Skip to Main Content

Job Title


VP - Senior Threat Hunter


Company : CLS Group


Location : London, England


Created : 2025-05-04


Job Type : Full Time


Job Description

CLS Group Greater London, England, United Kingdom VP - Senior Threat HunterCLS Group Greater London, England, United Kingdom 3 weeks ago Be among the first 25 applicants Direct message the job poster from CLS Group About CLS: CLS is the trusted party at the centre of the global FX ecosystem. Utilized by thousands of counterparties, CLS makes FX safer, smoother and more cost effective. Trillions of dollars’ worth of currency flows through our systems each day. Created by the market for the market, our unrivalled global settlement infrastructure reduces systemic risk and provides standardization for participants in many of the world’s most actively traded currencies. We deliver huge efficiencies and savings for our clients: in fact, our approach to multilateral netting shrinks funding requirements by over 96% on average, so clients can put their capital and resources to better use. CLS products are designed to enable clients to manage risk most effectively across the full FX lifecycle – whether through more efficient processing tools or market intelligence derived from the largest single source of FX executed data available to the market. Our ambition to make a positive difference starts with our people. Our values – Protect, Improve, Grow – underpin everything that we do at CLS and define and shape a supportive and inclusive working environment in which everyone is encouraged to be open and forward-thinking Job information: Functional title – Senior Threat Hunter Department – IT Security Report to – Executive Director Job purpose: CLS is seeking a highly motivated, and skilled Senior Threat Hunter to join a global threat management team. The role will be located in London. The position will report to the Head of Cyber Threat Intelligence and will proactively identify, investigate, and mitigate advanced cyber threats across our organization’s network and systems. Leveraging a deep understanding of the latest attack techniques, threat actor tactics, and security tools, you will help safeguard our infrastructure and ensure the resilience of our networks. The ideal candidate will be aware of industry trends and frameworks and how they could impact our business. This role will also be responsible for mentoring others on the team. This position requires someone with an analytical mind, a quick learner, and the ability to create and deliver briefings, propose, and execute program initiative’s/improvements, and collaborate with a wide range of key stakeholders. Key responsibilities include: Lead proactive efforts to identify and mitigate sophisticated cyber threats, leveraging a variety of tools, techniques, and data sources Research, document, and develop Use Cases and Hypotheses for proactive hunting in cyber security tools including SIEM, EDR, and IDS/IPS (extract TTPs and behaviours from research to apply to logging and tool queries/hunts and detections) Research, document and develop threat detections based on behavioural attributes of actors, malware operators, and general threats Identify and execute tuning/configuration changes to improve detection or reporting capabilities Perform deep analysis of alerts, network traffic, and security data to detect anomalous activity, indicators of compromise, and advanced persistent threats (APTs) Collaborate with the Security Operations team to investigate and respond to active incidents as needed Translate threat intelligence into actionable threat hunting hypotheses Maintain clear documentation of threat hunting activities, findings, and lessons learned. Produce reports for both executive and technical stakeholders and be able to brief all stakeholders. Develop and maintain threat models for key assets within the ecosystem Map existing controls to MITRE ATT&CK TTPs and assist with developing new mitigations Actively support external intelligence sharing engagements with other financial institutions and government partners Knowledge, skills and abilities: 6-10+ years of direct threat hunting experience 5+ years of progressive experience in information security (cyber security) field, preferable in Threat Intelligence, Security Operations or Incident Response roles Understanding of intelligence lifecycle and risk management Knowledge of fundamentals of threat actors’ TTPs Familiarity with MITRE ATT&CK framework and mapping Experience with threat intelligence platforms and analysing indicators of compromise, TTPs, and adversary behaviour Knowledge of TCP/IP, network protocols, and deep packet inspection Excellent interpersonal and relationship management skills Individual contributor whilst also contributing to a small team Self-motivated with ability to work with minimal supervision Qualifications and certifications: Bachelor’s Degree in Cybersecurity studies, Computer Science, Intelligence Studies, International Relations, or related discipline Security certification such as SANS GIAC (or equivalent) ideally GCFA, GNFA or working towards certification (or equivalent) Experience with threat intelligence and SOC/CIRT interaction Splunk experience is highly preferred Scripting or automation knowledge, especially Python experience is highly preferred Experience with SIEM, EDR solutions, network monitoring tools, and other cyber security tools Experience with threat intelligence vendors Ability to work on-site at least twice a week in London and/or participate in local intelligence sharing groups Our commitment to employees: We are a small company with a big mandate, so every person is essential to our success. We are also committed to employing and retaining the most talented and dedicated people. What makes us interesting goes beyond our competitive salaries and great benefits. Our work environment is designed around quality outcomes, not output. The FX market would cease to function without our services, and we take pride in being responsible for keeping it running smoothly. We are different from other financial institutions in that we have a flatter and more transparent structure with accessible leadership. You will be seen, heard and empowered to develop your career. We are a purpose-driven organization, with an inclusive culture that focuses on doing what is right. The well-being of our people is as important to us as the resilience of our systems. In addition to encouraging our people to ‘locate for their day,’ we run a range of initiatives that support employees’ sense of belonging and physical, emotional and mental well-being. Our extensive benefits for employees typically include: Vacation/annual leave: 25 days in UK/Asia + 3 life days, 23 in US + 3 life days Private medical and dental cover and life insurance Generous pension contributions in the UK and Asia; matching 401(k) in the US ‘Locate for your day’ hybrid working – 2 days a week in office. Access to Discover – our learning platform with 1000+ courses from LinkedIn Learning. Paid parental leave / Coaching and support services ‘Heads down days’ with no meetings on the last Friday of every month Diversity Council / Affinity groups (Women’s Forum, Black Employee Network, Pride Network, Parents & Caregivers Network, Sustainability Network) Social events Awards: The Sunday Times Best Places to Work 2023 & 2024 / Big Company / The Sunday Times Awards Third place in Britain’s Healthiest Workplace 2022 / Medium Company / Vitality Awards Seniority levelSeniority level Mid-Senior level Employment typeEmployment type Full-time Job functionJob function Information Technology Industries Financial Services, Banking, and Investment Banking Referrals increase your chances of interviewing at CLS Group by 2x Get notified about new Information Technology Specialist jobs inGreater London, England, United Kingdom . London, England, United Kingdom 2 weeks ago London, England, United Kingdom 1 week ago London, England, United Kingdom 6 hours ago Hounslow, England, United Kingdom 2 weeks ago London, England, United Kingdom 3 weeks ago London, England, United Kingdom 1 day ago London, England, United Kingdom 2 weeks ago London, England, United Kingdom 4 weeks ago Battersea, England, United Kingdom 3 days ago Greater London, England, United Kingdom 1 week ago London, England, United Kingdom 3 weeks ago London, England, United Kingdom 2 weeks ago London, England, United Kingdom 4 weeks ago London, England, United Kingdom 1 day ago Bromley, England, United Kingdom 1 month ago London, England, United Kingdom 1 week ago Sigma Labs - Graduate Technical ConsultantLondon, England, United Kingdom 2 months ago Information Technology Compliance ConsultantUxbridge, England, United Kingdom 3 days ago London, England, United Kingdom 2 days ago London, England, United Kingdom 1 week ago London, England, United Kingdom 2 weeks ago London, England, United Kingdom 4 hours ago Independent Expert in Digital and Technology TransformationLondon, England, United Kingdom 2 weeks ago London, England, United Kingdom 9 hours ago London, England, United Kingdom 3 months ago London, England, United Kingdom 2 weeks ago London, England, United Kingdom 1 month ago London, England, United Kingdom 2 weeks ago Greater London, England, United Kingdom 6 days ago London, England, United Kingdom 2 weeks ago Transformation Solution Consultant, Digital ExperienceLondon, England, United Kingdom 1 week ago Presales Consultant – Technology SolutionsLondon, England, United Kingdom 6 months ago Junior Systems Administrator - InternshipLondon, England, United Kingdom 2 weeks ago London, England, United Kingdom 2 weeks ago Greater London, England, United Kingdom 3 weeks ago London, England, United Kingdom 3 days ago We’re unlocking community knowledge in a new way. Experts add insights directly into each article, started with the help of AI.#J-18808-Ljbffr