Director, Internal Audit (Information Security) in London

Director, Internal Audit (Information Security) in London

London Full-Time 80000 - 100000 € / year (est.) No home office possible
C

At a Glance

  • Tasks: Lead audits and assess IT controls in a dynamic financial environment.
  • Company: Join CLS, a key player in the global FX ecosystem.
  • Benefits: Enjoy competitive pay, generous leave, and wellness support.
  • Other info: Be part of a diverse team focused on innovation and professional growth.
  • Why this job: Make a real impact in a purpose-driven organisation with a flat structure.
  • Qualifications: Experience in internal audit and strong IT security knowledge required.

The predicted salary is between 80000 - 100000 € per year.

About CLS: CLS is the trusted party at the centre of the global FX ecosystem. Utilized by thousands of counterparties, CLS makes FX safer, smoother and more cost effective. Trillions of dollars’ worth of currency flows through our systems each day. Created by the market for the market, our unrivalled global settlement infrastructure reduces systemic risk and provides standardization for participants in many of the world’s most actively traded currencies. We deliver huge efficiencies and savings for our clients: in fact, our approach to multilateral netting shrinks funding requirements by over 96% on average, so clients can put their capital and resources to better use. CLS products are designed to enable clients to manage risk most effectively across the full FX lifecycle – whether through more efficient processing tools or market intelligence derived from the largest single source of FX executed data available to the market. Our ambition to make a positive difference starts with our people. Our values – Protect, Improve, Grow – underpin everything that we do at CLS and define and shape a supportive and inclusive working environment in which everyone is encouraged to be open and forward-thinking.

Job Purpose: CLS Internal Audit (IA) is an independent function. The Chief Internal Auditor (CIA) reports functionally to the Chairman of the Audit & Finance Committee and administratively to the Chief Executive Officer. The IA team provides a comprehensive audit service to the CLS Group of Companies and controls advice to the Board and senior management. The Director will support the Executive Director in providing risk-based integrated audit coverage and independent assessment of the effectiveness of key applications, projects, and related IT controls and risks across CLS. IA's ways of working reflect the requirements of CLS's designation as a Systemically Important Financial Market Utility (SIFMU). The requirements of the Audit Plan are diverse and challenging. The Director will be primarily focused on leading and overseeing a portfolio of audits, continuous monitoring. It is important that the Director be versatile and flexible in working in a team on a larger/complex audit, as line managing and guiding a small team. Importantly, the Director will be expected to have a good understanding of financial services business practices and will be able to contribute to integrated audits of CLS’s various business divisions.

Essential Functions:

  • Stakeholder Management / Strategic: (20%) Perform continuous monitoring of the business, under the direction of the Executive Director, to identify emerging risks and issues and report to audit management and the Audit & Finance Committee. Communicating audit work overseen and managed to regulators and executive management. Develop and maintain working relationships with all levels of management and external parties. To monitor strategic developments within CLS and highlight any unidentified risks or potential control issues.
  • Audit Delivery Management: (50%) Manage the development of the annual Audit Plan (for their respective portfolio) based on an assessment of the key risks within CLS and continuous review of risks to ensure the plan is amended where appropriate. Oversee and manage independent validation to confirm management’s remediation of audit and regulatory issues. Responsible for managing the planning and execution of complex audits and high-level reviews. Oversee and prioritize audit delivery across a portfolio of audits. Lead complex, non-routine, and cross-functional activities to support senior management in improving the departmental processes. Provide timely progress updates within the reporting system and to the Executive Director. Assist the wider Internal Audit Division in areas of Information Security, including participating in integrated audits, providing Subject Matter Expertise (SME) in planning activities, and knowledge sharing.
  • People Management: (25%) Manage direct reports, or other members of the Internal Audit team (including co-source and SME resources), for the applicable portfolio audits. Performance management of direct reports (including coaching and performance reviews) Recruitment and retention of talent.
  • Professional Development (5%) Proactively maintain knowledge, skills and disciplines, with ongoing professional development. Identify and share useful learning opportunities for other Internal Audit team members. Maintain the professional standard of the Internal Audit function and work within its agreed Terms of Reference and IIA standards/guidelines, Charter and Mandate. Demonstrate adaptability to ensure that the audit focus is maintained on key issues, under the guidance of audit senior management.

