Level

State Street

Information Security Officer - AVP

AI in this role

Business Information Security Officer

Part of a team responsible for ensuring the security of the business and functional teams in line with company security policy and risk tolerances.  

Other key relationships:

  • Information Security Officers
  • Business and Functional Technical Leaders
  • Cyber Transformation Office
  • Collaboration with 3LOD – Compliance, Risk Management, Corporate Audit
  • Regional CISO

What you will be responsible for

  • Consistent and effective engagement with Information Technology and Business leadership to embed security into their strategic and tactical plans.  
  • Champion the Information Security mandates acting as a liaison between Global Cyber Security (GSC) and Business Units (BU).
  • Addressing cyber security and risk posture within the BUs.
  • Being a Trusted Security Adviser to the BU Leadership team.
  • Cross pollinating information risk management practices across to the BU as a standard practice.
  • Serve as an informed liaison between the Global Cyber Security org and BU.
  • Assist in the development and successful outcomes of Security KPIs that drive control effectiveness.
  • Directly support security assessments within the ISO's individual BU.
  • Participate in Information Security and 3rd Party Risk Management (TPRM) assessment for assigned BU.
  • Mentor and supervise junior staff.
  • Create ambassadorship programs down in the business to ensure security is a partnership.
  • Stay up to date on present and emerging security trends, technology, & threats. 

Key Responsibilities

  • Actively promote and deliver on the ISO program and its mission.
  • Collaborate with Global Cyber Security and business partner teams to ensure alignment addressing security policies in their products and services. 
  • Create visibility through effective metrics and reporting.
  • Participate actively in decision making with engagement management and seek to understand the broader impact of current decisions.
  • Create and deliver effective presentations as a means for communicating project and deliverable progress.
  • Build and nurture positive working relationships with clients with the intention to exceed client expectations.
  • Ability to give presentations at all levels and diverse audiences.
  • Work cross-functionally with team members to support and enhance collaborative environment.
  • Positioning security within the business with the ability to communicate in non-technical terminology.
  • Manage the trade-offs required to manage the different levels of risk tolerance and risk exposure across the organization and balance this with risk investments.
  • Partner with BU Leadership to identify, evaluate, and address cyber security risks.
  • Ensures and monitors security compliance with industry and government rules and regulations.
  • Coordinates with technology and business groups to assess, implement, and monitor IT-related security risks.
  • An ability to communicate complex and technical issues to diverse audiences, orally and in writing, in an easily-understood, authoritative, and actionable manner
  • Report security performance against established security metrics.
  • Promote information security awareness program to ensure staff members across the organization understand the trade-off between risk and return.
  • Understands “voice of the customer” and develops mechanisms to proactively sense adoption and usage patterns by end users so that policy can align with need.

Desired Outcomes

  • Operate as the primary intake point for BU and Global Cyber Security communication.
  • Delivery of effective security outcomes that drives improvements of security within the business.
  • S.M.A.R.T. goals that symbolize success of Security adoption within the BUs.
  • Development of Forum based security communication channels.
  • Reach target KPI success metric goals.
  • Operate at the CIO dotted line level.

Critical Leadership Capabilities

  • Driving results
  • Strategic Thinking
  • Collaborating & Influencing
  • Change Management
  • Senior Executive communication

Education & Preferred Qualifications

  • 5+ years of experience in information security, preferably in a cyber risk management capacity.
  • Project Management experience leading small and medium sized teams to successful completion.
  • Modern technical understanding and experience developing and implementing innovated techniques and solutions to delivering cost efficient security solutions.
  • Hands-on or working knowledge in multiple security domains: server hardening, firewall, network, VPN, encryption, code review, security framework & standards, various protocols (e.g., TCP/IP, UDP, MPLS, SSL/TLS, SSH, HTTPS, FTP, RDP, ICA, BGP, LDAP/AD, etc.)
  • Strong decision-making capabilities, with a proven ability to weigh the relative costs and benefits of potential actions and identify the most appropriate one
  • An ability to effectively influence others to modify their opinions, plans, or behaviors
  • Ability to react to high pressure dynamic changing environments
  • Preference not Mandatory : Certified Information Systems Security Professional (CISSP), Certified in Risk and Information Systems Control (CRISC), and/or Certified Information Security  Manager (CISM)
  • Highly regulated environment experience, preferably financial services.
  • Bachelors degree in a technical field

Salary Range:

$90,000 - $157,500 Annual

The range quoted above applies to the role in the primary location specified. If the candidate would ultimately work outside of the primary location above, the applicable range could differ.

Employees are eligible to participate in State Street’s comprehensive benefits program, which includes: our retirement savings plan (401K) with company match; insurance coverage including basic life, medical, dental, vision, long-term disability, and other optional additional coverages; paid-time off including vacation, sick leave, short term disability, and family care responsibilities; access to our Employee Assistance Program; incentive compensation including eligibility for annual performance-based awards (excluding certain sales roles subject to sales incentive plans); and, eligibility for certain tax advantaged savings plans.

For a full overview, visit https://hrportal.ehr.com/statestreet/Home.


About State Street

Across the globe, institutional investors rely on us to help them manage risk, respond to challenges, and drive performance and profitability. We keep our clients at the heart of everything we do, and smart, engaged employees are essential to our continued success.


We are committed to fostering an environment where every employee feels valued and empowered to reach their full potential. As an essential partner in our shared success, you’ll benefit from inclusive development opportunities, flexible work-life support, paid volunteer days, and vibrant employee networks that keep you connected to what matters most. Join us in shaping the future.


As an Equal Opportunity Employer, we consider all qualified applicants for all positions without regard to race, creed, color, religion, national origin, ancestry, ethnicity, age, disability, genetic information, sex, sexual orientation, gender identity or expression, citizenship, marital status, domestic partnership or civil union status, familial status, military and veteran status, and other characteristics protected by applicable law.


Discover more information on jobs at StateStreet.com/careers


Read our CEO Statement

Job Application Disclosure:

It is unlawful in Massachusetts to require or administer a lie detector test as a condition of employment or continued employment. An employer who violates this law shall be subject to criminal penalties and civil liability.

How we rate this

Information Security Officer - AVP at State Street rates 36 out of 100 for how much of the daily work is AI. That makes it Little AI (AI Level 1 of 4). The level is about AI in the job, not seniority.

Classification

Little AI. AI is not part of the work.

  1. ●●●● Builds AI80 to 100
  2. ●●●○ Works on AI60 to 79
  3. ●●○○ Uses AI40 to 59
  4. ●○○○ Little AI0 to 39

Levels come from how often the tools, models and workflows of the role are named in the posting itself. Open the description and count.

Get new cybersecurity jobs by email

One email a week with the new cybersecurity jobs, each rated for how much AI is in the work. No recruiter spam, unsubscribe in one click.

Free. One email a week. Unsubscribe in one click.

Similar roles

Security roles that involve little AI, at other companies.

What kind of AI work fits you?

Answer 12 practical questions in about three minutes. Get a simple profile, the work it points to, and live roles to explore next.

Find my next step

More jobs at State Street

More cybersecurity jobs

Related searches

Same AI level