Job Description
Company: State Street
Location: Devon, US
Overview
The Platform Security, Managing Director is a senior cybersecurity leader responsible for establishing and scaling a platform-aligned security model that embeds cyber accountability directly within technology product lines. This role will lead the transition from a centralized control provider model to a distributed, platform-accountable approach, ensuring that security controls are implemented, enforced, and operated at the point where risk is created—across cloud, SaaS, and emerging AI-driven environments. This role reports to the Deputy CISO, SVP.
Responsibilities
• Drive the vision, strategy, and mission accomplishment of the entire Platform Security organization.
• Partner with technology product owners to embed security ownership within platform teams, ensuring accountability for securing cloud, SaaS, and AI-enabled platforms in real time.
• Drive the design, deployment, and operationalization of security controls directly within platforms, enabling continuous enforcement rather than periodic review-based oversight.
• Lead security strategy for frontier technologies, including LLM-enabled SaaS, APIs, and autonomous agents, addressing dynamic risks associated with real-time data access, transformation, and third-party dependencies.
• Establish and scale a federated security model where cyber risk ownership shifts from centralized cyber teams to technology product lines, while ensuring alignment with enterprise security standards and regulatory requirements.
• Collaborate closely with Fusion & Security Operations, enterprise security architecture, and technology infrastructure teams to ensure cohesive, end-to-end protection across the ecosystem.
• Define clear accountability models, performance metrics, and governance structures that ensure platform teams effectively manage security risk and meet regulatory and policy obligations.
Critical Leadership Capabilities
• Platform-integrated security controls are consistently deployed and enforced across cloud, SaaS, and AI environments, reducing reliance on centralized oversight
• Improved visibility and management of dynamic, real-time risks associated with LLM-enabled technologies, APIs, and third-party integrations
• Accelerated deployment and adoption of secure “paved road” solutions aligned to enterprise architecture and regulatory requirements
• Demonstrable reduction in security gaps, control lag, and time-to-remediate vulnerabilities within critical platforms
• Strong alignment between security, technology, and business leaders, resulting in more resilient and scalable cyber defense outcomes
Value and Qualifications
• 15 years or more leading large-scale cybersecurity or platform engineering functions in complex, global environments with at least 5 years of cyber security related leadership experience preferred.
• Proven ability to successfully drive and develop teams that work remotely and across multiple geographic time zones.
• Deep expertise in cloud, SaaS, and modern application architectures, with strong understanding of embedded security controls
• Demonstrated leadership in driving operating model transformation and organizational change at the enterprise level
• Strong working knowledge of emerging AI/LLM technologies and associated cyber risk implications
• Strong knowledge of cyber security threat actors particularly their tactics, techniques, procedures, tradecraft, and noteworthy attacks.
• Exceptional communications skills (oral and written) with a history of successfully engaging with groups such as Boards of Directors, executive management teams, and senior business leaders both internally and externally.
• Understanding of technology systems such as networks, applications, servers, cloud, authentication, and emerging technologies.
• Experience working with information security teams such as fusion centers, security operations centers, vulnerability assessment, vulnerability threat management, security incident management, cyber “hunt,” and big data analysis.
• Managed or worked closely with public and private sector law enforcement agencies and external audit organizations with a strong understanding of their roles, responsibilities, and capabilities.
• Must be a self-starter, self-motivated, and able to work independently with little oversight while managing a large, globally distributed team.
• Able to develop and operate within a set financial budget.
Education & Preferred Qualifications
• Strong understanding of cloud-native, SaaS, API, and AI/LLM architectures, with the ability to translate complex risks into actionable platform controls
• Bachelors Degrees and/or Certifications in computer forensics, information security, and similar preferred.
• Ability to balance security, business ena
Source: BeBee