Staff Perimeter Defense Engineer

State Street

Devon (PA)

Hybrid

USD 120,000 - 203,000

Full time

14 days+

Get more replies from employers

Send a job-specific resume in minutes.

Benefits offered by this job

401K match
Comprehensive benefits
Paid time off
Employee Assistance Program

Job summary

State Street seeks a Staff Perimeter Defense Engineer to lead the strategy, architecture, and engineering of enterprise perimeter security. You will partner with Network, Infrastructure, Cloud, and Application teams to deploy secure, internet-facing networks and defend against external threats.

You will drive security initiatives for next‑gen firewalls, WAF, DDoS protection, ZTNA, SSE, and VPN, while integrating with SIEM/SOAR and threat intel to continuously reduce risk.

Qualifications

  • Bachelor’s degree in Computer Science, Information Security, Engineering, or related field or equivalent practical experience.
  • 8+ years of experience in cybersecurity, network security, security engineering, or security architecture.
  • 5+ years designing and implementing perimeter security technologies and controls.

Responsibilities

  • Define and drive enterprise perimeter security strategy, architecture, and roadmap.
  • Lead evaluation, implementation, and continuous improvement of perimeter security controls and technologies.
  • Partner with Network Engineering, Infrastructure, Cloud, and Application teams to design secure networks and internet-facing architectures.
  • Collaborate with CDC to enhance detection, investigation, threat hunting, and response for network/perimeter attacks.
  • Lead security initiatives involving next‑generation firewalls, WAF, DDoS protection, secure web gateways, remote access security, API protection, and Zero Trust.
  • Drive integration of perimeter security platforms with SIEM, SOAR, threat intelligence, and security analytics solutions.
  • Develop security standards, architecture patterns, and implementation guidance for perimeter security technologies.
  • Lead PoCs, product evaluations, and vendor assessments for network and perimeter security solutions.
  • Track and report metrics related to threat prevention, attack surface reduction, control effectiveness, and risk reduction.
  • Serve as a subject matter expert for perimeter security and defensive engineering initiatives.

Skills

Perimeter security
Zscaler
Palo Alto Networks
Cloudflare
F5
Zero Trust
WAF
DDoS protection
SIEM/SOAR integration
Threat intelligence

Education

Bachelor's degree in Computer Science, Information Security, Engineering, or related field

Tools

WAF
DDoS protection
ZTNA
SSE
SASE
VPN
SIEM
SOAR

Job description

Who We Are Looking For

We are looking for a Staff Perimeter Defense Engineer reporting into the Defensive Engineering leadership team within Global Cyber Security (GCS). You will lead the strategy, architecture, and engineering of perimeter security capabilities, helping protect the organization from external threats targeting enterprise networks, internet-facing services, applications, and remote access environments.

Why this role is important to us

The team you will be joining is part of Defensive Engineering within Global Cyber Security, a function that is critical to the company's cybersecurity strategy. As cyber threats continue to evolve, strong perimeter defenses remain essential to protecting the firm's critical systems, applications, and data. This role will drive the technologies, controls, and security capabilities needed to strengthen the organization's defensive posture and reduce risk.

What you will be responsible for

As a Staff Perimeter Security Defense Engineer, You Will

  • Define and drive the enterprise perimeter security strategy, architecture, and roadmap.
  • Lead the evaluation, implementation, and continuous improvement of perimeter security controls and technologies.
  • Partner with Network Engineering, Infrastructure, Cloud, and Application teams to design and deploy secure network and internet-facing architectures.
  • Collaborate with the Cyber Defense Center (CDC) to enhance detection, investigation, threat hunting, and response capabilities for network and perimeter-based attacks.
  • Lead security initiatives involving next-generation firewalls, web application firewalls (WAF), DDoS protection, secure web gateways, remote access security, API protection, and Zero Trust technologies.
  • Drive integration of perimeter security platforms with SIEM, SOAR, threat intelligence, and security analytics solutions.
  • Develop security standards, architecture patterns, and implementation guidance for perimeter security technologies.
  • Lead proof-of-concepts, product evaluations, and vendor assessments for network and perimeter security solutions.
  • Track and report key metrics related to threat prevention, attack surface reduction, control effectiveness, and risk reduction.
  • Serve as a subject matter expert for perimeter security and defensive engineering initiatives.
What we value

