Cybersecurity Architect Standards & Process Development
- Todd & Weld, LLP
- Quincy, Massachusetts
- Full Time
Who we are looking for:
The State Street Global Cybersecurity team is looking for a Staff Cybersecurity Architect Standards & Process Development . The Cybersecurity team delivers platforms, architecture, and tooling to help Cybersecurity teams make faster, more informed decisions as we work to secure State Streets digital footprint. As a Staff Cyber Architect, you will help to spearhead the effort to work with multiple stakeholders to ensure State Streets cybersecurity policies remain aligned with industry best practices and compliant with the evolving cybersecurity regulatory landscape.
You will also work closely with various teams, including development teams, to mature the implementation process of new cybersecurity initiatives and help identify efficiencies throughout the development lifecycle.
What you will be responsible for:
- Develop and drive the execution of cybersecurity compliance to architecture by applying frameworks, regulations, and standards to architecture and standards documentation to continuously enhance our security posture.
- Support the creation of and adherence to information security reference architectures by developing reusable patterns for security and mapping standards to policy, and compliance.
- Provide expert guidance to cross-functional teams , including architecture, engineering, operations, and compliance, to ensure security considerations are embedded in all stages of project life cycles.
- Develop and manage security architecture steering committees, working groups, and other governance bodies in partnership with cybersecurity leadership and LoDs to ensure robust management of security practices across the enterprise.
- Conduct comprehensive risk assessments, threat modeling, and vulnerability analysis to identify potential security gaps and develop mitigation strategies
- Develop, document, and maintain security architecture blueprints, technical standards, guidelines, and related compliance mapping for consistent implementation across projects
- Work directly with security, legal, compliance, and LoD teams to help drive integration of security and compliance standards and practices across current and future lines of business, evaluate the regulatory environment, and implement changes to architectural standards and processes.
- Develop and maintain partnerships with key business and technology leaders across State Street to persuade, inform & influence on security architecture direction across the enterprise.
- Analysis and security architecture for sub and affiliate integration and security architecture governance.
- Mapping Technical standards development and alignment across the organization, to include our subs & affiliates.
- Prepare functional and specific support plans and prepare and manage correspondence.
- Establish and maintain communication channels with stakeholders.
- Assess policy needs and collaborate with stakeholders to aid in the development of policies to govern cyber activities.
- Analyze organizational cyber policy.
- Assist in the development of policy, programs, and guidelines for implementation.
What we value:
- Demonstrated competency in strategic thinking and leadership ;
- Demonstrated ability in influencing technical teams;
- Proven project management and organizational skills, specifically managing multiple, concurrent projects;
- Demonstrated knowledge of Governance, Risk, and Compliance (GRC) strategies including NIST, ISO, and CCM;
- Proven experience in security architecture for both applications and infrastructure.
- Experience in security architecture, with a focus on hybrid and multi cloud solutions.
- Strong technical governance experience developing standards, policies, controls in large, regulated organizations.
Education & Preferred Qualifications
- You have more than five (5) years of experience in the field of cybersecurity in general, and at least two (2) years as a manager of technical teams.
- You are a strong communication skills and the ability to interact professionally with senior leaders within the organization.
- Must be forward thinking and a self-starter.
- You have demonstrated skill in administrative planning activities, to include preparation of functional and specific