Location
London
Hours
Full Time
Salary
Negotiable
About the Role
The purpose of this role is to assist the Director of Business Information Security (BISO) in all security matters relating to the oversight of Information and Cyber Security within the LCH Ltd. business line of LSEG’s Post Trade division. You will ensure that critical business systems and data assets of LCH Ltd. are adequately protected, and that all related information security and cyber controls remain effective and within risk appetite or have appropriate risk treatment plans in place. This role is ideal for an experienced Information Security Manager with senior management experience in InfoSec/Cyber roles within the Financial Services or Financial Market Infrastructure industries.
You will be a subject matter expert in Information Security with strong knowledge across all areas of information and cyber security, including legacy, existing, and emerging technologies such as cloud and security controls. Your responsibilities will include reviewing and assessing security controls, overseeing remediation activities, monitoring security roadmaps and programmes, engaging with technology and cyber teams, attending risk and governance meetings, and collaborating with stakeholders across the three lines of defence.
Additional duties include establishing and maintaining cyber risk profiles, risk control assessments, key performance and risk indicators, and executive-level reporting. You will assess security architecture and project risk positions, ensuring compliance with policies and security design principles. You will also engage with external third parties to ensure contracted security levels are met.
The role requires building strong relationships within the business to understand security-related risks, supporting risk management decision processes, embedding cyber security across the firm, challenging controls for continuous improvement, and monitoring industry trends to keep leadership informed.
Security governance and technical responsibilities include reviewing technologies and controls across office spaces, data centres, and cloud environments, conducting maturity assessments against standards such as NIST CSF, ISO27001/2, SOC2, and producing risk remediation plans. You will present complex cyber risk matters clearly to senior executives, clients, and regulators.
Partnering with business control functions is key, maintaining balanced relationships with risk, compliance, legal, HR, and audit teams. Staying abreast of emerging technologies and the cyber threat landscape is essential, as is maintaining knowledge of global data protection regulations and legislation.
Join LSEG and be part of a team that values innovation, quality, and continuous improvement. You will work within a dynamic organisation committed to sustainability, diversity, and inclusion, offering tailored benefits and opportunities for personal and professional growth.
Experience
- Minimum 10 years in senior Information Security management roles
- Extensive experience within Financial Services or Financial Market Infrastructure industries
- Proven problem solving, innovation, and critical thinking skills
- Strong written and verbal communication and stakeholder management skills
- Ability to articulate ideas to both technical and non-technical audiences
- Experience working both independently and collaboratively in fast-paced, high-volume environments
- Skilled in prioritising workloads efficiently with minimal supervision
About you
- Subject matter expert in Information and Cyber Security with deep knowledge of legacy, current, and emerging technologies including cloud security
- Strong Security Governance, Risk and Compliance (Security-GRC) skillset
- Experience in information security engineering, vulnerability management, security architecture, and security operations is advantageous
- Ability to build strong relationships across business and technology teams
- Pragmatic and constructive approach to challenging and improving established controls
- Up-to-date knowledge of cyber threat landscape and global data protection regulations
Qualifications
- Must have: CISSP certification
- Desirable: CISSP-ISSAP, CISSP-ISSEP, CISM, CCSP, CCSK, CEH
- Working knowledge of security standards and frameworks such as ISO27K, ISF SOGP, NIST CSF, CIS, CSA STAR, CBEST, TIBER-EU, SOC2
London Stock Exchange Group










