AI Security Architecture- VP
AI in this role
Who we are looking for
We are in Vice President, AI Security Architecture reporting directly to the Managing Director, AI Security and Data Protection. You will lead the design and oversight of secure architecture patterns, reference architectures, standards, and guardrails for artificial intelligence, machine learning, and generative AI solutions across the enterprise. You will partner with engineering, platform, product security, data, risk, and business teams to ensure AI capabilities are secure by design, responsibly implemented, and aligned with internal control and regulatory expectations.
Why this role is important to us
Global Cybersecurity protects State Street and its clients from the impact of cyber attacks by understanding cyber risk and mitigating it through a robust, continuously evolving cybersecurity program and control environment. Fusion & Security Operations provides real-time knowledge of current cyber threats to better prepare State Street for future threats. This role is critical to enabling secure AI adoption, protecting sensitive data, reducing emerging technology risk, and establishing scalable architecture practices that support innovation without compromising resilience, regulatory readiness, or client trust.
What you will be responsible for
In this role, you will:
• Lead the design and implementation of secure architecture patterns for AI, machine learning, and generative AI systems, including data pipelines, model access, APIs, agents, retrieval-augmented generation, and AI-enabled applications.
• Define and maintain enterprise AI security reference architectures, technical standards, guardrails, reusable patterns, and architecture decision criteria.
• Lead architecture and design reviews for AI initiatives, ensuring security, privacy, resilience, and control requirements are incorporated early in the solution lifecycle.
• Perform AI-focused threat modeling across models, data flows, platforms, integrations, and user interactions, addressing risks such as data leakage, prompt injection, insecure model access, supply chain vulnerabilities, model misuse, and excessive agency.
• Translate identified risks into practical security requirements, mitigation strategies, compensating controls, and risk-based architecture decisions.
• Partner with engineering, product security, platform, cloud, application, and data teams to embed AI security controls into software development, DevSecOps, model development, deployment, and monitoring workflows.
• Develop validation criteria and repeatable assurance patterns for AI platforms, pipelines, models, third-party services, and emerging capabilities.
• Provide architecture oversight for generative AI tools, internal AI services, developer productivity solutions, and business-led AI use cases.
• Ensure AI security designs align with internal policies and applicable external standards and regulatory expectations, including NIST, ISO, and FFIEC concepts.
• Support risk, audit, compliance, and incident management activities through clear documentation of architecture decisions, control designs, residual risks, and remediation actions.
• Communicate technical risks, architecture options, and recommendations clearly to engineering teams, business stakeholders, governance forums, and senior leadership.
• Mentor architects and security practitioners, promote internal knowledge sharing, and continuously improve AI security architecture practices as technologies and threats evolve.
What we value
These skills will help you succeed in this role
Deep technical expertise in security architecture, secure design, application security, cloud security, product security, data protection, and modern engineering practices.
• Practical understanding of AI and machine learning architectures, generative AI, model and data pipelines, APIs, cloud-native platforms, and AI security risk patterns.
• Ability to translate complex technical and emerging risks into clear architecture requirements, control designs, implementation patterns, and executive decisions.
• Experience leading architecture reviews, threat modeling, technical risk assessments, and secure-by-design programs in complex enterprise environments.
• Strong collaboration and influencing skills across Security, Engineering, Technology, Data, Risk, Compliance, Audit, and business teams.
• Execution-focused leadership with sound judgment, strong problem-solving skills, and a commitment to measurable risk reduction.
• Curiosity, adaptability, and continuous learning in a rapidly evolving AI security landscape
Education & Preferred Qualifications
• Degree required: Bachelor’s degree in Computer Science, Information Security, Engineering, or a related discipline; advanced degree preferred.
• Years of experience: 10+ years of progressive experience in cybersecurity, including significant experience in security architecture, application security, product security, cloud security, or security engineering.
• Certifications required or preferred: CISSP, CCSP, CSSLP, cloud security, architecture, or comparable industry certifications preferred.
• Knowledge of tools or technologies: Cloud-native architectures; AI and machine learning platforms; generative AI and large language model solutions; APIs; data pipelines; DevSecOps and CI/CD; threat modeling; security testing; identity and access management; data protection; logging, monitoring, and security automation.
• Additional language requirements: N/A.
