Cyber Defense Center Manager- MD
State Street seeks a Managing Director to lead our Cyber Defense Center (CDC) in Quincy, Massachusetts. This role is on-site, Monday through Friday.
About the role
The successful candidate will manage State Street’s North American Cyber Defense Center Team, including Timezone Managers, Lead Security Analysts, and Early Career Security Analysts. This role is part of the Global Cyber Defense Center team, providing 24/7/365 cyber incident response services across State Street. The CDC partners with multiple teams in the Cyber Fusion Center, such as Advanced Threat, Cyber Threat Intelligence, and Red/Purple teams, to evolve response capabilities and protect State Street, its customers, and partners from sophisticated threat actors.
Responsibilities
- Lead the cyber incident response process to ensure timely triage, analysis, containment, eradication, and return to service for high-severity or long-running incidents.
- Author and review incident status updates and closure reports for leadership.
- Produce postmortem reports to identify lessons learned and recommendations.
- Continuously prepare for incidents by updating and maintaining incident response plans, playbooks, and procedures.
- Manage and participate in cyber-related exercises such as tabletop drills and cyber ranges.
- Measure the effectiveness and performance of the incident response process through KRI and KPI metrics.
- Train and mentor SOC personnel.
- Create an environment that drives knowledge sharing across the Fusion Center and lead the growth of the Cyber Fusion Center in Quincy.
- Help develop the Fusion Center mindset and follow-the-sun model.
Requirements
- Experience managing a team of SOC analysts.
- Experience leading a team of analysts investigating and managing major/complex cyber incidents end-to-end.
- Experience writing detailed cybersecurity reports, including lessons learned.
- Strong communication skills, including experience communicating to an executive audience.
- Knowledge of adversarial tactics, techniques, procedures (TTPs), and industry-standard frameworks (NIST, MITRE ATT&CK).
- Strong working knowledge of security technologies, including SIEM, EDR/EPP, AV, ID/PS, HIPS, Web Proxy/Content filtering, AD, PKI, and DNS.
Qualifications
- Bachelor’s or Master’s in Cyber Security, Information Technology, or Computer Science. In lieu of education, relevant industry experience will be considered.
- CISSP, CEH, OSCP, OSCE, GCIH, or applicable certification in the security field.
- 5+ years in a cybersecurity management role.
- Financial Services experience is a plus.
Pay
Salary range: $175,000 – $287,500 annual. The range applies to the primary location specified; if the candidate works outside this location, the applicable range may differ.
Benefits
- Retirement savings plan (401K) with company match.
- Insurance coverage, including basic life, medical, dental, vision, long-term disability, and other optional coverages.
- Paid-time off, including vacation, sick leave, short-term disability, and family care responsibilities.
- Access to the Employee Assistance Program.
- Incentive compensation, including eligibility for annual performance-based awards (excluding certain sales roles).
- Eligibility for certain tax-advantaged savings plans.