Knowledge, Skills, and Abilities:

  • Extensive experience working within Internal Audit in a financial services environment (ideally banking) and audit experience across a range of different information technology in a financial institution.
  • Ability to provide technical Subject Matter Expertise during integrated audits.
  • Strong analytical skills.
  • Experience of dealing with all levels of management.
  • Excellent communication skills, both written and verbal.
  • Experience and understanding of regulatory requirements, e.g., FRBNY, FCA.
  • Strong IT security and technical knowledge with approximately 10+ years of experience within the industry.
  • Working experience with common security/technology risk frameworks, for instance, ISO 27000, NIST, CIS Critical Security Controls, Cloud Controls Matrix, COBIT, and IIA GTAGs.
  • Working experience with regulatory standards / requirements (US, UK) i.e., GDPR, BCBS 239, FFIEC 101, 3402, CHAP.
  • Working experience and/or knowledge of Security domains including Access management, Threat management, Incident response and recovery, Data protection, Vulnerability management, Monitoring and logging, Physical security, and Security risk management and governance.
  • Working experience and/or knowledge of Cloud, Blockchain, high volume transaction systems.
  • Working experience and/or knowledge of application controls, input/output, configuration, application controls.
  • Working experience and/or knowledge middleware, networks, operating systems, databases (Unix, Windows, AIX, DB2, Citrix).
  • Working experience and/or knowledge of data analytics/ predictive analytics, data governance.
  • Understand policy/directives, and ability to assess risks across all types of IT systems and operations.

Essential Qualifications:

  • Degree level education (desirable) - Bachelors degree in computer science, computer engineering, information technology, or related field of study.
  • Audit certifications (required) - CISA, CISM, or CISSP.
  • Audit certifications (desirable) - CMIIA (UK), CIA (US), CGEIT, CompTIA, SANS, ISC2, Prince2, Agile etc.

Success Factors:

  • Must be a strong team player, able to integrate and work alongside a diverse team of professionals to drive team success.
  • Confident in managing integrated and non-integrated audits, and leading other audit team members.
  • Excellent interpersonal and communications skills (verbal and written), including the ability to deliver challenging messages at all levels of management.
  • Must be able to work independently on projects without assistance.
  • Proactive, self-motivated - ability to plan, organise, perform, and manage work with minimal supervision.
  • Results oriented – able to deliver high quality results in an environment of changing demands, variable workloads, and tight timescales.
  • Ability to engage stakeholders.
  • Innovative problem-solving approach. Able to think on a broad scale about issues affecting the company, not just those related to IA or the control environment.
  • Able to interpret internal and external issues and recommend solutions/best practices.

Our commitment to employees:

We are a small company with a big mandate, so every person is essential to our success. We are also committed to employing and retaining the most talented and dedicated people. What makes us interesting goes beyond our competitive salaries and great benefits. Our work environment is designed around quality outcomes, not output. The FX market would cease to function without our services, and we take pride in being responsible for keeping it running smoothly. We are different from other financial institutions in that we have a flatter and more transparent structure with accessible leadership. You will be seen, heard and empowered to develop your career. We are a purpose-driven organization, with an inclusive culture that focuses on doing what is right. The well-being of our people is as important to us as the resilience of our systems. In addition to encouraging our people to ‘locate for their day,’ we run a range of initiatives that support employees’ sense of belonging and physical, emotional and mental well-being.

Our extensive benefits for employees typically include:

  • Vacation/annual leave: 25 days in UK/Asia + 3 life days, 23 in US + 3 life days.
  • Private medical and dental cover and life insurance.
  • Generous pension contributions in the UK and Asia; matching 401(k) in the US.
  • Paid volunteer days ‘Locate for your day’ hybrid working – 2 days a week in office.
  • Access to Discover – our learning platform with 1000+ courses from LinkedIn Learning.
  • Paid parental leave / Coaching and support services.
  • Career development / LinkedIn Learning ‘Heads down days’ with no meetings on the last Friday of every month.
  • Wellbeing / Mental health support.
  • Diversity Council / Affinity groups (Women’s Forum, Black Employee Network, Pride Network, Parents & Caregivers Network, Sustainability Network).
  • Social events.

