State Street Corporation

Advanced Defensive -Applications Security Engineer

State Street Corporation$120K — $202K *
Information Technology
5 - 7 years of experience
Job Overview by Ladders

Qualifications

  • Minimum 5 years experience in full-stack application development
  • Experience designing and deploying critical systems like payment systems
  • Experience embedding technical security policies in applications
  • Experience in automated testing for system functionality and security
  • Strong advising skills for development teams and executives

Responsibilities

  • Interpret architecture diagrams to enhance system security
  • Develop cybersecurity designs for applications and systems
  • Assess impacts of system vulnerabilities or compromises
  • Implement application cybersecurity policies using automation
  • Create system testing and validation procedures

Benefits

  • 401K retirement savings plan with company match
  • Comprehensive insurance coverage including medical, dental, and vision
  • Paid-time off for vacation, sick leave, and family care
  • Access to Employee Assistance Program
  • Eligibility for performance-based awards and incentive compensation
Full Job Description
Who we are looking for

The Advanced Defensive - Application Security Engineers is a member of a small team tasked with securing the firm's most critical network environments and applications.

The Advance Defensive - Application Security Engineer is responsible for secure design, development, and testing of systems and the evaluation of system security throughout the system's development life cycle. You must be ready to work collaboratively across the team, learning new skills and forging new procedures, relationships, and methods. Remote work options will be considered for highly skilled candidates.

What you will be responsible for
  • Interpret architecture diagrams and controls to enhance the security of new and existing systems.
  • Develop application and system cybersecurity designs to meet specific operational needs and environmental factors (e.g., access controls, automated applications, networked operations, high integrity and availability requirements, multilevel security/processing of multiple classification levels, and processing Sensitive Compartmented Information).
  • Determine the impacts if vulnerabilities or exploited or a system is compromised.
  • Determine the application teams' lifecycle support requirements.
  • Implement application cybersecurity policies using policy as code, automation, and documented and verified manual procedures.
  • Implement automated measures to determine the effectiveness of system cybersecurity measures.
  • Develop cybersecurity risk profiles for systems.
  • Work with developers to create system prototypes using UAT and prototype models.
  • Determine if hardware, operating systems, and software adequately addresses a system's cybersecurity requirements.
  • Design and ensure implementation of system backup and failover capabilities.
  • Create system testing and validation procedures and documentation.
  • Develop system security design documents.
  • Develop system recovery and continuity plans.
  • Test recovery and continuity plans.


What we value

The following knowledge and experiences will help you succeed in this role:
  • Minimum of 5 years of experience in full-stack application development across the entire application life cycle.
  • Experience designing and deploying payment systems, classified systems, or other critical environments.
  • Experience in embedding technical security policies, principles, and standards within applications and network segments.
  • Experience developing automated testing to ensure systems are functioning properly or are secure.
  • Experience advising development teams on various issues.
  • Experience presenting to and advising executives.
  • Knowledge of secure software development, deployment, and maintenance.
  • Knowledge of agentic AI systems, and their use in system and application development.
  • Knowledge of computer network protocols.
  • Knowledge of system design tools and techniques.
  • Knowledge of server administration and principles and practices.
  • Knowledge of database systems.
  • Knowledge of Identity Access Management principles including application and API authentication, OAuth2.0, and JWT tokens.
  • Knowledge of encryption algorithms (e.g., RC4, AES, PQC)
  • Knowledge of key management.
  • Knowledge of secure system architecture principles and designs.
  • Knowledge of secure software engineering principles and practices.
  • Knowledge of enterprise information technology (IT) architecture principles, practices and reference models.
  • Knowledge of systems engineering processes, principles and practices.
  • Knowledge of cyber security threat actors TTPs, tradecraft, and noteworthy attacks.
  • Knowledge of cybersecurity principles and practices, including defense in depth.
  • Awareness of compliance, including aligning detection strategy with global financial regulations, ISO 27001, EU GDPR, PCI-DSS, EU DORA, SOX, NIST CSF, US OCC Part 30 Safety and Soundness Standards, and financial compliance frameworks.
  • Knowledge of application and network segment security reviews and threat modeling, including code reviews and dynamic testing.
  • Knowledge of managing and performing application security vulnerability management.
  • Knowledge of implementing security controls into cloud environments.
  • Knowledge of human error probabilities (HEPs) and performance shaping factors.

