Compliance Security Architect

2 months ago


Boston, United States State Street Corporation Full time
Who we are looking for

The State Street Global Cybersecurity team is looking for a Compliance Security Architect . The Cybersecurity team delivers platforms, architecture, and tooling to help Cybersecurity teams make faster, more informed decisions as we work to secure State Street's digital footprint. As a Compliance Security Architect on the Security Architecture Governance Engineering (SAGE) team, you will focus on performing security risk assessment of in-house developed applications, cloud platforms, and vendor solutions. You will help define the reference architectures, security technical standards, compliance mappings, and enforce their adherence enterprise wide.

What you will be responsible for
  • Conduct comprehensive risk assessments, threat modelling, compliance mappings, and vulnerability analysis to identify potential security gaps and develop mitigation strategies.
  • Perform Security Architecture compliance reviews, documenting findings and proposing remediation.
  • Help shift security left by having tollgates in place for security testing to be done early in SDLC (Software Development Lifecycle) and by ensuring security considerations are embedded in early architecture designs.
  • Strong understanding of compliance and regulatory frameworks (NIST, ISO, etc...)
  • Designing and documenting reusable security reference architecture patterns.
  • Develop Technical security standards, aligning and enforcing these across the organization.
  • Work closely with compliance, IAM architects, Cloud Architects, Solution Architects, Security teams, and other stakeholders.
  • Help harden the security control on cloud landing zone and cloud services.
  • Participate in regular security audits and compliance activities.
  • Review vendor product security, ensure a shared responsibly model is in place.
  • Help guide teams through the security related governance processes.

What we value
These skills will help you succeed in this role
  • Strong understanding of IAM technologies, ITDR, UEBA and behavior analytics platforms
  • Hands-on experience in working with AD in both on-premises and hybrid environments, including Azure AD (Microsoft Entra ID).
  • Good problem solving and analytical skills.
  • Knowledge of diagnostic and support tools used in a support environment.
  • Virtual leadership experience with ability to effectively drive results, provide feedback/direction, and manage and build relationships with leaders and team members in a geographically dispersed team environment.
  • Knowledge and understanding of data organizing or structuring complex data across varied data sources.
  • Experience in security engineering, with a focus on hybrid and multi cloud solutions.
  • Knowledge of scripting, automation and security analytics, and attack path analysis tools.
  • Hands experience in designing and securing cloud-based solutions and cloud services.
  • Certifications like Microsoft Certified: Azure Administrator Associate or AWS Certified Security - Specialty can be beneficial.
  • Experience in design and documenting application solution architecture.

Education & Preferred Qualifications
  • You have multiyear (>8 years) experience within Cybersecurity including SecOps, penetration testing, security analytics, threat hunting, and/or security architecture.
  • Bachelor's degree in cyber security, Computer Science, or related technical discipline, with >6 years of experience.
  • You have experience with security observability and identity threat monitoring in hybrid cloud environments.
  • You have a proven ability to Independently drive transformational security projects cross-organization.
  • You have knowledge of security testing and penetration testing tools and techniques, and with security analytics tools and platforms.
  • You are a strong communicator who is comfortable working cross-functionally, with a track record of delivering results and demonstrating strong ownership.
  • Preference for candidates who have had experience in security analytics, security research, offensive security, or advanced threat prevention teams.
  • Given that much activity will have to be centred in US ET hours, we are looking for a candidate located on the eastern seaboard.

Are you the right candidate? Yes
We truly believe in the power that comes from the diverse backgrounds and experiences our employees bring with them. Although each vacancy details what we are looking for, we don't necessarily need you to fulfil all of them when applying. If you like change and innovation, seek to see the bigger picture, make data driven decisions and are a good team player, you could be a great fit.

Why this role is important to us
Our technology function, Global Technology Services (GTS), is vital to State Street and is the key enabler for our business to deliver data and insights to our clients. We're driving the company's digital transformation and expanding business capabilities using industry best practices and advanced technologies such as cloud, artificial intelligence and robotics process automation.
We offer a collaborative environment where technology skills and innovation are valued in a global organization. We're looking for top technical talent to join our team and deliver creative technology solutions that help us become an end-to-end, next-generation financial services company.
Join us if you want to grow your technical skills, solve real problems and make your mark on our industry.

