At a Glance
- Tasks: Lead cyber security investigations and manage third party intelligence to protect the Bank.
- Company: Join a global bank committed to making a positive impact.
- Benefits: Competitive salary, flexible working, generous leave, and wellness support.
- Other info: Embrace diversity and continuous learning in a supportive environment.
- Why this job: Shape the future of cyber security while leading a dynamic team.
- Qualifications: 5+ years in cyber security with strong leadership and communication skills.
The predicted salary is between 63000 - 77000 £ per year.
This role could be based in the United Kingdom or Singapore. We are looking for an experienced and credible cyber security leader to join our Information & Cyber Security function as Director, Third Party Intelligence & Incident Investigations. This is a high-impact leadership role within Client & Third Party Security, a specialist team responsible for helping the Bank understand, assess and manage cyber security risks across its external ecosystem, including third party vendors, clients and key partners.
The role will lead a specialist team focused on the proactive detection, analysis and investigation of cyber security incidents impacting the Bank’s third party ecosystem. The successful candidate will help strengthen the Bank’s ability to identify emerging threats, assess potential exposure, coordinate response activity and clearly articulate business, operational, client and regulatory risk to senior stakeholders. This is a unique opportunity to shape and mature a growing capability in a fast-moving area of cyber security.
The role offers significant visibility, senior stakeholder engagement and the opportunity to lead a team of four direct reports while supporting the Bank’s broader threat-led, risk-focused and intelligence-enabled approach to third party security risk management.
Key Responsibilities- Lead and mature the Bank’s third party incident investigations and intelligence programme, ensuring alignment with the wider Information & Cyber Security strategy and the Bank’s approach to managing third party cyber security risk.
- Oversee the detection, triage, investigation, classification, escalation and reporting of suspected cyber security incidents involving third party suppliers, clients and the wider external ecosystem.
- Set investigation standards, evidence requirements, quality assurance expectations and documentation practices to ensure consistent, high-quality analysis across the team.
- Lead the analysis of cyber threat intelligence, indicators of compromise, threat actor activity and third party incident data to assess potential exposure to the Bank’s data, services, systems, clients and critical dependencies.
- Translate complex technical and investigative findings into clear business, operational, client and regulatory risk insights for senior stakeholders.
- Engage directly with senior internal and external stakeholders, including executives, risk committees, CISOs, CIOs, Contract Managers and senior representatives of breached or impacted third parties.
- Provide risk-based recommendations to support containment, assurance requests, remediation actions, reassessment triggers, continuous monitoring prioritisation and escalation decisions.
- Lead, manage and develop a team of Intelligence Analysts, creating a culture of urgency, accountability, collaboration, constructive challenge and evidence-based decision-making.
- Ensure lessons learned from investigations are fed back into relevant control domains, including threat detection, continuous monitoring, third party reassessments, control uplift and executive reporting.
- Support effective governance by ensuring third party incident investigation outputs are aligned to Client & Third Party Security requirements, Information & Cyber Security risk appetite, incident management expectations and relevant regulatory considerations.
The ideal candidate will bring a strong combination of technical cyber security expertise, leadership capability and senior stakeholder credibility. This role requires someone who can operate effectively in high-pressure situations, make sound judgments and communicate complex risk clearly to both technical and non-technical audiences.
Essential skills and experience:- Strong background in cyber intelligence, security risk, incident response and/or third party security risk management.
- Minimum of 5 years’ relevant experience in cyber security, threat intelligence, incident investigations, third party security assessment or a closely related discipline.
- Proven experience leading people, with the ability to manage, coach and develop a specialist technical team.
- Strong understanding of cyber threat intelligence, including the ability to analyse threat actor activity, indicators of compromise, infrastructure, domains, IP addresses and related artefacts.
- Experience supporting or leading cyber security incident investigations, including impact assessment, escalation, reporting and remediation follow-up.
- Ability to assess third party cyber security risk and translate findings into meaningful business, operational and regulatory impact assessments.
- Excellent written and verbal communication skills, with the ability to brief senior stakeholders clearly, confidently and concisely.
- Strong stakeholder engagement skills, including the confidence to challenge effectively and obtain meaningful assurance from third parties.
- Ability to manage ambiguity, prioritise effectively and make timely decisions in complex or high-pressure incident scenarios.
Languages English (fluent) is essential.
About Standard CharteredWe're an international bank, nimble enough to act, big enough for impact. For more than 170 years, we've worked to make a positive difference for our clients, communities, and each other. We question the status quo, love a challenge and enjoy finding new opportunities to grow and do better than before. If you're looking for a career with purpose and you want to work for a bank making a difference, we want to hear from you.
You can count on us to celebrate your unique talents and we can't wait to see the talents you can bring us. Our purpose, to drive commerce and prosperity through our unique diversity, together with our brand promise, to be here for good are achieved by how we each live our valued behaviours. When you work with us, you'll see how we value difference and advocate inclusion.
Together we:
- Do the right thing and are assertive, challenge one another, and live with integrity, while putting the client at the heart of what we do.
- Never settle, continuously striving to improve and innovate, keeping things simple and learning from doing well, and not so well.
