At a Glance
- Tasks: Lead a team to design and implement security architecture for new technologies.
- Company: LSEG is a global leader in financial markets infrastructure and data services.
- Benefits: Enjoy healthcare, retirement planning, paid volunteering days, and wellbeing initiatives.
- Why this job: Join a dynamic team making a real impact on cybersecurity in finance.
- Qualifications: 10+ years in technical engineering or information security, with strong leadership skills.
- Other info: Work in a collaborative environment with opportunities for remote and offshore team management.
The predicted salary is between 54000 - 84000 £ per year.
LSEG
LSEG is your trusted global financial markets infrastructure and data provider. Discover how we deliver value for our customers.
Role: Senior Manager – Secure Design (People Leader)
Grade: GG14
The Security Architecture Design team is responsible for developing Security Architecture patterns; developing security controls needed for new technology; promoting the use of the architectural patterns into development projects; leading the Security Architecture Design Forum; evaluating architectural security risks in existing systems; consulting with system development teams and architects on building security into their design.
This role has responsibility for building and setting the direction of the team, and for the team’s output.
Reports to: Director – Security Architecture
Key relationships & committees:
- Security Domain Forum (chair)
- Business Aligned Principal Security Architects
- CyberSecurity Engineering
- CyberSecurity Application Security Team
- Cloud Security Architecture
Key responsibilities:
- Lead and manage the Security Architecture – Design team – a team of technical professionals.
- Chair the Security Architecture Design Forum.
- Design and publish Security Architecture Design Patterns and Standards to comply with group security requirements, industry standards, customer requirements, regulatory requirements, and best practices.
- Own, develop, and champion a Security Architecture control framework.
- Research, design, and document the security posture requirements and controls of new technology introduced into the Group.
- Own the Security Architecture evaluation of risks identified in systems, including reviewing and proposing tactical and strategic remediation plans.
- Consult and champion the adoption of security design with technical delivery teams.
- Engage with the BISO and Solution architects in the development of product-specific information security plans.
- Nurture and enforce technical practices in order to deliver technical excellence.
- Manage third parties in their deliveries related to the domain area.
- Ensure finances for the team and any product or services are accurately budgeted for and managed.
- Provide company representation, internally and externally, related to information security as needed.
- Establish metrics and monitoring to report the effectiveness and efficiency of the Security Architecture function.
Leadership responsibilities:
- Leader and manager of a team of Security Architects, as well as consulting/scaleout resources as needed.
- Leadership/chair of group-wide initiatives and forums.
- Ensure the team has the correct resources allocated to deliver.
Critical deliverables:
- Building the Security Architecture Design Team.
- Delivering the security design patterns, with a full audit trail.
- Developing and maintaining the security architecture control framework.
- Ensuring Security Architecture is built into group-wide and business-specific processes.
- Developing and publishing core metrics for the security architecture team.
Impact:
This is a group-wide role which is highly important to the management of security risks associated with business technology systems. The role is key to addressing regulatory concerns related to cyber security and cyber resilience.
Notable KPIs:
- Delivery of design patterns (pace of delivery and coverage of pattern library).
- Internal consulting hours recharged.
- Functional and security risk metrics designed, delivered, and reported on.
- All finances for the team are managed accurately.
Technical / job functional knowledge:
- 10+ years of increasing responsibility in technical engineering or information security roles, security architecture preferred.
- Experience in enterprise architecture frameworks.
- Experience in threat modeling/design patterns.
- Proven experience in designing and applying security controls into distributed systems.
- Thorough understanding of the latest security principles, techniques, and protocols.
- Critical thinker with problem-solving skills.
- Deep understanding of common as well as emerging vulnerabilities.
- Familiarity with OWASP Top 10, SANS Top 25, NIST/CSC, CIS, etc.
- Applied understanding of topics such as authentication, access control, encryption, cloud security, etc.
- Familiarity with common Developer Tools (GitLab/Azure DevOps) and experience with YAML/Markdown/Terraform.
Business and sector expertise:
- Preferred prior experience in the financial services and/or technology sector.
- Preferred prior experience in a heavily regulated environment.
Leadership and management experience:
- Experience in recruiting, supporting & managing specialist individual contributors in technology domains.
- Experience in managing remote and offshore team members.
- Must have a collaborative work style.
- Highly adaptable and able to approach challenges differently.
LSEG is a leading global financial markets infrastructure and data provider. Our purpose is driving financial stability, empowering economies, and enabling customers to create sustainable growth.
Working with us means that you will be part of a dynamic organization of 25,000 people across 65 countries.
LSEG offers a range of tailored benefits and support, including healthcare, retirement planning, paid volunteering days, and wellbeing initiatives.
We are proud to be an equal opportunities employer.
#J-18808-Ljbffr
Cyber Security - Secure Design Lead employer: LSEG
Contact Detail:
LSEG Recruiting Team
StudySmarter Expert Advice 🤫
We think this is how you could land Cyber Security - Secure Design Lead
✨Tip Number 1
Familiarize yourself with the latest security principles and frameworks mentioned in the job description, such as OWASP Top 10 and NIST. This knowledge will not only help you in interviews but also demonstrate your commitment to staying updated in the field.
✨Tip Number 2
Engage with online communities or forums related to security architecture and design patterns. Networking with professionals in these spaces can provide insights into industry trends and may even lead to referrals for the position.
✨Tip Number 3
Prepare to discuss your leadership experience in managing technical teams. Highlight specific examples where you've successfully led projects or initiatives that align with the responsibilities of this role.
✨Tip Number 4
Research LSEG's current security initiatives and challenges. Being knowledgeable about their operations and how you can contribute to their goals will set you apart during the interview process.
We think you need these skills to ace Cyber Security - Secure Design Lead
Some tips for your application 🫡
Understand the Role: Make sure to thoroughly read the job description for the Cyber Security - Secure Design Lead position. Understand the key responsibilities and required skills, as this will help you tailor your application to highlight relevant experiences.
Highlight Relevant Experience: In your CV and cover letter, emphasize your 10+ years of experience in technical engineering or information security roles. Be specific about your experience with security architecture, threat modeling, and designing security controls in distributed systems.
Showcase Leadership Skills: Since this role involves leading a team, make sure to include examples of your leadership and management experience. Discuss how you've recruited, supported, and managed teams, especially in technology domains.
Tailor Your Application: Customize your cover letter to reflect your understanding of LSEG's mission and values. Mention how your background in financial services or regulated environments aligns with their needs, and express your enthusiasm for contributing to their goals.
How to prepare for a job interview at LSEG
✨Understand the Role and Responsibilities
Make sure you have a clear understanding of the key responsibilities outlined in the job description. Be prepared to discuss how your experience aligns with leading a Security Architecture Design team and managing security risks.
✨Showcase Your Technical Expertise
Highlight your experience with security architecture, threat modeling, and applying security controls. Be ready to discuss specific examples where you've successfully implemented security measures in distributed systems.
✨Demonstrate Leadership Skills
Since this role involves managing a team, be prepared to share your leadership experiences. Discuss how you've supported and developed team members, especially in a remote or offshore context.
✨Familiarize Yourself with Industry Standards
Brush up on relevant security frameworks and standards such as OWASP Top 10, NIST, and CIS. Being able to reference these during your interview will show that you're knowledgeable about current best practices in cybersecurity.