CLS Group
Vice President, Cyber Threat Intelligence Senior Analyst

How your CV stacks up
Upload your CV to see how well it fits this job role
?%
About CLS:
CLS is the trusted party at the centre of the global FX ecosystem. Utilized by thousands of counterparties, CLS makes FX safer, smoother and more cost effective. Trillions of dollars’ worth of currency flows through our systems each day.
Created by the market for the market, our unrivalled global settlement infrastructure reduces systemic risk and provides standardization for participants in many of the world’s most actively traded currencies. We deliver huge efficiencies and savings for our clients: in fact, our approach to multilateral netting shrinks funding requirements by over 96% on average, so clients can put their capital and resources to better use.
CLS products are designed to enable clients to manage risk most effectively across the full FX lifecycle – whether through more efficient processing tools or market intelligence derived from the largest single source of FX executed data available to the market.
Our ambition to make a positive difference starts with our people. Our values – Protect, Improve, Grow – underpin everything that we do at CLS and define and shape a supportive and inclusive working environment in which everyone is encouraged to be open and forward-thinking.
Job Information:
Functional title – Cyber Threat Intelligence Senior Analyst
Department – IT Security
Corporate level – Vice President
Report to – Executive Director, Head of CTI
Location – London
Job Purpose:
CLS is seeking a highly motivated, self-driven Cyber Threat Intelligence Senior Analyst to join a global threat intelligence team. The position will involve technical and strategic research and intelligence analysis of threats relevant to our industry, business, and related technologies. The ideal candidate will be aware of industry trends and frameworks and how they could impact our business, including threat actor groups, their TTPs, intrusion activities, and geopolitical relevance. The candidate will also interact with industry and government partners daily to share intelligence. This role will also be responsible for mentoring others on the team.
This position requires someone with an analytical mind, a quick learner, and the ability to create and deliver briefings, propose, and execute program initiatives/improvements, and collaborate with a wide range of key internal and external stakeholders.
Job Description:
- Collects, processes, and disseminates cyber threat intelligence from varying sources, including open-source reports, information sharing partners, and vendor reports to create actionable results for internal stakeholders.
- Coordinate and produce strategic, operational, and tactical intelligence products for business units, technical teams, and executive stakeholders.
- Provide situational awareness on current threat landscape and maintain knowledge of adversary activities including geopolitical implications and TTPs to brief varying teams.
- Assess emerging threats against our operational environment and work in partnership with our security teams for detection, mitigation, and remediation efforts.
- Perform trend and correlation of cyber intelligence for recommendation-based countermeasures.
- Support and engage in incident response investigations.
- Perform basic network security analysis in support of intrusion detection operations, including the development and enrichment of indicators used to enhance network security posture.
- Review other analysts’ work and provide mentorship and guidance.
- Actively support external intelligence sharing engagements with other financial institutions and government partners.
Reasons to use Rodeo
I’m in my final year doing Economics and I don’t know whether to apply for grad schemes now or do a masters first. What do you think?
Honest answer — it depends on where you want to end up. A lot of top grad schemes (Big 4, civil service, banking) don’t need a masters. Let’s look at the ones you’d be competitive for now, and we can decide if a masters actually adds anything.
Also worth knowing: most autumn 2026 applications are open now. Timing matters more than you think.
Start with a chat, not a search bar
Grad scheme, placement, apprenticeship? Not sure what you want yet — that's fine. Your agent talks it through with you and turns "I have no idea" into a shortlist.
Graduate Consultant — 2026 Scheme
Why you're a good match
StrongYour economics background and your summer at a regional bank line up with what PwC looks for on the consulting scheme. Applications close in four weeks.
See breakdownIt searches the market for you
Every day your agent scans the market matching roles against what actually matters to you, not just keywords on a CV.
Why you're a good match
You’ve got the grades and the economics background, and your bank internship is exactly the experience this scheme looks for. Apply soon — deadlines close within the month.
Experience fit
Your summer at the bank plus your econometrics coursework map directly to the day-one responsibilities on this scheme — client modelling, market briefings, and deal support.
Only hits
No noise. No "maybe this fits." Just roles with a clear explanation of why they're right — and where to focus when applying.
Experience:
- 6-10+ years of direct cyber threat intelligence experience.
- 5+ years of progressive experience in information security (cyber security) field, preferable in Threat Intelligence, Security Operations, or Incident Response roles.
- Understanding of intelligence lifecycle and risk management.
- Knowledge of fundamentals of threat actors’ TTP.
- Understanding of IOC validation practices and sources.
- Familiarity with MITRE ATT&CK framework and mapping.
- Geopolitical knowledge and potential impacts to the financial sector.
- Excellent interpersonal and relationship management skills.
- Individual contributor whilst also contributing to a small team.
- Self-motivated with ability to work with minimal supervision.
- Demonstrated strong writing skills; ability to convey complex technical and non-technical concepts.
Qualifications/Certifications:
- Bachelor’s Degree in Cybersecurity studies, Intelligence Studies, International Relations, Economics, Computer Science, or related discipline.
- Security certification such as SANS GIAC (or equivalent) ideally GCTI or working towards certification (or equivalent).
- Experience with threat intelligence and SOC/CIRT interaction.
- Splunk experience.
- Experience with Threat Intelligence Platforms like ThreatConnect, ThreatQ, or Filigran.
- Experience with SIEM and other cyber security tools.
- Experience with threat intelligence vendors.
- Ability to work on-site at least twice a week in London and/or participate in local intelligence sharing groups.


Get help with your application
Your very own career expert that helps elevate your application to the next level.
Desired Skills:
- Financial sector experience.
- Developing Threat Intelligence related automations.
Our Commitment to Employees:
We are a small company with a big mandate, so every person is essential to our success. We are also committed to employing and retaining the most talented and dedicated people.
What makes us interesting goes beyond our competitive salaries and great benefits. Our work environment is designed around quality outcomes, not output. The FX market would cease to function without our services, and we take pride in being responsible for keeping it running smoothly.
We are different from other financial institutions in that we have a flatter and more transparent structure with accessible leadership. You will be seen, heard and empowered to develop your career.
We are a purpose-driven organization, with an inclusive culture that focuses on doing what is right. The well-being of our people is as important to us as the resilience of our systems. In addition to encouraging our people to ‘locate for their day,’ we run a range of initiatives that support employees’ sense of belonging and physical, emotional and mental well-being.
Our extensive benefits for employees typically include:
- Vacation/annual leave: 25 days in UK/Asia + 3 life days, 23 in US + 3 life days.
- Private medical and dental cover and life insurance.
- Generous pension contributions in the UK and Asia; matching 401(k) in the US.
- Paid volunteer days.
- ‘Locate for your day’ hybrid working – 2 days a week in office.
- Access to Discover – our learning platform with 1000+ courses from LinkedIn Learning.
- Paid parental leave / Coaching and support services.
- Career development / LinkedIn Learning.
- ‘Heads down days’ with no meetings on the last Friday of every month.
- Wellbeing / Mental health support.
- Diversity Council / Affinity groups (Women’s Forum, Black Employee Network, Pride Network, Parents & Caregivers Network, Sustainability Network).
- Social events.
Awards:
- The Sunday Times Best Places to Work 2023 & 2024 / Big Company / The Sunday Times Awards.
- Third place in Britain’s Healthiest Workplace 2022 / Medium Company / Vitality Awards.
“It took my CV and asked me questions relevant to understanding what kind of jobs to suggest for me. Suggestions were almost perfect. Jobs were exactly what I’ve been looking for.”
Jessica, London
Skills
Location