Jobs and Careers
CL

Cyber and Information Risk - Independent Risk Review Lead

CLS Group
New York City, United Statesfull_timeVerifiedPosted 5 Jan 2026
💰 $210,000/yr($180,000/yr$210,000/yr)

About the role

About CLS:

CLS is the trusted party at the centre of the global FX ecosystem.  Utilized by thousands of counterparties, CLS makes FX safer, smoother and more cost effective.  Trillions of dollars’ worth of currency flows through our systems each day. 

Created by the market for the market, our unrivalled global settlement infrastructure reduces systemic risk and provides standardization for participants in many of the world’s most actively traded currencies.  We deliver huge efficiencies and savings for our clients: in fact, our approach to multilateral netting shrinks funding requirements by over 96% on average, so clients can put their capital and resources to better use.

CLS products are designed to enable clients to manage risk most effectively across the full FX lifecycle – whether through more efficient processing tools or market intelligence derived from the largest single source of FX executed data available to the market.

Our ambition to make a positive difference starts with our people.  Our values underpin everything that we do at CLS and define our working environment:

  • Pivotal purpose
  • Trusted guardian
  • Targeted innovation
  • Facilitate connections
  • Delivering excellence
  • Inclusive culture

Job information:

  • Functional title - Cyber and Information Risk, Independent Risk Review Lead
  • Department - Risk Management
  • Corporate level - Director
  • Report to - Head of Technology & Information Security Risk Management
  • Location - New York / New Jersey
  • Expected full-time salary range between $ 180K - $210K + variable compensation + 401(k) match + benefits.
    • Note: Disclosure as required by NY/NJ Pay Transparency Law of the expected salary compensation range for this role.

What you will be doing:

 

Job purpose

     

The Cyber and Information Risk, Independent Risk Review Lead is responsible for leading the execution of independent reviews of the efficacy of CLS’ Information Security and Data Management programs, including review and challenge of large-scale risk remediation efforts. The successful candidate will provide review and credible challenge of the effectiveness of information security and data management processes and controls in mitigating key risks to the firm. This position is highly engaged with the firm-wide Information Security and Data Management teams who provide security and data management solutions as well as corporate departments that own information security and data management risks.

     

 

Essential Function / major duties and responsibilities of the job

Strategic

  • Risk Culture – Assist the Head of Technology and Information Risk Management and Head of Enterprise Risk and Operational Risk Management in driving the culture of engagement, teamwork and accountability.
  • Independent Reviews –
    • Lead horizontal reviews of top information security and data management risks, identifying gaps in control coverage and recommending control improvements to address identified gaps.
    • Complete thematic reviews of information security and data management operational risk events and associated proposed actions to propose control enhancements that reduce risk of recurrence.
    • Work with the Information Security and Data Management teams to review control capabilities against industry standards and lead efforts to strengthen the control environment in line with the evolving threat landscape.
    • Review and challenge actions to address gaps, monitor progress of actions, and validate sufficiency of closure evidence.
    • Prepare status reports as needed and present to Technology Leadership, Audit, and regulatory bodies as required.

Operational

  • Risk Remediation Oversight –
    • Review and challenge the sufficiency of planned actions to address identified problems, provide stated benefits, and meet regulatory expectations.
    • Review and monitor the progress of actions and validate sufficiency of closure evidence.
    • Prepare status reports as needed and present to Technology Leadership, Audit, and regulatory bodies as required.
  • Governance – Actively present to various committees and forums to keep management educated on status of independent reviews, challenges to risk remediation efforts, and progress on control improvements.
  • Relationship Management – Be a respected point of contact to stakeholders across the business and technology functions in providing credible operational risk coverage for information security and data management risk.
  • Policy & Procedures – Review and challenge relevant policies, standards, and procedu

Apply for this role

Generate a tailored application kit with a matched cover letter, interview prep, and CV highlights — in under 60 seconds.

Apply Now →Generate Application Kit

Free account required — sign up in 30s

Company

CLS Group

View company profile →