Overview
In this role you will act as a senior cyber advisor across business, technology, risk, and Global Cybersecurity to raise cyber resilience and drive practical improvements. You combine offensive security insight with risk-based thinking to translate complex issues into actionable decisions for senior stakeholders. You will shape regional and global cyber requirements and provide implementation guidance in a fast-evolving threat landscape. This is a high-impact, cross-functional leadership opportunity within State Street’s Global Cybersecurity program.
Pay / Benefits
- inclusive development opportunities
- flexible work-life support
- paid volunteer days
- vibrant employee networks
Responsibilities
- Provide senior cyber advisory and constructive challenge to business, technology, and cyber teams on cyber security matters
- Review complex cyber issues and support solution design, including offensive security findings, vulnerability management, incident lessons learned, and architecture reviews
- Translate security insights into practical risk-based remediation plans that reduce risk exposure
- Lead or contribute to regulatory alignment activities including impact assessments, evidence reviews, supervisory responses, readiness reviews, and remediation tracking
- Drive change by identifying recurring control weaknesses and improving cyber governance, metrics, and accountability
- Prepare briefings, risk narratives, and executive updates for senior stakeholders and governance forums
- Act as regional orchestrator for cross-functional cyber activities to ensure ownership, prioritisation, and measurable outcomes
- Support client, business, and external engagements by presenting the bank’s cyber posture and improvement activity clearly
Key requirements
- Typically 10-15 years of experience in cyber security, technology risk, security architecture, offensive security, cyber consulting, operational resilience, or related financial services roles
- Strong technical credibility across offensive security, risk, and security solution architecture
- Ability to review complex technology/control issues and translate risk into actionable decisions for senior stakeholders
- Knowledge of frameworks and regulatory expectations relevant to banking and supervisory inquiries
- Excellent written and verbal communication skills for concise business-relevant risk explanations
- Experience in influencing and leading change across cross-functional teams
- Ability to convert regulatory expectations and audit findings into pragmatic implementation plans
- Hybrid, London-based role with willingness to travel as needed
- Influencing and change leadership
- Clear, concise communication with senior stakeholders
- Ownership mindset and sound judgement
- Offensive security awareness, attack paths, red/purple team findings
- Security solution architecture across cloud, IAM, network, application security, endpoint, data protection, and resilience controls
- Vulnerability management, incident learning, and architecture reviews
…
