DTCC

Cyber Security Strategy Senior Associate

DTCC$110K — $130K *
Information Technology
5 - 7 years of experience
Job Overview by Ladders

Qualifications

  • Minimum of 5 years of related experience
  • Bachelor's degree or equivalent experience
  • Preferred management consulting experience in cybersecurity
  • Strong technical expertise in Identity Access Management, Vulnerability, and Threat Intelligence
  • Experience in cybersecurity strategy development and portfolio governance
  • Knowledge of Cybersecurity Financial Management

Responsibilities

  • Define and execute an enterprise cybersecurity strategy and multi-year roadmap
  • Oversee execution of cybersecurity programs ensuring measurable outcome delivery
  • Manage the cybersecurity budget across operational, capital, and professional services
  • Deliver bi-monthly cybersecurity reports to executives, summarizing risks and program status
  • Analyze interdependencies across cybersecurity initiatives to optimize resource usage
  • Collaborate with Cybersecurity senior leadership and Finance for strategic decision-making

Benefits

  • Participation in a cybersecurity-focused team with significant business impact
  • Opportunity to shape and guide enterprise cybersecurity strategy
  • Access to ongoing professional development and networking opportunities
  • Engagement in high-level executive reporting and decision-making processes
  • Involvement with cross-functional teams and senior stakeholders
Full Job Description
Job Description

The Impact you will have in this role:

Being a member of IT Cybersecurity & Platform Strategy team and within the Cybersecurity Business Office, our role is to serve as trusted advisors to the business, shaping and guiding cyber risk-informed decision-making across the enterprise. We ensure security investments are aligned to the threat landscape and risk appetite, effectively funded, and focused on delivering measurable risk reduction, strengthening resilience, protecting critical assets, and enabling sustainable, secure business growth.

Cybersecurity Strategy Development
  • Define and drive the enterprise Cybersecurity strategy aligned to business objectives, regulatory requirements, and evolving threat landscape
  • Translate cybersecurity risk insights (threat intelligence, assessment results, and issues / control gaps) and strategic priorities into a structured, multi-year cybersecurity roadmap in alignment with Business, IT, and Cybersecurity objectives
  • Understand and contextualize how the achievement of Cybersecurity strategic objectives will continue to mature the Cybersecurity program against the core Cyber Risk Institute Profile (CRI Profile) principles and tenets

Cybersecurity Budget Planning and Financial Oversight
  • Design and manage the cybersecurity program budget, including:
    • Operational security capabilities (SOC, vulnerability management, IAM)
    • Capital investments in security tooling and infrastructure
    • Specialized cyber professional services (incident response, advisory, assessments)
  • Monitor and forecast cybersecurity spending against budget, ensuring efficient allocation of resources across risk domains
  • Evaluate cost vs. risk reduction value for tools, services, and programs to optimize investment decisions

Cyber Strategy Board Reporting
  • Lead the development of bi-monthly cybersecurity board reporting, translating complex cyber risks, threats, and control performance into clear, executive-level insights
  • Synthesize inputs across vulnerability management, IAM, threat intelligence, incident response, and control effectiveness into concise, decision-oriented updates
  • Provide a risk-informed narrative on the organization's cyber posture, highlighting emerging threats and critical issues (including high-risk vulnerabilities, control gaps, and delayed remediations, with recommended actions)


Your Primary Responsibilities:
  • Define and drive the enterprise cybersecurity strategy, translating cyber risk, threat intelligence, and regulatory requirements into a prioritized multi-year roadmap and book of work
  • Oversee program execution and milestone delivery, ensuring initiatives are clearly defined, tracked against timelines, and delivering measurable risk reduction and resilience outcomes
  • Design and manage the cybersecurity financial strategy and budget, including operational, capital, and professional services spend, with a focus on aligning investments to highest-risk areas
  • Develop and deliver executive and board-level reporting, providing bi-monthly, risk-informed insights on cyber posture, key metrics, program progress, and emerging threats
  • Analyze interdependencies across Cybersecurity projects, including financial benefits, resource constraints, risk mitigation, client satisfaction, and strategic alignment.
  • Partner closely with Cybersecurity senior leadership and Finance management to drive informed decision-making.

**NOTE: The Primary Responsibilities of this role are not limited to the details above. **

Qualifications
  • Minimum of 5 years of related experience
  • Bachelor's degree and/or equivalent experience.
  • Management consulting experience preferred, with the ability to assess complex cybersecurity challenges, provide structured recommendations, and effectively communicate solutions to leadership.

Talents Needed For Success
  • Create effective working relationships with senior business, cybersecurity, technology, and risk / control leadership.
  • Ability to synthesize large amounts of information inclusive of project progress, risks, and issues into board-ready deliverables illustrating critical information to drive risk-based decisions.
  • Strong cybersecurity acumen with technical expertise across Identity Access Management, Vulnerability and Threat Intelligence, and Data Protection capabilities.
  • Effective collaboration, expectations management and partnership with multiple internal and external stakeholders.
  • Demonstrates strong critical thinking skills with the ability to identify interdependencies across cybersecurity processes, tools, and stakeholders to proactively mitigate risks and drive effective decision-making
  • Translating multiple data elements (both financial and cyber-orientated) into a tangible product which can drive insights and decision making
  • Experience with cybersecurity strategy development and portfolio governance
  • Knowledge of Cybersecurity Financial Management, specifically related to operational, capital, and professional service expenses


The salary range is indicative for roles at the same level within DTCC across all US locations. Actual salary is determined based on the role, location, individual experience, skills, and other considerations.

Learn more about Clearance and Settlement by clicking here.

About DTCC

The Depository Trust & Clearing Corporation (DTCC) is a financial services company that provides clearing, settlement, and information services for the global financial industry. DTCC was founded in 1999 and is headquartered in New York City. The company operates through subsidiaries that provide services such as trade matching, risk management, and asset servicing. DTCC is owned by its users, which include broker-dealers, banks, and other financial institutions. The company is committed to reducing risk and increasing efficiency in the financial markets.
Learn more about DTCC
Size
4,000 employees
Industry
Founded
1973

Similar Jobs

More Jobs at DTCC

More Information Technology Jobs

Find similar Cyber Security Strategy Senior Associate jobs: