Security Architect- MD

State Street

Quincy (MA)

On-site

USD 175,000 - 288,000

Full time

6 days ago
Be an early applicant

Get more replies from employers

Send a job-specific resume in minutes.

Benefits offered by this job

401K with company match
Medical, dental, vision insurance
Paid time off

Job summary

State Street seeks a Managing Director, Security Architect to lead horizontal security architecture across AI, data protection, cryptography, and PQC, reporting to the SVP, Data & AI Security. This leader will define unified standards, drive multi-year roadmaps, and ensure secure-by-design patterns across engineering workflows.

The role requires 15+ years in security architecture, with deep crypto expertise and a track record of guiding large, regulated environments.

Qualifications

  • 15+ years of experience in security architecture, security engineering, or related disciplines.
  • Demonstrated leadership across multiple security domains — AI security, data protection, and cryptography.
  • Deep, hands-on expertise in cryptographic architecture and modernization, including PQC transition.
  • Proven experience designing and scaling secure cloud-native architectures in large, regulated environments.
  • Hands-on experience securing AI/ML and GenAI systems, including governance, data protection, and model risk.
  • Strong background in regulatory audits, control remediation, and executive-level risk communication.

Responsibilities

  • Define and steward a unified, enterprise-wide security architecture spanning AI Security, Data Protection, Cryptography, and PQC.
  • Establish shared architecture standards, guardrails, and reference designs across domains.
  • Ensure architectural decisions reinforce other disciplines (data protection, cryptography, AI).
  • Set multi-year architectural roadmap aligned with business priorities and regulatory expectations.
  • Lead enterprise cryptographic architecture, including encryption, key management, secrets, and machine identity.
  • Own PQC strategy and transition roadmap, driving cryptographic agility and inventory (CBOM).
  • Partner with Infrastructure and Platform teams to modernize cryptographic hygiene and reduce risk.
  • Set enterprise AI security architecture direction for secure-by-default patterns in AI platforms and GenAI tooling.
  • Ensure AI threat modeling and controls are integrated with data protection and cryptographic standards.
  • Guide AI Security Architecture to deliver coherent controls at scale.
  • Define architecture patterns for data discovery, classification, DLP, access governance, and automated protection.
  • Align data-centric controls with cryptographic and AI security standards across lifecycle.
  • Integrate security architecture into DevSecOps through policy-as-code and paved-road platforms.
  • Enable secure adoption of AI, data, and cryptographic capabilities with minimal friction.
  • Establish reusable, secure-by-default patterns for product teams.
  • Ensure architecture standards align with regulatory expectations (FFIEC, NIST, ISO, NYDFS, GDPR, SEC).
  • Serve as credible technical voice in regulatory, audit, and client engagements across four domains.
  • Drive data-driven architecture decisions using metrics on coverage and control effectiveness.
  • Provide executive briefings on cross-domain security posture and architectural tradeoffs.
  • Build and lead a high-performing team of domain architects across AI, Data, and Cryptography.
  • Act as a multiplier for security engineering and platform teams.

Skills

Security architecture
Leadership
Cryptography
AI security
Regulatory compliance
Executive communication

Education

Bachelor's degree in CS/Security
Advanced degree preferred
CISSP/CISM/CCSP certifications

Job description

Who we are looking for

The Managing Director, Security Architect is a senior leadership role responsible for defining and leading the firm's horizontal security architecture across AI Security, Data Protection, Cryptography, and Post-Quantum Cryptography (PQC). Reporting to the SVP, Data & AI Security, this leader ensures that architecture standards, controls, and secure-by-design patterns are coherent, consistent, and mutually reinforcing across all four disciplines.

Why this role is important to us

This role exists to connect and elevate what would otherwise be siloed domains. The Managing Director will set a unifying architectural vision, establish shared standards and reference designs, and drive the enterprise toward a defensible, forward-looking security posture that spans data, models, keys, and cryptographic systems. The leader balances long-range strategy — including the firm's PQC transition — with the practical delivery of controls embedded into engineering workflows.

