Skip to main content

Vice President, Cyber Hygiene and Metrics Engineer

CLS GroupSecuritySecurity
Work mode
Hybrid
Full Time
Experience
7+ yrs
VP

What you need

  • 7+ yrs in data engineering and cloud platforms
  • 3+ yrs designing and operating AWS data platforms
  • Strong skills in AWS, SQL, and Python
  • Experience with Power BI and security data integrations
  • Understanding of security operations and cloud security

What you'll do

  • Architect and build a cloud security analytics platform on AWS
  • Develop real-time and batch data pipelines with AWS services
  • Define enterprise security KPIs, KRIs, and performance metrics
  • Design executive dashboards and Board-level reporting views
  • Implement Infrastructure as Code using Terraform and AWS automation

About CLS:

CLS is the trusted party at the centre of the global FX ecosystem.  Utilized by thousands of counterparties, CLS makes FX safer, smoother and more cost effective.  Trillions of dollars’ worth of currency flows through our systems each day. 

Created by the market for the market, our unrivalled global settlement infrastructure reduces systemic risk and provides standardization for participants in many of the world’s most actively traded currencies.  We deliver huge efficiencies and savings for our clients: in fact, our approach to multilateral netting shrinks funding requirements by over 96% on average, so clients can put their capital and resources to better use.

CLS products are designed to enable clients to manage risk most effectively across the full FX lifecycle – whether through more efficient processing tools or market intelligence derived from the largest single source of FX executed data available to the market.

Our ambition to make a positive difference starts with our people.  Our values underpin everything that we do at CLS and define our working environment:

  • Pivotal purpose
  • Trusted guardian
  • Targeted innovation
  • Facilitate connections
  • Delivering excellence
  • Inclusive culture

Job Information:

  • Functional Title: Cyber Hygiene and Metrics Engineer
  • Department: CISO
  • Corporate Level: Vice President
  • Reports To: Cyber Hygiene and Metrics Engineering Lead
  • Location: London, onsite 2 days per week

What you will be doing:

We are seeking a highly skilled Security Data Analytics & Metrics Engineer to architect, engineer, and operate a strategic security analytics platform on AWS from the ground up. The successful candidate will design and build a modular security data architecture that ingests telemetry from security, cloud, infrastructure, identity, and risk management platforms to deliver executive-level metrics, operational insights, regulatory reporting, and continuous control assurance. The platform follows a modern federated architecture built around a Security Data Lake, analytics services, exposure management, and executive reporting capabilities rather than reliance on a traditional monolithic SIEM model.

The role combines data engineering, cloud architecture, analytics engineering, and security domain expertise to create a trusted source of security performance data for technology leadership, regulators, auditors, and the Board.


Key Responsibilities:

Architecture & Engineering

  • Design and implement a cloud-based security analytics platform on AWS.
  • Architect data pipelines that ingest, normalize, enrich, and correlate telemetry from multiple security and technology platforms.
  • Build and operate a Security Data Lake leveraging AWS-native services and open data standards.
  • Define scalable data models supporting operational metrics, risk analytics, compliance reporting, and executive dashboards.
  • Implement data governance controls, metadata management, lineage tracking, and quality assurance frameworks.

Data Platform Development

  • Develop real-time and batch data pipelines using AWS services including S3, Glue, Lambda, Athena, EMR, Redshift, Kinesis, and EventBridge.
  • Engineer integrations with:
    • SIEM platforms
    • IAM systems
    • Cloud Security Posture Management (CSPM)
    • Endpoint Protection Platforms (EPP)
    • Threat Intelligence platforms
    • Exposure Management solutions
  • Implement common data schemas and normalization standards, including OCSF where appropriate.
  • Build reusable APIs and data products enabling self-service analytics.

Metrics Engineering & Analytics

  • Define and maintain enterprise security KPIs, KRIs, PLAs, and performance metrics.
  • Build metric calculation frameworks covering:
    • Incident management
    • Mean Time to Respond (MTTR)
    • Mean Time to Neutralize (MTTN)
    • Security control effectiveness
    • Vulnerability remediation
    • Identity governance
    • Cloud security posture
    • Regulatory compliance
  • Create automated executive scorecards and Board-level reporting views.
  • Develop analytical models to identify trends, risks, control gaps, and performance opportunities.

Executive Reporting & Visualisation

  • Design and deliver enterprise dashboards using Power BI and AWS analytics tooling.
  • Translate technical security data into meaningful business outcomes and risk indicators.
  • Create reporting capabilities aligned to regulatory and operational requirements.
  • Partner with CISO, CRO, Internal Audit, and Technology leadership teams to define reporting needs.

DevOps & Platform Reliability

  • Implement Infrastructure as Code using Terraform and AWS-native automation.
  • Establish CI/CD pipelines for analytics assets, dashboards, metrics, and data pipelines.
  • Monitor platform health, performance, cost, and reliability.
  • Drive cost optimisation by balancing Security Lake retention, analytics workloads, and SIEM indexing strategies.

Required Experience:

  • 7+ years of experience in data engineering, analytics engineering, and cloud platform engineering.
  • 3+ years designing and operating AWS-based data platforms.
  • Strong experience with:
    • AWS Security Lake
    • Amazon S3
    • AWS Glue
    • Athena
    • Lambda
    • Redshift
    • Kinesis
    • CloudWatch
  • Experience building large-scale data lakes and analytics platforms.
  • Strong SQL and Python development skills.
  • Experience with dashboard and visualization technologies such as Power BI.
  • Experience integrating cybersecurity and risk management datasets.
  • Understanding of security operations, security controls, vulnerability management, IAM, and cloud security.

Desirable Experience:

  • Financial services or banking experience.
  • Experience implementing OCSF or other security telemetry standards.
  • Exposure to SIEM platform Splunk.
  • Exposure management or cyber performance management platforms.
  • Experience with machine learning, AI-assisted analytics, and risk scoring.

Key Deliverables:

The successful candidate will build and maintain:

  • Enterprise Security Data Lake on AWS.
  • Unified security metrics repository.
  • Executive security performance dashboard suite.
  • Board and regulatory reporting capability.
  • Exposure management analytics models.
  • Continuous control assurance metrics framework.
  • Automated KPI and KRI reporting pipelines.
  • Security analytics APIs and self-service data products.

Success Measures:

  • Establish a consolidated security data platform serving executive, operational, and regulatory reporting needs.
  • Deliver trusted, near real-time security metrics across all control domains.
  • Reduce manual reporting effort through automation and self-service analytics.
  • Improve visibility of cyber risk, control effectiveness, and remediation performance.
  • Enable data-driven security investment and risk management decisions.

Our commitment to employees:

At CLS, we celebrate inclusion and consider this to be one of our strongest assets. We are committed to fostering an environment in which everyone feels comfortable to be who they are, and inclusion is valued. All employees have access to our inclusive benefits, including:

  • Holiday - UK/Asia: 25 holiday days and 3 ‘life days’ (in addition to bank holidays). US: 23 holiday days.
  • 2 paid volunteer days so that you can actively support causes within your community that are important to you.
  • Generous parental leave policies to ensure you can enjoy valuable time with your family.
  • Parental transition coaching programmes and support services.
  • Wellbeing and mental health support resources to ensure you are looking after yourself, and able to support others.
  • Employee Networks (including our Women’s Forum, Black Employee Network and Pride Network) in support of our organisational commitment to embrace and always be learning more about inclusivity.
  • Hybrid working to promote a healthy work/life balance, enabling employees to work collaboratively in the office when needed and work from home when they don’t.
  • Active support of flexible working for all employees where possible.
  • Monthly ‘Heads Down Days’ with no meetings across the whole company.
  • Generous non-contributory pension provision for UK/Asia employees, and 401K match from CLS for US employees.
  • Private medical insurance and dental coverage.
  • Social events that give you opportunities to meet new people and broaden your network across the organisation.
  • Annual flu vaccinations.
  • Discounts and savings and cashback across a wide range of categories including health and retail for UK employees.
  • Discounted Gym membership – Complete Body Gym Discount/Sweat equity program for US employees.
  • All employees have access to Discover – our comprehensive learning platform with 1000+ courses from LinkedIn Learning.
  • Access to frequent development sessions on a number of topics to help you be successful and develop your career at CLS.

Optimize your resume for this job

Get a match score and the keywords you're missing

Optimize resume

About CLS Group

CLS (Collecte Localisation Satellites) is a French subsidiary of CNES that provides satellite-based maritime surveillance, environmental monitoring, and Earth observation data services.

Similar Security roles

Vice President, Cyber Hygiene and Metrics Engineer
CLS Group
Apply