maintain clear documentation of threat hunting activities, findings, and lessons learned.
  • Produce reports for both executive and technical stakeholders and be able to brief all stakeholders.
  • Develop and maintain threat models for key assets within the ecosystem
  • Map existing controls to MITRE ATT&CK TTPs and assist with developing new mitigations
  • Actively support external intelligence sharing engagements with other financial institutions and government partners

Knowledge, skills and abilities:

  • 6-10+ years of direct threat hunting experience
  • 5+ years of progressive experience in information security (cyber security) field, preferable in Threat Intelligence, Security Operations or Incident Response roles
  • Understanding of intelligence lifecycle and risk management
  • Knowledge of fundamentals of threat actors’ TTPs
  • Familiarity with MITRE ATT&CK framework and mapping
  • Experience with threat intelligence platforms and analysing indicators of compromise, TTPs, and adversary behaviour
  • Knowledge of TCP/IP, network protocols, and deep packet inspection
  • Excellent interpersonal and relationship management skills
  • Individual contributor whilst also contributing to a small team
  • Self-motivated with ability to work with minimal supervision

Qualifications and certifications:

  • Bachelor’s Degree in Cybersecurity studies, Computer Science, Intelligence Studies, International Relations, or related discipline
  • Security certification such as SANS GIAC (or equivalent) ideally GCFA, GNFA or working towards certification (or equivalent)
  • Experience with threat intelligence and SOC/CIRT interaction
  • Splunk experience is highly preferred
  • Scripting or automation knowledge, especially Python experience is highly preferred
  • Experience with SIEM, EDR solutions, network monitoring tools, and other cyber security tools
  • Experience with threat intelligence vendors
  • Ability to work on-site at least twice a week in London and/or participate in local intelligence sharing groups

Our commitment to employees:

We are a small company with a big mandate, so every person is essential to our success. We are also committed to employing and retaining the most talented and dedicated people.

What makes us interesting goes beyond our competitive salaries and great benefits. Our work environment is designed around quality outcomes, not output. The FX market would cease to function without our services, and we take pride in being responsible for keeping it running smoothly.

We are different from other financial institutions in that we have a flatter and more transparent structure with accessible leadership. You will be seen, heard and empowered to develop your career.

We are a purpose-driven organization, with an inclusive culture that focuses on doing what is right. The well-being of our people is as important to us as the resilience of our systems. In addition to encouraging our people to ‘locate for their day,’ we run a range of initiatives that support employees’ sense of belonging and physical, emotional and mental well-being.

Our extensive benefits for employees typically include:

  • Vacation/annual leave: 25 days in UK/Asia + 3 life days, 23 in US + 3 life days
  • Private medical and dental cover and life insurance
  • Generous pension contributions in the UK and Asia; matching 401(k) in the US
  • ‘Locate for your day’ hybrid working – 2 days a week in office.
  • Access to Discover – our learning platform with 1000+ courses from LinkedIn Learning.
  • Paid parental leave / Coaching and support services
  • ‘Heads down days’ with no meetings on the last Friday of every month
  • Diversity Council / Affinity groups (Women’s Forum, Black Employee Network, Pride Network, Parents & Caregivers Network, Sustainability Network)
  • Social events

Awards:

  • The Sunday Times Best Places to Work 2023 & 2024 / Big Company / The Sunday Times Awards
  • Third place in Britain’s Healthiest Workplace 2022 / Medium Company / Vitality Awards
Seniority level
  • Seniority level
    Mid-Senior level
Employment type
  • Employment type
    Full-time
Job function
  • Job function
    Information Technology
  • Industries
    Financial Services, Banking, and Investment Banking

Referrals increase your chances of interviewing at CLS Group by 2x

Get notified about new Information Technology Specialist jobs in Greater London, England, United Kingdom.

London, England, United Kingdom 2 weeks ago

London, England, United Kingdom 1 week ago

London, England, United Kingdom 6 hours ago

Hounslow, England, United Kingdom 2 weeks ago

London, England, United Kingdom 3 weeks ago

London, England, United Kingdom 1 day ago

London, England, United Kingdom 2 weeks ago

London, England, United Kingdom 4 weeks ago

Battersea, England, United Kingdom 3 days ago

Greater London, England, United Kingdom 1 week ago

London, England, United Kingdom 3 weeks ago

London, England, United Kingdom 2 weeks ago

London, England, United Kingdom 4 weeks ago

London, England, United Kingdom 1 day ago

Bromley, England, United Kingdom 1 month ago

London, England, United Kingdom 1 week ago

Sigma Labs - Graduate Technical Consultant

London, England, United Kingdom 2 months ago

Information Technology Compliance Consultant

Uxbridge, England, United Kingdom 3 days ago

London, England, United Kingdom 2 days ago

London, England, United Kingdom 1 week ago

London, England, United Kingdom 2 weeks ago

London, England, United Kingdom 4 hours ago

Independent Expert in Digital and Technology Transformation

London, England, United Kingdom 2 weeks ago

London, England, United Kingdom 9 hours ago

London, England, United Kingdom 3 months ago

London, England, United Kingdom 2 weeks ago

London, England, United Kingdom 1 month ago

London, England, United Kingdom 2 weeks ago

Greater London, England, United Kingdom 6 days ago

London, England, United Kingdom 2 weeks ago

Transformation Solution Consultant, Digital Experience

London, England, United Kingdom 1 week ago

Presales Consultant – Technology Solutions

London, England, United Kingdom 6 months ago

Junior Systems Administrator - Internship

London, England, United Kingdom 2 weeks ago

London, England, United Kingdom 2 weeks ago

Greater London, England, United Kingdom 3 weeks ago

London, England, United Kingdom 3 days ago

We’re unlocking community knowledge in a new way. Experts add insights directly into each article, started with the help of AI.

Get your free, confidential resume review.
or drag and drop a PDF, DOC, DOCX, ODT, or PAGES file up to 5MB.

Similar jobs

VP - Senior Threat Hunter

JR United Kingdom

London

Hybrid

GBP 60,000 - 100,000

Yesterday
Be an early applicant

VP of Engineering - Cloud, AI, and Microservices.

Bounty Hunter World

London

On-site

GBP 80,000 - 120,000

14 days ago

VP of Credit Risk Management

Hunter Bond

London

Hybrid

GBP 90,000 - 120,000

30+ days ago

VP of Accounting Business Analysis

Hunter Bond

London

Hybrid

GBP 90,000 - 115,000

30+ days ago