- Are better together, we can be ourselves, be inclusive, see more good in others, and work collectively to build for the long term.
In line with our Fair Pay Charter, we offer a competitive salary and benefits to support your mental, physical, financial and social wellbeing.
- Core bank funding for retirement savings, medical and life insurance, with flexible and voluntary benefits available in some locations.
- Time-off including annual leave, parental/maternity (20 weeks), sabbatical (12 months maximum) and volunteering leave (3 days), along with minimum global standards for annual and public holiday, which is combined to 30 days minimum.
- Flexible working options based around home and office locations, with flexible working patterns.
- Proactive wellbeing support through Unmind, a market-leading digital wellbeing platform, development courses for resilience and other human skills, global Employee Assistance Programme, sick leave, mental health first-aiders and all sorts of self-help toolkits.
- A continuous learning culture to support your growth, with opportunities to reskill and upskill and access to physical, virtual and digital learning.
- Being part of an inclusive and values driven organisation, one that embraces and celebrates our unique diversity, across our teams, business functions and geographies - everyone feels respected and can realise their full potential.
Director, Third Party Intelligence & Incident Investigations (United Kingdom/Singapore) in London employer: Standard Chartered
At STANDARD CHARTERED, we pride ourselves on fostering a collaborative and inclusive work culture that empowers our employees to thrive. Located in one of the most dynamic regions, we offer exceptional growth opportunities, competitive benefits, and a commitment to professional development, making us an excellent employer for those seeking meaningful and rewarding careers in the financial services sector.
StudySmarter Expert Advice🤫
We think this is how you could land Director, Third Party Intelligence & Incident Investigations (United Kingdom/Singapore) in London
✨Get Involved in the Cybersecurity Community
Diving into the cybersecurity community is key for landing that full-time gig. Join forums like Reddit's r/cybersecurity or attend local meetups to connect with industry veterans and other job seekers. Networking is everything in this field—don’t just be a passive lurker!
✨Show Off Your Skills with Capture the Flag Competitions
Participate in Capture the Flag (CTF) competitions; these are not just a fun way to boost your skills but also a chance to showcase your talent to potential employers. Many companies, including Standard Chartered, love seeing candidates who actively engage in these challenges.
✨Tailor Your Online Presence
Make sure your LinkedIn and any professional profiles reflect your cybersecurity expertise. Share your projects, whether they’re personal or from a previous role, to catch the eye of hiring managers. This is how they’ll find your passion and commitment to the field!
✨Apply Directly Through Standard Chartered
Don’t forget to head straight to our website and check out any openings for cybersecurity roles at Standard Chartered. Applying directly can sometimes give you an edge, especially if you can mention that you've been following our work or engaging in the community.
We think you need these skills to ace Director, Third Party Intelligence & Incident Investigations (United Kingdom/Singapore) in London
Some tips for your application 🫡
Show off your technical skills:In cybersecurity, it's crucial to highlight your technical prowess. Make sure your CV showcases specific skills like network security, penetration testing, or threat analysis. If you have relevant certifications (like CEH or CISSP), pop those on the front page to grab attention!
Tailor your portfolio for the role:Even for a full-time role, a portfolio can set you apart. If you've worked on any cybersecurity projects—be it CTF challenges, security assessments, or research papers—include these in your application. This demonstrates not just your skills, but also your hands-on experience!
Use real-world examples:When writing your cover letter, don’t just stick to your qualifications. Share real-world examples of how you’ve tackled security issues or vulnerabilities. This gives the hiring team at Standard Chartered insight into your practical problem-solving abilities and makes your application memorable.
Demonstrate your passion for cybersecurity:Cybersecurity is an ever-evolving field, so show us that you’re always learning! Mention any recent courses, webinars, or industry events you’ve attended. This not only exhibits your enthusiasm but also signals to Standard Chartered that you’re committed to staying ahead in the game.
How to prepare for a job interview at Standard Chartered
✨Sharpen Your Technical Skills
For a role in cybersecurity, it’s essential to be up-to-date with the latest tools and techniques. Brush up on your knowledge of firewalls, intrusion detection systems, and vulnerability assessment tools. Be ready to discuss specific scenarios where you’ve applied these skills, as hands-on experience can really set us apart in interviews.
✨Prepare for Scenario-Based Questions
Expect the interviewers at Standard Chartered to throw in some hypothetical situations to see how you’d handle them. Think about common security breaches or incidents and be prepared to explain how you would respond. This not only shows your problem-solving skills but also your understanding of real-world cybersecurity challenges.
✨Highlight Your Certifications
Certifications like CompTIA Security+, CISSP, or CEH can give you a significant edge in a full-time role in cybersecurity. Make sure to mention these during your interview and be prepared to discuss what you learned through those certifications and how they relate to the position at Standard Chartered.
✨Show Your Passion for Cybersecurity
Since you’re going for a full-time gig, showing genuine enthusiasm for the field can make all the difference. Share any personal projects, blogs, or communities you’re part of that relate to cybersecurity. This not only showcases your passion but also your commitment to staying engaged in this ever-evolving field.