Are you ready to make an impact at DTCC?
Do you want to work on innovative projects, collaborate with a dynamic and supportive team, and receive investment in your professional development? At DTCC, we are at the forefront of innovation in the financial markets. We are committed to helping our employees grow and succeed. We believe that you have the skills and drive to make a real impact. We foster a thriving internal community and are committed to creating a workplace that looks like the world that we serve.
The Information Technology group delivers secure, reliable technology solutions that enable DTCC to be the trusted infrastructure of the global capital markets. The team delivers high-quality information through activities that include development of essential, building infrastructure capabilities to meet client needs and implementing data standards and governance.
Pay and Benefits:
The impact you will have in this role:
Within the Cybersecurity Business Office, our role is to serve as trusted advisors to the business, shaping and guiding cyber risk-informed decision-making across the enterprise. We ensure security investments are aligned to the threat landscape and risk appetite, effectively funded, and focused on delivering measurable risk reduction, strengthening resilience, protecting critical assets, and enabling sustainable, secure business growth.
Primary Responsibilities:
Define and drive the enterprise Cybersecurity strategy aligned to business objectives, regulatory requirements, and evolving threat landscape
Translate cybersecurity risk insights (threat intelligence, assessment results, and issues / control gaps) and strategic priorities into a structured, multi-year cybersecurity roadmap in alignment with Business, IT, and Cybersecurity objectives
Understand and contextualize how the achievement of Cybersecurity strategic objectives will continue to mature the Cybersecurity program against the core Cyber Risk Institute Profile (CRI Profile) principles and tenets
Develop and manage a portfolio of cybersecurity initiatives spanning vulnerability management, threat intelligence and detection, identity access management, data protection, as well as cybersecurity architecture and resilience
Structure the cybersecurity roadmap into programs and projects mapped to key risk domains and control frameworks (e.g., CRI Profile)
Prioritize initiatives based on alignment to strategic objectives, risk reduction, business impact, and regulatory exposure
For each identified cybersecurity initiative, assist in the definition of milestones and success criteria tied to tangible security outcomes (e.g., reduced attack surface, improved patching, expand Role-Based Access)
Oversee the execution against milestones with a focus on risk reduction progress, not just delivery completion
Assist in developing and presenting executive reporting on cyber posture improvement, emerging risks, and program effectiveness
Design and manage the cybersecurity program budget, including:
Operational security capabilities (SOC, vulnerability management, IAM)
Capital investments in security tooling and infrastructure
Specialized cyber professional services (incident response, advisory, assessments)
Monitor and forecast cybersecurity spending against budget, ensuring efficient allocation of resources across risk domains
Evaluate cost vs. risk reduction value for tools, services, and programs to optimize investment decisions
Lead the development of bi-monthly cybersecurity board reporting, translating complex cyber risks, threats, and control performance into clear, executive-level insights
Synthesize inputs across vulnerability management, IAM, threat intelligence, incident response, and control effectiveness into concise, decision-oriented updates
Provide a risk-informed narrative on the organization's cyber posture, highlighting emerging threats and critical issues (including high-risk vulnerabilities, control gaps, and delayed remediations, with recommended actions)
Define and drive the enterprise cybersecurity strategy, translating cyber risk, threat intelligence, and regulatory requirements into a prioritized multi-year roadmap and book of work
Establish and manage the cybersecurity portfolio, structuring initiatives across key domains (e.g., vulnerability management, IAM, threat detection) and prioritizing based on risk, business impact, and control gaps
Oversee program execution and milestone delivery, ensuring initiatives are clearly defined, tracked against timelines, and delivering measurable risk reduction and resilience outcomes
Design and manage the cybersecurity financial strategy and budget, including operational, capital, and professional services spend, with a focus on aligning investments to highest-risk areas
Develop and deliver executive and board-level reporting, providing bi-monthly, risk-informed insights on cyber posture, key metrics, program progress, and emerging threats
Analyze interdependencies across Cybersecurity projects, including financial benefits, resource constraints, risk mitigation, client satisfaction, and strategic alignment.
Partner closely with Cybersecurity senior leadership and Finance management to drive informed decision-making.
Qualifications
Talents Needed For Success
The salary range is indicative for roles at the same level within DTCC across all US locations. Actual salary is determined based on the role, location, individual experience, skills, and other considerations. We are an equal opportunity employer and value diversity at our company. We do not discriminate on the basis of race, religion, color, national origin, sex, gender, gender expression, sexual orientation, age, marital status, veteran status, or disability status. We will ensure that individuals with disabilities are provided reasonable accommodation to participate in the job application or interview process, to perform essential job functions, and to receive other benefits and privileges of employment. Please contact us to request accommodation. Are you ready to make an impact at DTCC?
With over 50 years of experience, DTCC is the premier post-trade market infrastructure for the global financial services industry. From 20 locations around the world, DTCC, through its subsidiaries, automates, centralizes, and standardizes the processing of financial transactions, mitigating risk, increasing transparency, enhancing performance and driving efficiency for thousands of broker/dealers, custodian banks and asset managers. Industry owned and governed, the firm innovates purposefully, simplifying the complexities of clearing, settlement, asset servicing, transaction processing, trade reporting and data services across asset classes, bringing enhanced resilience and soundness to existing financial markets while advancing the digital asset ecosystem. In 2024, DTCC's subsidiaries processed securities transactions valued at U.S. $3.7 quadrillion and its depository subsidiary provided custody and asset servicing for securities issues from over 150 countries and territories valued at U.S. $99 trillion. DTCC's Global Trade Repository service, through locally registered, licensed, or approved trade repositories, processes more than 25 billion messages annually. To learn more, please visit us at www.dtcc.com or connect with us on LinkedIn, X, YouTube, Facebook and Instagram.
DTCC proudly supports Flexible Work Arrangements favoring openness and gives people freedom to do their jobs well, by encouraging diverse opinions and emphasizing teamwork. When you join our team, you'll have an opportunity to make meaningful contributions at a company that is recognized as a thought leader in both the financial services and technology industries. A DTCC career is more than a good way to earn a living. It's the chance to make a difference at a company that's truly one of a kind.
Learn more about Clearance and Settlement by clicking here.