• Other qualifications: Experience securing enterprise-scale platforms and applications, working in regulated environments, establishing reusable architecture standards, and communicating technical risk to engineering and senior leadership audiences.
Additional requirements
Additional requirements for this role include the ability to coordinate across global teams and time zones, support high-priority architecture, risk, audit, and incident activities as needed, and manage sensitive information in accordance with company requirements. Travel may be required based on business needs.
Work Requirement
Hybrid Work Requirement: Hybrid, subject to company and location-specific requirements.
• Shift Timings: Standard business hours with flexibility to support global stakeholders and critical security, architecture, or regulatory needs.
Salary Range:
HK$680,000 - HK$1,445,000 AnnualThe range quoted above applies to the role in the primary location specified. If the candidate would ultimately work outside of the primary location above, the applicable range could differ.
Employees are eligible to participate in State Street’s comprehensive benefits program, which includes: our retirement savings plan (401K) with company match; insurance coverage including basic life, medical, dental, vision, long-term disability, and other optional additional coverages; paid-time off including vacation, sick leave, short term disability, and family care responsibilities; access to our Employee Assistance Program; incentive compensation including eligibility for annual performance-based awards (excluding certain sales roles subject to sales incentive plans); and, eligibility for certain tax advantaged savings plans.
For a full overview, visit https://hrportal.ehr.com/statestreet/Home.
About State StreetAcross the globe, institutional investors rely on us to help them manage risk, respond to challenges, and drive performance and profitability. We keep our clients at the heart of everything we do, and smart, engaged employees are essential to our continued success.
We are committed to fostering an environment where every employee feels valued and empowered to reach their full potential. As an essential partner in our shared success, you’ll benefit from inclusive development opportunities, flexible work-life support, paid volunteer days, and vibrant employee networks that keep you connected to what matters most. Join us in shaping the future.
As an Equal Opportunity Employer, we consider all qualified applicants for all positions without regard to race, creed, color, religion, national origin, ancestry, ethnicity, age, disability, genetic information, sex, sexual orientation, gender identity or expression, citizenship, marital status, domestic partnership or civil union status, familial status, military and veteran status, and other characteristics protected by applicable law.
Discover more information on jobs at StateStreet.com/careers
Read our CEO Statement
Job Application Disclosure:
It is unlawful in Massachusetts to require or administer a lie detector test as a condition of employment or continued employment. An employer who violates this law shall be subject to criminal penalties and civil liability.
How we rate this
AI Security Architecture- VP at State Street rates 66 out of 100 for how much of the daily work is AI. That makes it Works on AI (AI Level 3 of 4). The level is about AI in the job, not seniority.
Works on AI. The daily work is on AI products, without building the model.
- ●●●● Builds AI80 to 100
- ●●●○ Works on AI60 to 79
- ●●○○ Uses AI40 to 59
- ●○○○ Little AI0 to 39
Levels come from how often the tools, models and workflows of the role are named in the posting itself. Open the description and count.
Prepare for this job
A free preview built only from this posting: what it asks for, what you could be asked in an interview, and how to adjust your resume.
Skills and AI tools this role asks for
Questions you could be asked
- How would you design a retrieval step so the model answers from real data instead of guessing?
- Describe a typical day in a role like this one: which parts run through AI directly?
- If you removed AI from this role, what would be left, and how do you decide what still needs a human?
Adapt your resume
- List these exact terms on your resume: RAG. An applicant tracking system matches the wording, not the idea.
- Attach one line of real, concrete experience to at least one of them — a tool named with nothing behind it rarely survives a human read.
- Show where AI is part of your daily process, not a one-off project — this role expects it to be a running habit.
Want an expert to read your CV for this job?
Free. Send your CV and the role you want next. We reply by email within 2 to 4 business days.
Get a free CV reviewGet new AI jobs (Works on AI ●●●○ or higher) by email
One email a week with the new AI jobs (Works on AI ●●●○ or higher), each rated for how much AI is in the work. No recruiter spam, unsubscribe in one click.
Free. One email a week. Unsubscribe in one click.
Similar roles
Security roles that work on AI, at other companies.
What kind of AI work fits you?
Answer 12 practical questions in about three minutes. Get a simple profile, the work it points to, and live roles to explore next.
Find my next step