Get more replies from employers
Send a job-specific resume in minutes.
STATE STREET BANK AND TRUST COMPANY is seeking a Platform Operations Engineer to bolster cybersecurity data platforms and AI-driven analytics. The role focuses on enterprise SIEM tooling, telemetry routing, and Security Lakehouse platforms, with on-call coverage and cross-team collaboration.
You will work with Splunk, Enterprise Security, Cribl, and Databricks, ensuring reliability and continuous improvement while supporting Detection Engineering, Threat Intelligence, and SOC teams.
Job Description
State Street's Cyber Data & Analytics (CyberDNA) team is seekinga PlatformOperations Engineer to help shape the next generation of cybersecurity data, analytics, and AI-powered platforms. Partnering closely with Global Cyber Security, Infrastructure Teams, and Enterprise Continuity Services, this team develops advanced data platforms, intelligent automation solutions, and engineering capabilities that enable cybersecurity teams to make faster, data-driven decisions and strengthen the firm's ability to detect, prevent, and respond to evolving cyber threats. Through innovation in AI, analytics, and automation,CyberDNAplays a critical role in protecting State Street, its clients, and its partners from increasingly sophisticated global threat actors.
The successful candidate will bring a strong interest in platform operations, hands‑on technical support, and a willingness to learn enterprise cybersecurity technologies, including SIEM, AI‑SOC, data routing, and Security Lakehouse platforms. This role will supportthe day-to‑day monitoring, troubleshooting, incident response, change activities, and platform administration needed tomaintainservice stability, availability, and reliability. Successrequiresa foundational understanding of production support, IT service management, operational procedures, documentation, and continuous improvement in a regulated enterprise environment.
Support the administration, reliability, and day-to-day operations of enterpriseplatform administration for enterprise cybersecurity technologies, including SIEM, AI‑SOC, telemetry routing, and Security Lakehouse platforms.
Supportplatform reliability, availability, performance, and operational readiness through proactive monitoring, incident management, and continuous improvement.
Support cybersecurity teams including Detection Engineering, Threat Intelligence, Threat Hunting, Forensics, and SOC/Cyber Defense operations.
Support platforms such as Splunk, Enterprise Security, Cribl, Databricks, Elastic, and other cybersecurity analytics technologies.
Support platform upgrades, migrations, modernization initiatives, and operational transformation programs.
Monitor and supportmajor incident response, root cause analysis, problem management, and change execution activities.
Monitorand supportplatform health, telemetry ingestion, data quality, storageutilization, and service performance across cybersecurity data platforms.
Supportandmaintainoperational standards, governance, SOPs,monitoringprocedures, and ITIL-aligned support processes.
Supportcompliance with cybersecurity, audit, regulatory, and operational control requirements.
Support continuously improves operational standards, governance, documentation,monitoringprocedures, SOPs, and support models aligned to ITIL, change management, and Log Telemetry Monitoring control requirements, while measuring success through operational metrics and service performance indicators.
Provide 24x7x365 operational support through an on-call rotation, collaborating with globally distributed engineering and operations teams tomaintainplatform reliability and service continuity.
Strong experience administering and supporting enterprise-scale cyber security platforms including technologies such as Splunk,QRadar, Elastic, and similar security operations solutions.
Deep understanding of security monitoring, threat detection, incident response, correlation searches, notable event management, data models, and risk-based alerting methodologies.
Hands-onexpertisetosupporttelemetryand data pipeline solutions such as Cribl Stream, including data routing, transformation, filtering, enrichment, and optimization of machine data at scale.
Experience integrating security and operational telemetry into Databricks or similar datalakehouseplatforms to support advanced analytics, reporting, machine learning, and AI-driven use cases.
Strong knowledge of cloud-based infrastructure and platform operations, preferably on AWS &Azure ,combined with solid Linux/Unix administration, troubleshooting, and performance tuning skills.
Proficiencyin scripting, automation, and version control practices to improve operational efficiency, automate repetitive tasks, enhance monitoring capabilities, and increase platform reliability.
Working knowledge of ServiceNow, Jira, and Confluence, with experience supportingincident, problem, change, service request, Agile delivery, and technical documentation processes.
Solid understanding of ITIL principles, operational best practices, service management disciplines, governance frameworks, and compliance requirements in a large enterprise environment.
Exceptional communication and stakeholder management skills, with the ability to effectively communicate technical concepts and operational risks to both technical and non-technical audiences.
Strong organizational and collaboration skills, with the ability to coordinate across geographically distributed teams, manage competing priorities, and successfully drive operational outcomes.
Experience supportinghighly available, mission-critical platforms within complex enterprise environments,demonstratinga strong commitment to operational excellence, resiliency, and continuous improvement.
Ability to thrive in a fast-paced, global operations environment whilemaintaininga strong customer focus and driving high-quality service delivery.
Bachelor’s degree in Computer Science, Engineering, Information Systems, ora related field.
5+ years of platform engineering and platform/infrastructure operations experience.
3+ years of experience with public cloud (AWS, Azure, OCI) & DevOps and ability to manage cloud-native platforms
5+ years of experience in supporting SIEM platforms like Splunk, Datadog,Qradar, Elastic, Cribl, Databricks and AI‑SOC solutions
Relevant certifications preferred, such as AWS, Splunk, ITIL, CISSP, or related technology/security certifications.
Our technology function, Global Technology Services (GTS), is vital to State Street and is the key enabler for our business to deliver data and insights to our clients.We’redriving the company’s digital transformation and expanding business capabilities using industry best practices and advanced technologies such as cloud, artificialintelligenceand robotics process automation.
We offer a collaborative environment where technology skills and innovationare valuedin a global organization.We’relooking for top technical talent to join our team and deliver creative technology solutions that help us become an end-to-end, next-generation financial services company.
Join us if you want to grow your technical skills, solve realproblemsand make your mark on our industry.