About State Street
What we do. State Street is one of the largest custodian banks, asset managers and asset intelligence companies in the world. From technology to product innovation, we're making our mark on the financial services industry. For more than two centuries, we've been helping our clients safeguard and steward the investments of millions of people. We provide investment servicing, data & analytics, investment research & trading and investment management to institutional clients.
Work, Live and Grow. We make all efforts to create a great work environment. Our benefits packages are competitive and comprehensive. Details vary by location, but you may expect generous medical care, insurance and savings plans, among other perks. You'll have access to flexible Work Programs to help you match your needs. And our wealth of development programs and educational support will help you reach your full potential.
Inclusion, Diversity and Social Responsibility. We truly believe our employees' diverse backgrounds, experiences and perspectives are a powerful contributor to creating an inclusive environment where everyone can thrive and reach their maximum potential while adding value to both our organization and our clients. We warmly welcome candidates of diverse origin, background, ability, age, sexual orientation, gender identity and personality. Another fundamental value at State Street is active engagement with our communities around the world, both as a partner and a leader. You will have tools to help balance your professional and personal life, paid volunteer days, matching gift programs and access to employee networks that help you stay connected to what matters to you.
State Street is an equal opportunity and affirmative action employer.

Salary Range:
$120,000 - $202,500 Annual
The range quoted above applies to the role in the primary location specified. If the candidate would ultimately work outside of the primary location above, the applicable range could differ.

Job Application Disclosure:
It is unlawful in Massachusetts to require or administer a lie detector test as a condition of employment or continued employment. An employer who violates this law shall be subject to criminal penalties and civil liability.

State Street's Speak Up Line


  • Boston, Massachusetts, United States Watershed Security Full time

    Job SummaryWe are seeking a highly skilled and experienced Chief Information Security Architect to join our team at Watershed Security. As a key member of our cybersecurity team, you will play a critical role in designing and implementing secure systems that meet the needs of our clients.About the RoleThe successful candidate will have a strong background in...


  • Boston, United States Sectech Solutions Full time

    Cyber Security ArchitectBoston, MA (Hybrid – 2 days on-site per week)Salary NegotiableStep into a career where technology safeguards life-changing medical innovations. At our global medtech company, we’re seeking a visionary Cyber Security Architect to design and lead robust security strategies that protect our critical systems, patient data, and...

  • Security Architect

    1 week ago


    Boston, United States ApTask Full time

    About Client: The client provides information technology (IT) services, including business outsourcing, infrastructure technology, and application services. The application service offered by the company includes application development, maintenance, and support. The markets served by the company are financial services and insurance, healthcare,...


  • Boston, Massachusetts, United States Blue Cross Blue Shield of Massachusetts Full time

    About the RoleWe are seeking an experienced Enterprise Security Architect to join our team at Blue Cross Blue Shield of Massachusetts. As a key member of our IT organization, you will play a critical role in ensuring the security and integrity of our enterprise applications and systems.As an Enterprise Security Architect, you will be responsible for...

  • Security Architect

    3 days ago


    Boston, United States Strategic Staffing Solutions Full time

    Application Security Architect Boston, MA - LOCAL CANDIDATES, FIRST PREFERENCEHybrid onsite 3 days (Tues-Thurs onsite)6 months with possible extension$88-90/hr We are hiring for an experienced Senior Application Security Architect Must have the following background - local candidates are considered first, but open to nearby relocations Requirements: ...

  • Security Architect

    4 days ago


    Boston, United States Marchon Partners Full time

    Job Title: Application Security Architect Location: Hybrid, 3 days in Boston (Tues – Thurs)Duration: 6+ months with possible extensionJob Summary: We are seeking an experienced Security Architect with a strong background in application security, architecture reviews, and security risk assessments. The ideal candidate will have significant experience in...


  • Boston, United States Trustmark Full time

    Trustmark’s mission is to improve wellbeing – for everyone. It is a mission grounded in a belief in equality and born from our caring culture. It is a culture we can only realize by building trust. Trust established by ensuring associates feel respected, valued and heard. At Trustmark, you’ll work collaboratively to transform lives and help people,...

  • Security Architect

    3 days ago


    Boston, United States Strategic Staffing Solutions Full time

    Strategic Staffing Solutions had a new contract position available with our financial services customer in Boston! 6 months+ W2 only, no corp to corp Hybrid-3 days/week on site in Boston, 2 days remote Rate up to $90/hr W2 Job Title: Application Security Architect Manager Notes: This is a senior level role that will be focused on application security....

