Job Summary
This role could be based in United Kingdom or Singapore. When you start the application process you will be presented with a drop-down menu showing all countries, please ensure that you only select a country where the role is based.
We are looking for an experienced and credible cyber security leader to join our Information & Cyber Security function as Director, Third Party Intelligence & Incident Investigations. This is a high-impact leadership role within Client & Third Party Security, a specialist team responsible for helping the Bank understand, assess and manage cyber security risks across its external ecosystem, including third party vendors, clients and key partners.
The role will lead a specialist team focused on the proactive detection, analysis and investigation of cyber security incidents impacting the Bank’s third party ecosystem. The successful candidate will help strengthen the Bank’s ability to identify emerging threats, assess potential exposure, coordinate response activity and clearly articulate business, operational, client and regulatory risk to senior stakeholders
This is a unique opportunity to shape and mature a growing capability in a fast-moving area of cyber security. The role offers significant visibility, senior stakeholder engagement and the opportunity to lead a team of four direct reports while supporting the Bank’s broader threat-led, risk-focused and intelligence-enabled approach to third party security risk management.
Key Responsibilities
- Lead and mature the Bank’s third party incident investigations and intelligence programme, ensuring alignment with the wider Information & Cyber Security strategy and the Bank’s approach to managing third party cyber security risk.
- Oversee the detection, triage, investigation, classification, escalation and reporting of suspected cyber security incidents involving third party suppliers, clients and the wider external ecosystem.
- Set investigation standards, evidence requirements, quality assurance expectations and documentation practices to ensure consistent, high-quality analysis across the team.
- Lead the analysis of cyber threat intelligence, indicators of compromise, threat actor activity and third party incident data to assess potential exposure to the Bank’s data, services, systems, clients and critical dependencies.
- Translate complex technical and investigative findings into clear business, operational, client and regulatory risk insights for senior stakeholders
- Engage directly with senior internal and external stakeholders, including executives, risk committees, CISOs, CIOs, Contract Managers and senior representatives of breached or impacted third parties.
- Provide risk-based recommendations to support containment, assurance requests, remediation actions, reassessment triggers, continuous monitoring prioritisation and escalation decisions.
- Lead, manage and develop a team of Intelligence Analysts, creating a culture of urgency, accountability, collaboration, constructive challenge and evidence-based decision-making.
- Ensure lessons learned from investigations are fed back into relevant control domains, including threat detection, continuous monitoring, third party reassessments, control uplift and executive reporting.
- Support effective governance by ensuring third party incident investigation outputs are aligned to Client & Third Party Security requirements, Information & Cyber Security risk appetite, incident management expectations and relevant regulatory considerations
Skills and Experience
The ideal candidate will bring a strong combination of technical cyber security expertise, leadership capability and senior stakeholder credibility. This role requires someone who can operate effectively in high-pressure situations, make sound judgments and communicate complex risk clearly to both technical and non-technical audiences.
Essential skills and experience:
-
- Strong background in cyber intelligence, security risk, incident response and/or third party security risk management.
- Minimum of 5 years’ relevant experience in cyber security, threat intelligence, incident investigations, third party security assessment or a closely related discipline
- Proven experience leading people, with the ability to manage, coach and develop a specialist technical team.
- Strong understanding of cyber threat intelligence, including the ability to analyse threat actor activity, indicators of compromise, infrastructure, domains, IP addresses and related artefacts
- Experience supporting or leading cyber security incident investigations, including impact assessment, escalation, reporting and remediation follow-up.
- Ability to assess third party cyber security risk and translate findings into meaningful business, operational and regulatory impact assessments.
- Excellent written and verbal communication skills, with the ability to brief senior stakeholders clearly, confidently and concisely.
- Strong stakeholder engagement skills, including the confidence to challenge effectively and obtain meaningful assurance from third parties.
- Ability to manage ambiguity, prioritise effectively and make timely decisions in complex or high-pressure incident scenarios.
Qualifications
- Languages English (fluent) is essential
About Standard Chartered
We're an international bank, nimble enough to act, big enough for impact. For more than 170 years, we've worked to make a positive difference for our clients, communities, and each other. We question the status quo, love a challenge and enjoy finding new opportunities to grow and do better than before. If you're looking for a career with purpose and you want to work for a bank making a difference, we want to hear from you. You can count on us to celebrate your unique talents and we can't wait to see the talents you can bring us.
Our purpose, to drive commerce and prosperity through our unique diversity, together with our brand promise, to be here for good are achieved by how we each live our valued behaviours. When you work with us, you'll see how we value difference and advocate inclusion.
Together we:
- Do the right thing and are assertive, challenge one another, and live with integrity, while putting the client at the heart of what we do
- Never settle, continuously striving to improve and innovate, keeping things simple and learning from doing well, and not so well
- Are better together, we can be ourselves, be inclusive, see more good in others, and work collectively to build for the long term
What we offer
In line with our Fair Pay Charter, we offer a competitive salary and benefits to support your mental, physical, financial and social wellbeing.
- Core bank funding for retirement savings, medical and life insurance, with flexible and voluntary benefits available in some locations.
- Time-off including annual leave, parental/maternity (20 weeks), sabbatical (12 months maximum) and volunteering leave (3 days), along with minimum global standards for annual and public holiday, which is combined to 30 days minimum.
- Flexible working options based around home and office locations, with flexible working patterns.
- Proactive wellbeing support through Unmind, a market-leading digital wellbeing platform, development courses for resilience and other human skills, global Employee Assistance Programme, sick leave, mental health first-aiders and all sorts of self-help toolkits
- A continuous learning culture to support your growth, with opportunities to reskill and upskill and access to physical, virtual and digital learning.
- Being part of an inclusive and values driven organisation, one that embraces and celebrates our unique diversity, across our teams, business functions and geographies - everyone feels respected and can realise their full potential.