Education & Preferred qualifications
  • Bachelor's degree in computer science, information security, engineering, data science, mathematics, or another relevant field.
  • Possess a Postgraduate degree in computer science, information security, engineering, data science, mathematics, or another relevant field.
  • Experience working with information security teams such as fusion centers, security operations centers, vulnerability assessment, vulnerability threat management, security incident management, cyber "hunt," and big data analysis.
  • Experience working with law enforcement agencies and external audit organizations for investigations, audits, and similar activities.
  • Self-starter, self-motivated, and able to work independently with little oversight while managing a large, globally distributed team.
  • Highly polished presentation skills, with the ability to simply and convincingly present technical issues to non-technical audiences.
  • Able to develop and operate within a set financial budget.

Desired Outcomes

Implement architecture and controls into new and existing systems to reduce vulnerabilities and prevent effective attacks against the system.

Salary Range:
$120,000 - $202,500 Annual

The range quoted above applies to the role in the primary location specified. If the candidate would ultimately work outside of the primary location above, the applicable range could differ.

Employees are eligible to participate in State Street's comprehensive benefits program, which includes: our retirement savings plan (401K) with company match; insurance coverage including basic life, medical, dental, vision, long-term disability, and other optional additional coverages; paid-time off including vacation, sick leave, short term disability, and family care responsibilities; access to our Employee Assistance Program; incentive compensation including eligibility for annual performance-based awards (excluding certain sales roles subject to sales incentive plans); and, eligibility for certain tax advantaged savings plans.

For a full overview, visit https://hrportal.ehr.com/statestreet/Home.

About State Street Corporation

State Street Corporation Careers

Join the dynamic team at State Street Corporation, a leading financial services provider known for its commitment to innovation, leadership, and professional growth. As a global powerhouse in investment management and servicing, we offer unparalleled job opportunities that propel your career to new heights.

Work You’ll Do

At State Street Corporation, you’ll be part of a culture that values diversity, leadership, and continuous professional development. Engage in work that transforms the financial landscape and helps our clients achieve their investment goals. Our team at State Street is at the forefront of combining industry expertise with cutting-edge technology to deliver exceptional service and results.

Explore Our Job Opportunities

Whether you’re looking for an entry-level position or a senior role, State Street Corporation offers a range of career paths in areas such as asset management, data analytics, finance, and technology. Our hiring process is designed to identify and nurture talent, focusing on your skills and potential. Prepare your resume, ace the interview, and join a team that’s committed to your career growth.

Internship Programs

Kickstart your career with a State Street internship. Our programs provide hands-on experience, networking opportunities, and professional mentoring in a real-world setting. Interns at State Street gain valuable insights and skills that make them competitive candidates for full-time positions within our company.

Benefits and Growth

State Street Corporation is dedicated to the growth and well-being of our employees. We offer a comprehensive benefits package that supports both your professional and personal life. From advanced career training and leadership development programs to health and wellness benefits, we ensure that our team members have the resources they need to succeed.

Inclusive Culture and Diversity

We pride ourselves on fostering an inclusive environment where every employee can thrive. Diversity is not just embraced; it’s celebrated. At State Street, you’ll work alongside a diverse group of professionals who bring a wide range of perspectives and ideas to the table. Our diversity training programs are designed to enhance collaboration and innovation across our global team.

Stay Connected

Join Our Team Discover the career you’ve always wanted by exploring the job opportunities at State Street Corporation. We look for driven, curious, and innovative team players who are ready to make an impact. Search State Street jobs now and find the position that best matches your skills and interests. Keep Up to Date Stay informed with career tips, insider perspectives, and industry-leading insights you can use today—all from the people who work here. Our careers blog provides you with the latest trends, tools, and advice to keep you ahead in your professional journey.

Job Alert Emails

Personalize your subscription to receive job alerts, latest news, and insider tips tailored to your preferences. Discover the exciting and rewarding opportunities that await at State Street Corporation, where your career development is our priority. Join State Street Corporation and be part of a team that values innovation, leadership, and a commitment to excellence. Your future in the financial services industry starts here.
Learn more about State Street Corporation
Size
39,335 employees
Market Cap
$28.4 billion
Industry
Net Income
$2.4 billion
Founded
1792
5 Year Trend
-4.9%
NASDAQ

Similar Jobs

More Jobs at State Street Corporation

More Information Technology Jobs

Find similar Advanced Defensive -Applications Security Engineer jobs: