Attack Surface Reduction Lead Associate Director

  • Boston, MA
  • Posted 5 hours ago | Updated 5 hours ago

Overview

On Site
Hybrid
Full Time

Skills

Professional Development
Innovation
Life Insurance
Strategic Management
Information Security
Corporate Social Responsibility
Threat Analysis
Incident Management
Continuous Monitoring
Decision-making
Scheduling
Resource Allocation
Management
Regulatory Compliance
Documentation
Cyber Security
IT Risk
IT Risk Management
Vulnerability Management
SAP BASIS
Banking
Reporting
Amazon S3
Securities
LinkedIn
YouTube
Facebook
Collaboration
Teamwork
Financial Services
Security Clearance
Thought Leadership
DTCC
Finance

Job Details

Are you ready to make an impact at DTCC?

Do you want to work on innovative projects, collaborate with a dynamic and supportive team, and receive investment in your professional development? At DTCC, we are at the forefront of innovation in the financial markets. We're committed to helping our employees grow and succeed. We believe that you have the skills and drive to make a real impact. We foster a thriving internal community and are committed to creating a workplace that looks like the world that we serve.
Pay and Benefits:
  • Competitive compensation, including base pay and annual incentive
  • Comprehensive health and life insurance and well-being benefits, based on location
  • Pension / Retirement benefits
  • Paid Time Off and Personal/Family Care, and other leaves of absence when needed to support your physical, financial, and emotional well-being.
  • DTCC offers a flexible/hybrid model of 3 days onsite and 2 days remote (onsite Tuesdays, Wednesdays and a third day unique to each team or employee).
The Impact you will have in this role:
IT Cyber Security & Resiliency (CSR) sets strategic direction for IT Risk and Information Security, maintains corporate security policies and control standards, and serves as the primary interface for regulatory and client reviews. CSR also oversees threat intelligence and incident response coordination across the enterprise.

The Threat & Vulnerability team proactively identifies and mitigates security threats through continuous monitoring, assessment, and development of robust security measures to safeguard DTCC's infrastructure.

The Attack Surface Reduction Lead Associate Director will drive the strategic reduction of externally exposed assets and findings, aligning with the Edge Zero initiative. This role requires a strong communicator and partner who can navigate the complexity of perimeter technologies and defensive controls to reduce risk across the enterprise.
Your Primary Responsibilities:
  • Lead the identification and reduction of externally exposed assets and vulnerabilities across DTCC's perimeter.
  • Foster trust-based relationships with stakeholders who own perimeter and edge assets to align on responsibilities, risks, and remediation actions.
  • Shape priorities and influence planning across teams to embed risk reduction into decision-making processes.
  • Demonstrate technical curiosity by developing deep understanding of perimeter technologies and defensive controls.
  • Manage vulnerability management projects, including scheduling, resource allocation, and reporting.
  • Create and present meaningful metrics and reports to senior management on attack surface reduction effectiveness.
  • Ensure adherence to relevant compliance standards and internal policies.
  • Lead and coordinate responses to security incidents related to external threats and vulnerabilities.
  • Develop and maintain policies, procedures, job aids, and documentation.

**NOTE: The Primary Responsibilities of this role are not limited to the details above. **
Qualifications:
  • Minimum of 8 years of related experience in cybersecurity, threat and vulnerability management, or technology risk.
  • Bachelor's degree preferred or equivalent experience.
Talents Needed for Success:
  • Proven ability to influence cross-functional teams and drive strategic initiatives.
  • Strong understanding of perimeter security technologies and external threat landscapes.
  • Experience with vulnerability management tools, metrics, and reporting.

The salary range is indicative for roles at the same level within DTCC across all US locations. Actual salary is determined based on the role, location, individual experience, skills, and other considerations. We are an equal opportunity employer and value diversity at our company. We do not discriminate on the basis of race, religion, color, national origin, sex, gender, gender expression, sexual orientation, age, marital status, veteran status, or disability status. We will ensure that individuals with disabilities are provided reasonable accommodation to participate in the job application or interview process, to perform essential job functions, and to receive other benefits and privileges of employment. Please contact us to request accommodation.

About Us

With over 50 years of experience, DTCC is the premier post-trade market infrastructure for the global financial services industry. From 20 locations around the world, DTCC, through its subsidiaries, automates, centralizes, and standardizes the processing of financial transactions, mitigating risk, increasing transparency, enhancing performance and driving efficiency for thousands of broker/dealers, custodian banks and asset managers. Industry owned and governed, the firm innovates purposefully, simplifying the complexities of clearing, settlement, asset servicing, transaction processing, trade reporting and data services across asset classes, bringing enhanced resilience and soundness to existing financial markets while advancing the digital asset ecosystem. In 2024, DTCC's subsidiaries processed securities transactions valued at U.S. $3.7 quadrillion and its depository subsidiary provided custody and asset servicing for securities issues from over 150 countries and territories valued at U.S. $99 trillion. DTCC's Global Trade Repository service, through locally registered, licensed, or approved trade repositories, processes more than 25 billion messages annually. To learn more, please visit us at or connect with us on LinkedIn , X , YouTube , Facebook and Instagram .

DTCC proudly supports Flexible Work Arrangements favoring openness and gives people freedom to do their jobs well, by encouraging diverse opinions and emphasizing teamwork. When you join our team, you'll have an opportunity to make meaningful contributions at a company that is recognized as a thought leader in both the financial services and technology industries. A DTCC career is more than a good way to earn a living. It's the chance to make a difference at a company that's truly one of a kind.

Learn more about Clearance and Settlement by clicking here .

About the Team

Serves as a dedicated technology resource for advancing DTCC's business opportunities and providing industry thought leadership for leveraging new technology. The goal of this new department is to partner internally with IT, our business and regulatory divisions and externally with clients, regulators, and fintech vendors, to help build new platforms and business models to advance DTCC's mission to support the financial markets.
Employers have access to artificial intelligence language tools (“AI”) that help generate and enhance job descriptions and AI may have been used to create this description. The position description has been reviewed for accuracy and Dice believes it to correctly reflect the job opportunity.

About DTCC