Marex has unique access across markets with significant share globally both on and off exchange. The depth of knowledge amongst its teams and divisions provides its customers with clear advantage, and its technology-led service provides access to all major exchanges, order-flow management via screen, voice and DMA, plus award-winning data, insights and analytics.
The Technology Department delivers differentiation, scalability and security for the business. Reporting to the COO, Technology provides digital tools, software services and infrastructure globally to all business groups. Software development and support teams work in agile streams aligned to specific business areas. Our other teams work enterprise-wide to provide critical services including our global service desk, network and system infrastructure, IT operations, security, enterprise architecture and design.
The Information Security team reports to the CTO and is responsible for protecting Marex data and assets, as well as providing security advice. The team is relatively small; therefore, its members have a chance to experience various areas of security.
Role Summary
The Security Engineer/Analyst will operate within the Cyber Security team under the Cyber Security Manager from Singapore, delivering security services across the Marex Group. This role is responsible for counteracting identified cyber threats, conducting proactive threat hunting, developing new detections to continuously assess and strengthen control effectiveness. Additionally, the role also actively contributes to the regional cyber security awareness programmes, responding to regulatory queries
Success in this position requires a seasoned security professional who can balance hands on technical work with strategic oversight. The role spans automation, evaluation of emerging technologies, and collaboration with internal stakeholders and external partners.
The ideal candidate will excel at managing multiple priorities in a fast moving environment and bring strong technical expertise, analytical capability, and operational discipline to the team.
All employees are expected to understand and comply with any Sarbanes Oxley operational requirements relevant to their role.
Overall Responsibilities
- Engineer security products to be production ready.
- Monitors security toolset and controls to identify potential incidents, network intrusions, and malware events, etc., ensuring confidentiality, integrity, and availability of Marex's critical systems the gaps for an effective Threat detection and response.
- Developing and documenting cyber security standards and procedures
- Collaborates with technology teams for incident handling, patching disciplines, and system hardening frameworks
- Collaborates with the Information Technology team on deployment, operation, and continual improvements of security solutions
- Contribute to SOC automation initiatives, improving efficiency through playbooks, enrichment, and workflow optimization.
- Drive proactive threat hunting to identify emerging threats, anomalous behaviour, and gaps in existing controls.
- Develop, tune, and maintain detection logic across SIEM, EDR, and cloud security platforms.
- Coordinate with cross functional teams implement security hardening, remediation, and long term fixes.
- Monitor the effectiveness of security controls and recommend improvements based on threat trends and operational insights.
- Manage relationships with external partners, MSSPs, threat intelligence providers, and technology vendors.
- Ensure high quality documentation, including runbooks, incident reports, and operational procedures.
- Provide leadership, coaching, and technical guidance to analysts and engineers within the security operations function.
- Support operational resilience activities, including scenario testing, tabletop exercises, and service dependency mapping.
- Maintain situational awareness of the threat landscape and translate intelligence into actionable operational priorities.
- Ensure compliance with internal policies, regulatory expectations, and industry frameworks relevant to security operations.
- Ability to effectively communicate/feedback to the Security Engineers on detection coverage issues.
- Track monthly KPI's for the Security Operations.
Standard Responsibilities
- Ensuring compliance with the company's regulatory requirements under the FCA, NFA, AMF, AFM, MAS.
- Adhere to the operational risk framework for your role ensuring that all regulatory or company determined parameters are complied with.
- Role model for demonstrating highest level standards of integrity and conduct and reflecting Company Values.
- At all times complying with Marex's Code of Conduct.
- To ensure that you are fully aware of and adhere to internal policies that relate to you, your role or any other activities for which you have any level of responsibility.
- To report any breaches of policy to Compliance and/ or your supervisor as required.
- To escalate risk events immediately.
- To provide input to risk management processes, as required.
- The Company may require you to carry out other duties from time to time
Competencies, Skills And Experience
Competencies
- A collaborative team player, approachable, self-efficient and influences a positive work environment
- Demonstrates curiosity
- Resilient in a challenging, fast-paced environment
- Ability to take a high level of responsibility in a fast pace and high-volume environment
- Excels at building relationships, networking and influencing others
- Strategic collaborator with insight and agility, able to anticipate future challenges, ensuring operational effectiveness
Skills And Experience
- A minimum of 8 years of experience in the field of Cyber Security dealing with various incidents in Financial Services or Technology Services.
- Detailed understanding of Kill chain, Mitre Attack & Defend Framework
- In-depth knowledge and expertise across multiple technologies and protocols such as Entra, TLS, IDS, Identity Protection, PAM, DLP, WAF, DMARC, AV/EDR, XDR, CNAPP.
- Expertise on SIEM, PAM, EDR, log analysis and Incident Response.
- Managing multiple security OEMs, MDR Partners and suppliers, working on monthly, quarterly service reviews, reviewing SLA's, MTTR.
- Broad knowledge and expertise of security processes (like vulnerability management or penetration testing), standards (like CIS) and frameworks (like NIST)
- Good understanding of Windows, Linux, Public Cloud and SDLC solutions
- Excellent communication skills, with the ability to effectively engage with stakeholders.
- Experience working in a regulated environment and knowledge of the risk and compliance requirements associated with this.
Company Values
Acting as a role model for the values of the Company:
Respect - Clients are at the heart of our business, with superior execution and superb client service the foundation of the firm. We respect our clients and always treat them fairly.
Integrity - Doing business the right way is the only way. We hold ourselves to a high ethical standard in everything we do – our clients expect this and we demand it of ourselves.
Collaborative - We work in teams - open and direct communication and the willingness to work hard and collaboratively are the basis for effective teamwork. Working well with others is necessary for us to succeed at what we do.
Developing our People - Our people are the basis of our competitive advantage. We look to grow our own and make Marex the place ambitious, hardworking, talented people choose to build their careers.
Adaptable and Nimble - Our size and flexibility is an advantage. We are big enough to support our client's various needs, and adaptable and nimble enough to respond quickly to changing conditions or requirements. A non-bureaucratic, but well controlled environment fosters initiative as well as employee satisfaction.
Conduct Rules
You must:
- Act with integrity
- Act with due skill, care and diligence
- Be open and cooperative with the FCA, the PRA and other regulators (where applicable)
- Pay due regard to the interests of customers and treat them fairly
- Observe proper standard of market conduct
- Act to deliver good outcomes for retail customers