Hiring.Camp

Security Architect- MD

Statestreet

·

Yesterday

Salary
$175k – $288k
Location
Quincy, Massachusetts, United States of America · Chicago, Illinois
Type
Full-time
Department
Engineering
Experience
15+ years
Education
Bachelor
Closing date
Today
Source
Workday

Description

Who we are looking for

The Managing Director, Security Architect is a senior leadership role responsible for defining and leading the firm's horizontal security architecture across AI Security, Data Protection, Cryptography, and Post-Quantum Cryptography (PQC). Reporting to the SVP, Data & AI Security, this leader ensures that architecture standards, controls, and secure-by-design patterns are coherent, consistent, and mutually reinforcing across all four disciplines. 

Why this role is important to us

This role exists to connect and elevate what would otherwise be siloed domains. The Managing Director will set a unifying architectural vision, establish shared standards and reference designs, and drive the enterprise toward a defensible, forward-looking security posture that spans data, models, keys, and cryptographic systems. The leader balances long-range strategy — including the firm's PQC transition — with the practical delivery of controls embedded into engineering workflows. 

The successful candidate is a recognized architecture leader with deep, credible expertise across multiple security domains, the executive presence to influence senior technology and business leaders, and a proven ability to translate complex technical risk into actionable decisions. They will lead a team of domain architects and act as a force multiplier across the broader security and engineering organization. 

What you will be responsible for

Horizontal Security Architecture & Strategy 

  • Define and steward a unified, enterprise-wide security architecture spanning AI Security, Data Protection, Cryptography, and PQC. 

  • Establish shared architecture standards, guardrails, and reference designs that remain consistent across domains while addressing domain-specific risk. 

  • Ensure architectural decisions in one discipline reinforce the others (e.g., data protection controls that account for cryptographic agility and AI data exposure). 

  • Set the multi-year architectural roadmap and align it with business priorities, regulatory expectations, and the firm's technology transformation. 

Cryptography & Post-Quantum Readiness 

  • Lead the enterprise cryptographic architecture, including encryption, key management, secrets management, and machine identity. 

  • Own the firm's Post-Quantum Cryptography (PQC) strategy and transition roadmap, driving cryptographic agility and inventory (CBOM) across the environment. 

  • Establish standards for algorithm selection, key lifecycle, and crypto-agile design that support long-lived data protection. 

  • Partner with Infrastructure and Platform teams to modernize cryptographic hygiene and reduce operational risk. 

AI Security Architecture 

  • Set enterprise AI security architecture direction, including secure-by-default patterns for AI platforms, GenAI tooling, and AI agents. 

  • Ensure AI threat modeling and controls (prompt injection, model inversion, data poisoning, adversarial AI) are integrated with data protection and cryptographic standards. 

  • Guide the AI Security Architecture and Engineering teams to deliver coherent, defensible AI controls at scale. 

Data Protection Architecture 

  • Define architecture patterns for data discovery, classification, DLP, access governance, and automated protection controls. 

  • Ensure data protection controls operate consistently across on-premises, cloud, SaaS, and AI environments. 

  • Align data-centric controls with cryptographic and AI security standards to protect sensitive data throughout its lifecycle. 

Secure Delivery & Enablement 

  • Integrate security architecture into DevSecOps pipelines through paved-road platforms, automation, and policy-as-code. 

  • Enable secure adoption of AI, data, and cryptographic capabilities with minimal friction for engineering and business partners. 

  • Establish reusable, secure-by-default patterns that scale across product teams. 

Regulatory, Audit & Operational Excellence 

  • Ensure architecture standards align with regulatory expectations (FFIEC, NIST, ISO, NYDFS, GDPR, SEC). 

  • Serve as a credible technical voice in regulatory, audit, and client engagements across all four domains. 

  • Drive data-driven architecture decisions using metrics on coverage, risk concentration, and control effectiveness. 

Executive Engagement & Team Leadership 

  • Serve as a trusted technical advisor to the SVP, Data & AI Security, and to CISO, CIO, and architecture leadership. 

  • Deliver concise executive briefings on cross-domain security posture, emerging risks, and architectural tradeoffs. 