  • Security Architect

    4 days ago


    Boston, United States Strategic Staffing Solutions Full time

    Job Title: Security Architect Location: Boston, MA Setting: Hybrid Required (Remote is NOT an Option) Duration: 6+ months. Qualifications: Bachelor's or Master's degree in Computer Science, Cybersecurity, or a related field. Minimum of 5 years of experience in an application security role, with hands-on experience in security architecture and risk...


  • boston, United States BlueVoyant Full time

    Client Security ArchitectLocation: Remote in the United StatesUnited States Citizenship RequiredSummary:The Client Security Architect must have experience working across a wide variety of security solutions and technologies. Must be able to maintain and troubleshoot solutions that enable security configurations, administration, management, and support. Must...


  • boston, United States BlueVoyant Full time

    Client Security ArchitectLocation: Remote in the United StatesUnited States Citizenship RequiredSummary:The Client Security Architect must have experience working across a wide variety of security solutions and technologies. Must be able to maintain and troubleshoot solutions that enable security configurations, administration, management, and support. Must...


  • Boston, United States BlueVoyant Full time

    Client Security ArchitectLocation: Remote in the United StatesUnited States Citizenship RequiredSummary:The Client Security Architect must have experience working across a wide variety of security solutions and technologies. Must be able to maintain and troubleshoot solutions that enable security configurations, administration, management, and support. Must...


  • Boston, United States Sibitalent Corp Full time

    Title: Application Security Architect Location: Boston, MA – Hybrid onsite 3 days (Tues-Thurs onsite)Duration: 6 months Only W2 or self corp......................Job Description:We are hiring for an experienced Senior Application Security Architect Must have the following background – local candidates are considered first, but open to nearby...


  • Boston, United States Randstad Full time

    application security architect. boston , massachusetts posted 2 days ago job details summary $70 - $75 per hour contract bachelor degree category computer and mathematical occupations reference1074090 job details job summary: Seeking an experienced Security Architect with a background in application security, architecture reviews, and security...


  • Boston, United States Paul Hastings LLP Full time

    Paul Hastings is a leading international law firm that provides innovative legal solutions to many of the world's top financial institutions and Fortune Global 500 companies. With a strong presence throughout Asia, Europe, Latin America, and the U.S., we have the global reach and extensive capabilities to provide personalized service wherever our clients'...


  • Boston, United States Paul Hastings Full time

    Paul Hastings is a leading international law firm that provides innovative legal solutions to many of the world's top financial institutions and Fortune Global 500 companies. With a strong presence throughout Asia, Europe, Latin America, and the U.S., we have the global reach and extensive capabilities to provide personalized service wherever our clients'...

  • Security Architect

    4 days ago


    Boston, United States Marchon Partners Full time

    Job Summary: We are seeking an experienced Security Architect with a strong background in application security, architecture reviews, and security risk assessments. The ideal candidate will have significant experience in securing containerized environments (OpenShift, Podman, and Docker), API Management (preferably with MuleSoft and Traceable), managing open...


  • Boston, United States Gardner Resources Consulting, LLC Full time

    Application Security Architect Must Have:Bachelor’s or Master’s degree in Computer Science, Cybersecurity, or a related field.5 years of experience in an application security role, with hands-on experience in security architecture and risk assessments.Proven expertise in securing container environments and managing container security.Experience with API...

  • AWS Architect

    4 weeks ago


    Boston, United States Inabia Software & Consulting Inc. Full time

    Role: AWS Architect Location: Boston, MA Type: Contract Client: HCL Rate: $70/hr. ON C2C - MaxAs an AWS Solutions Architect, you need a diverse set of skills to design, implement, and maintain robust and scalable cloud solutions on the AWS platform. Here are some of the top skills required for an AWS Solutions Architect role:Solid understanding of AWS...


  • Boston, United States Fidelity Investments Full time

    Job Description: The Role At Fidelity Asset Management Technology, we are seeking a highly motivated and experienced Application Security Architect to drive strategic security initiatives across our entire technology landscape. In this role, you will work directly with product teams across Asset Management Technology and the enterprise to design secure...