The successful candidate is a recognized architecture leader with deep, credible expertise across multiple security domains, the executive presence to influence senior technology and business leaders, and a proven ability to translate complex technical risk into actionable decisions. They will lead a team of domain architects and act as a force multiplier across the broader security and engineering organization.

What you will be responsible for

Horizontal Security Architecture & Strategy

  • Define and steward a unified, enterprise-wide security architecture spanning AI Security, Data Protection, Cryptography, and PQC.

  • Establish shared architecture standards, guardrails, and reference designs that remain consistent across domains while addressing domain-specific risk.

  • Ensure architectural decisions in one discipline reinforce the others (e.g., data protection controls that account for cryptographic agility and AI data exposure).

  • Set the multi-year architectural roadmap and align it with business priorities, regulatory expectations, and the firm's technology transformation.

Cryptography & Post-Quantum Readiness

  • Lead the enterprise cryptographic architecture, including encryption, key management, secrets management, and machine identity.

  • Own the firm's Post-Quantum Cryptography (PQC) strategy and transition roadmap, driving cryptographic agility and inventory (CBOM) across the environment.

  • Establish standards for algorithm selection, key lifecycle, and crypto-agile design that support long-lived data protection.

  • Partner with Infrastructure and Platform teams to modernize cryptographic hygiene and reduce operational risk.

AI Security Architecture

  • Set enterprise AI security architecture direction, including secure-by-default patterns for AI platforms, GenAI tooling, and AI agents.

  • Ensure AI threat modeling and controls (prompt injection, model inversion, data poisoning, adversarial AI) are integrated with data protection and cryptographic standards.

  • Guide the AI Security Architecture and Engineering teams to deliver coherent, defensible AI controls at scale.

Data Protection Architecture

  • Define architecture patterns for data discovery, classification, DLP, access governance, and automated protection controls.

  • Ensure data protection controls operate consistently across on-premises, cloud, SaaS, and AI environments.

  • Align data-centric controls with cryptographic and AI security standards to protect sensitive data throughout its lifecycle.

Secure Delivery & Enablement

  • Integrate security architecture into DevSecOps pipelines through paved-road platforms, automation, and policy-as-code.

  • Enable secure adoption of AI, data, and cryptographic capabilities with minimal friction for engineering and business partners.

  • Establish reusable, secure-by-default patterns that scale across product teams.

Regulatory, Audit & Operational Excellence

  • Ensure architecture standards align with regulatory expectations (FFIEC, NIST, ISO, NYDFS, GDPR, SEC).

  • Serve as a credible technical voice in regulatory, audit, and client engagements across all four domains.

  • Drive data-driven architecture decisions using metrics on coverage, risk concentration, and control effectiveness.

Executive Engagement & Team Leadership

  • Serve as a trusted technical advisor to the SVP, Data & AI Security, and to CISO, CIO, and architecture leadership.

  • Deliver concise executive briefings on cross-domain security posture, emerging risks, and architectural tradeoffs.

  • Build and lead a high-performing team of domain architects across AI, Data, and Cryptography.

  • Act as a multiplier for security engineering and platform teams through coaching and architectural leadership.

What we value

These skills will help you succeed in this role

  • 15+ years of experience in security architecture, security engineering, or related disciplines.

  • Demonstrated leadership across multiple security domains — ideally spanning AI security, data protection, and cryptography.

  • Deep, hands-on expertise in cryptographic architecture and modernization, with direct experience in PQC transition and cryptographic agility (CBOM).

  • Proven experience designing and scaling secure cloud-native architectures in large, regulated environments.

  • Hands-on experience securing AI/ML and GenAI systems, including governance, data protection, and model risk.

  • Strong background in regulatory audits, control remediation, and executive-level risk communication.

  • Experience leading global, multidisciplinary architecture or engineering teams.

Education & Preferred Qualifications

  • Bachelor's degree in Computer Science, Information Security, Engineering, or a related field. Advanced degree preferred.

  • Relevant certifications (CISSP, CISM, CCSP, cloud security, or architecture certifications) strongly.

Skills & Characteristics

  • Rare breadth of technical credibility across AI, data, and cryptographic security domains.

  • Strong bias toward automation, scale, and measurable outcomes.

  • Ability to unify siloed disciplines into a coherent architectural vision.

  • Executive presence with the ability to translate complex, cross-domain risk into business-aligned decisions.

  • Change agent mindset with a track record of modernizing security functions.

  • Customer-first perspective focused on trust, resilience, and long-term value.

What We Offer

  • Opportunity to define and lead horizontal security architecture at a global systemically important financial institution.

  • High-impact leadership role spanning AI, data, cryptography, and post-quantum readiness.

  • Executive visibility and influence across Security, Technology, and Data organizations.

  • Competitive compensation and comprehensive benefits.

  • A collaborative culture focused on engineering excellence, innovation, and client trust.

Salary Range:

$175,000 - $287,500 Annual

The range quoted above applies to the role in the primary location specified. If the candidate would ultimately work outside of the primary location above, the applicable range could differ.

Employees are eligible to participate in State Street's comprehensive benefits program, which includes: our retirement savings plan (401K) with company match; insurance coverage including basic life, medical, dental, vision, long-term disability, and other optional additional coverages; paid-time off including vacation, sick leave, short term disability, and family care responsibilities; access to our Employee Assistance Program; incentive compensation including eligibility for annual performance-based awards (excluding certain sales roles subject to sales incentive plans); and, eligibility for certain tax advantaged savings plans.

For a full overview, visit https://hrportal.ehr.com/statestreet/Home.

About State Street

Across the globe, institutional investors rely on us to help them manage risk, respond to challenges, and drive performance and profitability. We keep our clients at the heart of everything we do, and smart, engaged employees are essential to our continued success.

We are committed to fostering an environment where every employee feels valued and empowered to reach their full potential. As an essential partner in our shared success, you'll benefit from inclusive development opportunities, flexible work-life support, paid volunteer days, and vibrant employee networks that keep you connected to what matters most. Join us in shaping the future.

As an Equal Opportunity Employer, we consider all qualified applicants for all positions without regard to race, creed, color, religion, national origin, ancestry, ethnicity, age, disability, genetic information, sex, sexual orientation, gender identity or expression, citizenship, marital status, domestic partnership or civil union status, familial status, military and veteran status, and other characteristics protected by applicable law.

Discover more information on jobs at StateStreet.com

Get your free, confidential resume review.
or drag and drop your file here.
Similar jobs

Similar jobs worth comparing

Security Architect- MD
Security Architect- MD

State Street • Chicago (IL)

On-site
USD 175,000 - 288,000
Competitive compensation
Executive visibility
Comprehensive benefits
+1
Senior Data Security Architect
Senior Data Security Architect

State Street • Quincy (MA)

Hybrid
USD 120,000 - 203,000
401K with company match
Health insurance
Paid time off
+1
Head of Cryptography, MD
Head of Cryptography, MD

State Street • Quincy (MA)

On-site
USD 175,000 - 288,000
Head of Cryptography, MD
Head of Cryptography, MD

State Street • Quincy (CA)

On-site
USD 175,000 - 288,000
Data Protection, Managing Director
Data Protection, Managing Director

State Street • Austin (TX)

On-site
USD 170,000 - 282,500
Competitive compensation
Comprehensive benefits
Executive visibility
Data Protection, Managing Director
Data Protection, Managing Director

State Street • Princeton (NJ)

Hybrid
USD 170,000 - 283,000
Data Protection, Managing Director
Data Protection, Managing Director

State Street • Boston (MA)

On-site
USD 170,000 - 283,000
401K with company match
Comprehensive insurance coverage (life
Paid time off
+3
Data Protection, Managing Director
Data Protection, Managing Director

State Street • Devon (PA)

On-site
USD 170,000 - 282,500
Competitive compensation
Executive-level visibility
Collaborative culture with focus on AI
Data Protection, Managing Director
Data Protection, Managing Director

State Street • Clifton (NJ)

On-site
USD 170,000 - 282,500
Senior Data Security Architect
Senior Data Security Architect

State Street • Austin (TX)

Hybrid
USD 120,000 - 203,000
401K with company match
Health insurance
Paid time off
+3