MD-Level BISO: Senior Cyber Risk Leader

State Street

Quincy (MA)

On-site

USD 170,000 - 283,000

Full time

5 hours ago
Be an early applicant
Application generator

Turn this role into an interview — a resume and cover letter built around what this employer wants.

Get past ATS filters

Benefits offered by this job

401K with company match
Comprehensive benefits package
Paid time off

Job summary

State Street is seeking a Managing Director of Information Security to lead enterprise cyber risk leadership across business units in Massachusetts. The role reports to Global Cybersecurity and partners with executives to translate cyber risk into business terms while guiding governance, strategy, and transformation programs.

The ideal candidate brings 15+ years in cybersecurity and 8+ years in leadership roles, with strong communication and stakeholder management.

Qualifications

  • 15+ years of progressive cybersecurity, technology risk, or information security experience.
  • 8+ years leading cyber risk, cyber advisory, security architecture, or information security functions.
  • Demonstrated experience engaging with executive management, boards, regulators, and external stakeholders.
  • Proven record leading large-scale cybersecurity transformation or risk reduction initiatives.
  • Strong understanding of financial services, regulatory environments, and cybersecurity frameworks.
  • Exceptional communication, executive presentation, and stakeholder management skills.

Responsibilities

  • Serve as the senior cybersecurity advisor to business executives, legal entity leadership, and global technology services.
  • Provide strategic guidance regarding cyber threats, vulnerabilities, resiliency risks, and cyber control deficiencies.
  • Influence enterprise-wide cyber risk reduction initiatives and investment decisions at the business unit level aligning cyber policy and technical standards.
  • Drive the integration of cybersecurity considerations into business strategy, transformation programs, and critical business services.
  • Lead executive discussions regarding cyber risk posture, emerging risks, and risk mitigation priorities.
  • Establish and oversee cyber risk governance frameworks across the assigned business portfolios within the assigned business unit.
  • Ensure cyber risks are actively managed within approved risk appetite thresholds.
  • Review and challenge risk acceptance decisions involving material cyber exposures.
  • Provide oversight of cyber control effectiveness, remediation activities, and residual risk management.
  • Lead escalation of significant cyber risks to execute risk committees and senior governance forums.
  • Build strong partnerships with Business Executives, Technology Leaders, and control function partners.
  • Translate complex technical risks into clear business impacts and actionable recommendations.
  • Enable informed decision-making through transparent risk reporting and executive-level communication.
  • Provide consultative leadership on major technology initiatives, cloud adoption, AI programs, digital transformation, acquisitions, and strategic business initiatives.
  • Serve as a strategic change agent driving enterprise adoption of cybersecurity controls and risk management practices.
  • Partner with vulnerability management teams to prioritize remediation activities based on risk.
  • Analyze vulnerability trends, systemic control weaknesses, and emerging threat exposures.
  • Provide advisory support on patch management, configuration management, and security hardening efforts.
  • Assist business and technology teams in developing sustainable remediation strategies.
  • Drive enterprise efforts to improve cyber resilience, operational resilience, and recovery preparedness.
  • Oversee execution of strategic cyber remediation programs.
  • Ensure alignment of cyber investments toward the highest-risk business services and assets.
  • Guide business and technology leaders through major cyber incidents, crisis management activities, and lessons-learned programs.
  • Champion threat-informed defense strategies to reduce business unit cyber exposure.
  • Represent cybersecurity during regulatory examinations, client reviews, and external assessments.
  • Engage with regulators, auditors, and industry groups regarding cybersecurity risk management practices.
  • Ensure alignment with applicable regulatory requirements and industry best practices.
  • Partner with compliance, legal, and enterprise risk management functions to address emerging regulatory expectations.
  • Lead and develop a team of Cyber Security Advisors
  • Establish workforce strategies that strengthen cybersecurity capabilities and succession planning.
  • Foster a culture of accountability, collaboration, innovation, and continuous improvement.
  • Mentor future cybersecurity leaders and strengthen cyber risk management capabilities across the organization.
  • Drive consistent execution of cybersecurity objectives, metrics, and performance outcomes.
  • Strong and proven background in cybersecurity leadership
  • Cyber Engineering and Advisory, Cyber Strategy, Risk Management, and Executive Reporting
  • Technical and Security Domains
  • Secure Cloud, Data Protection, Frontier Model Security, Secure Architecture, and VM
  • Leadership Qualities
  • Organizational Influence, Cross Functional Collaboration, Strategic Thinking, and Engagement

Skills

Executive communication
Stakeholder management
Strategic thinking

Education

Bachelor’s degree in computer science, Cybersecurity, Information Systems, Risk Management, or related field.

Job description

State Street is seeking a Managing Director of Information Security to lead enterprise cyber risk leadership across business units in Massachusetts. The role reports to Global Cybersecurity and partners with executives to translate cyber risk into business terms while guiding governance, strategy, and transformation programs.

The ideal candidate brings 15+ years in cybersecurity and 8+ years in leadership roles, with strong communication and stakeholder management.

Get your free, confidential resume review.
or drag and drop your file here.
Similar jobs

Similar jobs worth comparing

Executive Cyber Risk Leader (MD, BISO)
Executive Cyber Risk Leader (MD, BISO)

STATE STREET CORPORATION • Quincy (MA)

On-site
USD 170,000 - 283,000
401K with company match
Comprehensive benefits
Senior Cyber Risk Executive — BISO Leader
Senior Cyber Risk Executive — BISO Leader

State Street • Boston (MA)

On-site
USD 170,000 - 283,000
401K match
Health insurance
Paid time off
+2
Executive Cyber Risk Leader — Senior BISO (MD)
Executive Cyber Risk Leader — Senior BISO (MD)

State Street • Quincy (CA)

On-site
USD 170,000 - 283,000
Executive BISO & Cyber Risk Strategy Leader
Executive BISO & Cyber Risk Strategy Leader

State Street • Clifton (NJ)

On-site
USD 170,000 - 283,000
401(k) with company match
Comprehensive health benefits
Paid time off and employee programs
VP of Cyber Risk Strategy & Business Security
VP of Cyber Risk Strategy & Business Security

govconcareershub.com • Quincy (MA)

On-site
USD 120,000 - 203,000
401K match
Comprehensive benefits
Paid time off
Chief Cyber Risk & Governance Executive
Chief Cyber Risk & Governance Executive

State Street • Quincy (MA)

On-site
USD 170,000 - 283,000
401K with company match
Medical, dental, vision insurance
Paid time off
+2
VP, Cyber Risk & Digital Asset Security Leader
VP, Cyber Risk & Digital Asset Security Leader

State Street • Austin (TX)

On-site
USD 120,000 - 203,000
VP, Cyber Risk & Digital Asset Security
VP, Cyber Risk & Digital Asset Security

State Street • Clifton (NJ)

On-site
USD 120,000 - 203,000
401K with company match
Paid time off
MD Senior BISO
MD Senior BISO

State Street • Quincy (MA)

On-site
USD 170,000 - 283,000
401K with company match
Comprehensive benefits package
Paid time off
MD Senior BISO
MD Senior BISO

State Street • Clifton (NJ)

On-site
USD 170,000 - 283,000
401(k) with company match
Comprehensive health benefits
Paid time off and employee programs