Awards:

The Sunday Times Best Places to Work 2023 & 2024 / Big Company / The Sunday Times Awards. Third place in Britain’s Healthiest Workplace 2022 / Medium Company / Vitality Awards.

Director, Internal Audit (Information Security) in London employer: CLS Group

At CLS, we pride ourselves on being a purpose-driven organisation that values our employees as the cornerstone of our success. With a supportive and inclusive work culture, we offer extensive benefits including generous leave, private medical cover, and a commitment to professional development through our learning platform. Located in London, our flat structure ensures that every voice is heard, empowering you to grow your career while contributing to the vital function of the global FX market.

C

Contact Detail:

CLS Group Recruiting Team

StudySmarter Expert Advice🤫

We think this is how you could land Director, Internal Audit (Information Security) in London

Tip Number 1

Network like a pro! Reach out to current or former employees at CLS on LinkedIn. A friendly chat can give you insider info and maybe even a referral, which can really boost your chances.

Tip Number 2

Prepare for the interview by diving deep into CLS's values: Protect, Improve, Grow. Think of examples from your past that showcase how you embody these values and be ready to share them.

Tip Number 3

Show off your expertise! Be ready to discuss specific audit methodologies and IT security frameworks you've worked with. Tailor your answers to highlight how your experience aligns with CLS’s needs.

Tip Number 4

Don’t forget to follow up after your interview! A quick thank-you email reiterating your interest in the role and mentioning something specific from your conversation can leave a lasting impression.

We think you need these skills to ace Director, Internal Audit (Information Security) in London

Internal Audit
Information Security
Risk Management
Stakeholder Management
Analytical Skills
Communication Skills
Technical Subject Matter Expertise

Some tips for your application 🫡

Tailor Your CV:Make sure your CV is tailored to the Director, Internal Audit role. Highlight your experience in internal audit and information security, and don’t forget to showcase your understanding of financial services practices. We want to see how you can bring value to CLS!

Craft a Compelling Cover Letter:Your cover letter is your chance to shine! Use it to explain why you're the perfect fit for this role. Mention specific experiences that align with the job description and show us your passion for making a positive difference at CLS.

Showcase Your Skills:Don’t hold back on showcasing your skills! Whether it's your analytical prowess or your knowledge of regulatory requirements, make sure these shine through in your application. We’re looking for someone who can hit the ground running!

Apply Through Our Website:We encourage you to apply through our website for a smoother process. It’s the best way to ensure your application gets the attention it deserves. Plus, you’ll find all the details you need about the role right there!

How to prepare for a job interview at CLS Group

Know Your Stuff

Make sure you brush up on your knowledge of internal audit processes, especially in the context of information security. Familiarise yourself with relevant frameworks like ISO 27000 and NIST, as well as regulatory requirements such as GDPR and BCBS 239. This will show that you're not just a candidate, but a knowledgeable expert ready to contribute.

Showcase Your Leadership Skills

As a Director, you'll be expected to lead a team and manage complex audits. Prepare examples from your past experiences where you've successfully led teams or projects. Highlight your ability to mentor others and how you've contributed to their professional development. This will demonstrate your readiness for the role.

Engage with Stakeholders

Stakeholder management is key in this role. Think about how you've built relationships with various levels of management in previous positions. Be ready to discuss specific strategies you've used to communicate effectively and manage expectations. This will illustrate your capability to navigate the complexities of stakeholder engagement.

Be Ready for Scenario Questions

Expect scenario-based questions that assess your problem-solving skills and ability to think on your feet. Prepare by thinking through potential risks and control issues that could arise in an audit context. Practising your responses will help you articulate your thought process clearly during the interview.