  • Build and lead a high-performing team of domain architects across AI, Data, and Cryptography. 

  • Act as a multiplier for security engineering and platform teams through coaching and architectural leadership. 

What we value

These skills will help you succeed in this role

  • 15+ years of experience in security architecture, security engineering, or related disciplines. 

  • Demonstrated leadership across multiple security domains — ideally spanning AI security, data protection, and cryptography. 

  • Deep, hands-on expertise in cryptographic architecture and modernization, with direct experience in PQC transition and cryptographic agility (CBOM). 

  • Proven experience designing and scaling secure cloud-native architectures in large, regulated environments. 

  • Hands-on experience securing AI/ML and GenAI systems, including governance, data protection, and model risk. 

  • Strong background in regulatory audits, control remediation, and executive-level risk communication. 

  • Experience leading global, multidisciplinary architecture or engineering teams. 

Education & Preferred Qualifications

  • Bachelor's degree in Computer Science, Information Security, Engineering, or a related field. Advanced degree preferred. 

  • Relevant certifications (CISSP, CISM, CCSP, cloud security, or architecture certifications) strongly

Skills & Characteristics 

  • Rare breadth of technical credibility across AI, data, and cryptographic security domains. 

  • Strong bias toward automation, scale, and measurable outcomes. 

  • Ability to unify siloed disciplines into a coherent architectural vision. 

  • Executive presence with the ability to translate complex, cross-domain risk into business-aligned decisions. 

  • Change agent mindset with a track record of modernizing security functions. 

  • Customer-first perspective focused on trust, resilience, and long-term value. 

What We Offer 

  • Opportunity to define and lead horizontal security architecture at a global systemically important financial institution. 

  • High-impact leadership role spanning AI, data, cryptography, and post-quantum readiness. 

  • Executive visibility and influence across Security, Technology, and Data organizations. 

  • Competitive compensation and comprehensive benefits. 

  • A collaborative culture focused on engineering excellence, innovation, and client trust. 

Salary Range:

$175,000 - $287,500 Annual

The range quoted above applies to the role in the primary location specified. If the candidate would ultimately work outside of the primary location above, the applicable range could differ.

Employees are eligible to participate in State Street’s comprehensive benefits program, which includes: our retirement savings plan (401K) with company match; insurance coverage including basic life, medical, dental, vision, long-term disability, and other optional additional coverages; paid-time off including vacation, sick leave, short term disability, and family care responsibilities; access to our Employee Assistance Program; incentive compensation including eligibility for annual performance-based awards (excluding certain sales roles subject to sales incentive plans); and, eligibility for certain tax advantaged savings plans.

For a full overview, visit https://hrportal.ehr.com/statestreet/Home.

About State Street

Across the globe, institutional investors rely on us to help them manage risk, respond to challenges, and drive performance and profitability. We keep our clients at the heart of everything we do, and smart, engaged employees are essential to our continued success.

We are committed to fostering an environment where every employee feels valued and empowered to reach their full potential. As an essential partner in our shared success, you’ll benefit from inclusive development opportunities, flexible work-life support, paid volunteer days, and vibrant employee networks that keep you connected to what matters most. Join us in shaping the future.

As an Equal Opportunity Employer, we consider all qualified applicants for all positions without regard to race, creed, color, religion, national origin, ancestry, ethnicity, age, disability, genetic information, sex, sexual orientation, gender identity or expression, citizenship, marital status, domestic partnership or civil union status, familial status, military and veteran status, and other characteristics protected by applicable law.

Discover more information on jobs at StateStreet.com/careers

Read our CEO Statement

Job Application Disclosure:

It is unlawful in Massachusetts to require or administer a lie detector test as a condition of employment or continued employment. An employer who violates this law shall be subject to criminal penalties and civil liability.

Skills

GDPRCISSP

Similar Jobs

2

Lead Security Architect (MDE, Entra ID, MDCA)

Accenture · Kuala Lumpur, Exchange 106, Malaysia

3 weeks ago

Lead Security Architect (MDE, Entra ID, MDCA)

Accenture · Jakarta, Wisma 46, Indonesia

3 weeks ago