Jobs · Massachusetts

Staff Perimeter Defense Engineer

State Street · Boston, MA · Yesterday
$120k–$203k/yrFull-time

About the role

This role leads the strategy, architecture, and engineering of perimeter security capabilities, helping protect the organization from external threats targeting enterprise networks, internet-facing services, applications, and remote access environments. The team is part of Defensive Engineering within Global Cyber Security, a function critical to the company's cybersecurity strategy. As cyber threats continue to evolve, strong perimeter defenses remain essential to protecting the firm's critical systems, applications, and data. This role will drive the technologies, controls, and security capabilities needed to strengthen the organization's defensive posture and reduce risk.

What you will be responsible for

  • Define and drive the enterprise perimeter security strategy, architecture, and roadmap.
  • Lead the evaluation, implementation, and continuous improvement of perimeter security controls and technologies.
  • Partner with Network Engineering, Infrastructure, Cloud, and Application teams to design and deploy secure network and internet-facing architectures.
  • Collaborate with the Cyber Defense Center (CDC) to enhance detection, investigation, threat hunting, and response capabilities for network and perimeter-based attacks.
  • Lead security initiatives involving next-generation firewalls, web application firewalls (WAF), DDoS protection, secure web gateways, remote access security, API protection, and Zero Trust technologies.
  • Drive integration of perimeter security platforms with SIEM, SOAR, threat intelligence, and security analytics solutions.
  • Develop security standards, architecture patterns, and implementation guidance for perimeter security technologies.
  • Lead proof-of-concepts, product evaluations, and vendor assessments for network and perimeter security solutions.
  • Track and report key metrics related to threat prevention, attack surface reduction, control effectiveness, and risk reduction.
  • Serve as a subject matter expert for perimeter security and defensive engineering initiatives.

What we value

  • Experience with perimeter security technologies such as Zscaler, Palo Alto Networks, Cloudflare, F5, or similar platforms.
  • Strong understanding of network security, perimeter defense, segmentation, secure access, and Zero Trust architectures.
  • Experience securing internet-facing applications, APIs, and remote access services.
  • Familiarity with technologies such as WAF, DDoS protection, ZTNA, SSE, SASE, VPN, and network access controls.
  • Experience integrating security platforms with SIEM, SOAR, and threat intelligence solutions.
  • Strong analytical, troubleshooting, automation, and problem-solving skills.
  • Excellent communication and stakeholder management skills.

Qualifications

  • Bachelor's degree in Computer Science, Information Security, Engineering, or a related field, or equivalent practical experience.
  • 8+ years of experience in cybersecurity, network security, security engineering, or security architecture.
  • 5+ years of hands-on experience designing and implementing perimeter security technologies and controls.
  • Experience working in financial services or other regulated industries preferred.
  • Relevant certifications such as CISSP, CCSP, PCNSE, CCNP Security, or equivalent preferred.
  • Experience developing security strategies, roadmaps, and architecture standards.
  • Experience assessing emerging threats and translating risks into security controls and engineering priorities.
  • Familiarity with cloud and hybrid network security architectures.
  • Strong collaboration skills and ability to work across Cyber Security, Infrastructure, Cloud, and Engineering organizations.

Work requirements

  • Hybrid work model in accordance with company policy.
  • Ability to collaborate effectively with global teams across multiple time zones.
  • Standard business hours with flexibility to support critical security incidents and initiatives when required.

Pay

$120,000 - $202,500 Annual. The range quoted above applies to the role in the primary location specified. If the candidate would ultimately work outside of the primary location above, the applicable range could differ.

Benefits

Employees are eligible to participate in State Street's comprehensive benefits program, which includes: retirement savings plan (401K) with company match; insurance coverage including basic life, medical, dental, vision, long-term disability, and other optional additional coverages; paid-time off including vacation, sick leave, short term disability, and family care responsibilities; access to our Employee Assistance Program; incentive compensation including eligibility for annual performance-based awards (excluding certain sales roles subject to sales incentive plans); and eligibility for certain tax advantaged savings plans.

This response is AI-generated, for reference only.

Similar jobs

Staff Security Engineer

Interactive BrokersChicago, IL· 1 mo ago
Information Technologyapply on jobs.dayforcehcm.com

Staff Security Engineer

Steneral ConsultingSeattle, WA· 1 mo ago
Information Technologyapply on candidateportal.ceipal.com

Staff Security Engineer

Pivotal HealthLos Angeles, CA· 1 mo ago
Information Technology$200k–$275k/yrapply on jobs.ashbyhq.com