These skills will help you succeed in this role

  • Experience with perimeter security technologies such as Zscaler, Palo Alto Networks, Cloudflare, F5, or similar platforms.
  • Strong understanding of network security, perimeter defense, segmentation, secure access, and Zero Trust architectures.
  • Experience securing internet-facing applications, APIs, and remote access services.
  • Familiarity with technologies such as WAF, DDoS protection, ZTNA, SSE, SASE, VPN, and network access controls.
  • Experience integrating security platforms with SIEM, SOAR, and threat intelligence solutions.
  • Strong analytical, troubleshooting, automation, and problem-solving skills.
  • Excellent communication and stakeholder management skills.
Education & Preferred Qualifications
  • Bachelor's degree in Computer Science, Information Security, Engineering, or a related field, or equivalent practical experience.
  • 8+ years of experience in cybersecurity, network security, security engineering, or security architecture.
  • 5+ years of hands-on experience designing and implementing perimeter security technologies and controls.
  • Experience working in financial services or other regulated industries preferred.
  • Relevant certifications such as CISSP, CCSP, PCNSE, CCNP Security, or equivalent preferred.
Additional Requirements
  • Experience developing security strategies, roadmaps, and architecture standards.
  • Experience assessing emerging threats and translating risks into security controls and engineering priorities.
  • Familiarity with cloud and hybrid network security architectures.
  • Strong collaboration skills and ability to work across Cyber Security, Infrastructure, Cloud, and Engineering organizations.
Work Requirement
  • Hybrid work model in accordance with company policy.
  • Ability to collaborate effectively with global teams across multiple time zones.
  • Standard business hours with flexibility to support critical security incidents and initiatives when required.
Salary Range

$120,000 - $202,500 Annual

The range quoted above applies to the role in the primary location specified. If the candidate would ultimately work outside of the primary location above, the applicable range could differ.

Employees are eligible to participate in State Street’s comprehensive benefits program, which includes: our retirement savings plan (401K) with company match; insurance coverage including basic life, medical, dental, vision, long-term disability, and other optional additional coverages; paid-time off including vacation, sick leave, short-term disability, and family care responsibilities; access to our Employee Assistance Program; incentive compensation including eligibility for annual performance-based awards (excluding certain sales roles subject to sales incentive plans); and, eligibility for certain tax-advantaged savings plans.

For a full overview, visit https://hrportal.ehr.com/statestreet/Home.

About State Street

Across the globe, institutional investors rely on us to help them manage risk, respond to challenges, and drive performance and profitability. We keep our clients at the heart of everything we do, and smart, engaged employees are essential to our continued success.

We are committed to fostering an environment where every employee feels valued and empowered to reach their full potential. As an essential partner in our shared success, you’ll benefit from inclusive development opportunities, flexible work-life support, paid volunteer days, and vibrant employee networks that keep you connected to what matters most. Join us in shaping the future.

As an Equal Opportunity Employer, we consider all qualified applicants for all positions without regard to race, creed, color, religion, national origin, ancestry, ethnicity, age, disability, genetic information, sex, sexual orientation, gender identity or expression, citizenship, marital status, domestic partnership or civil union status, familial status, military and veteran status, and other characteristics protected by applicable law.

Discover more information on jobs at StateStreet.com/careers

Read our CEO Statement

Job Application Disclosure

It is unlawful in Massachusetts to require or administer a lie detector test as a condition of employment or continued employment. An employer who violates this law shall be subject to criminal penalties and civil liability.

Job ID: R-794120

Get your free, confidential resume review.
or drag and drop your file here.
Similar jobs

Similar jobs worth comparing

Security Guardian -VP
Security Guardian -VP

State Street • Austin (TX)

On-site
USD 120,000 - 218,000
401K
Insurance
PTO
+3
Security Guardian -VP
Security Guardian -VP

State Street • Clifton (NJ)

On-site
USD 120,000 - 218,000
Security Guardian -VP
Security Guardian -VP

State Street • Quincy (MA)

On-site
USD 120,000 - 218,000
401K with company match
Insurance coverage
Paid time off
+3
Security Guardian -VP
Security Guardian -VP

State Street • Berwyn (PA)

On-site
USD 120,000 - 218,000
401K with company match
Life insurance
Medical, dental, vision
+3
Principal Product Manager – Defensive Engineering Programs & Controls
Principal Product Manager – Defensive Engineering Programs & Controls

State Street • Clifton (NJ)

Hybrid
USD 120,000 - 203,000
401K with company match
Comprehensive health coverage
Paid time off
+1
Principal Product Manager – Defensive Engineering Programs & Controls
Principal Product Manager – Defensive Engineering Programs & Controls

State Street • Boston (MA)

Hybrid
USD 120,000 - 203,000
Hybrid work model
Principal Product Manager – Defensive Engineering Programs & Controls
Principal Product Manager – Defensive Engineering Programs & Controls

State Street • Princeton (NJ)

Hybrid
USD 120,000 - 203,000
401K match
Comprehensive benefits
Principal Product Manager – Defensive Engineering Programs & Controls
Principal Product Manager – Defensive Engineering Programs & Controls

State Street • Austin (TX)

Hybrid
USD 120,000 - 203,000
401K with company match
Health insurance
Paid time off
+3
Principal Product Manager – Defensive Engineering Programs & Controls
Principal Product Manager – Defensive Engineering Programs & Controls

State Street • Boston (MA)

Hybrid
USD 120,000 - 203,000
Staff Perimeter Security Architect (Hybrid)
Staff Perimeter Security Architect (Hybrid)

State Street • Devon (PA)

Hybrid
USD 120,000 - 203,000
401K match
Comprehensive benefits
Paid time off
+1