Cryptographic Key Management Operations Engineer
Cryptographic Key Management Operations Engineer

Cryptographic Key Management Operations Engineer

London Full-Time 72000 - 112500 £ / year (est.) No home office possible
S

At a Glance

  • Tasks: Manage cryptographic keys securely across various environments and ensure compliance with regulations.
  • Company: State Street is a leading global custodian bank and asset manager, innovating in financial services.
  • Benefits: Enjoy flexible work options, competitive medical care, and comprehensive development programs.
  • Why this job: Join a collaborative team driving digital transformation and make a real impact in finance.
  • Qualifications: Bachelor's degree in relevant fields and 3+ years in key management or information security required.
  • Other info: Hybrid work model available; travel up to 10% may be needed.

The predicted salary is between 72000 - 112500 £ per year.

State Street is seeking a Cryptographic Key Management Operations Engineer to support the end-to-end lifecycle management of cryptographic keys across cloud, on-premises, infrastructure and IoT environments. This role ensures the secure generation, distribution, rotation, revocation, and retirement of encryption keys while maintaining compliance with regulatory and security policies. The Key Operations Engineer will drive operational excellence and automation to enhance key lifecycle processes. This role requires close collaboration with security, IT, cloud, infrastructure, and application teams to maintain the availability, reliability, and security of key management services, supporting business-critical operations and financial transactions. This role can be performed in a hybrid model, where you can balance work from home and office to match your needs and role requirements.

What you will be responsible for:

  • Support the daily operations and security of cryptographic key management, ensuring compliance with financial industry regulations e.g. (PCI DSS, GDPR, FIPS 140-2/3).
  • Drive the secure generation, storage, distribution, rotation, revocation, and retirement of encryption keys across cloud, on-premises, and IoT environments.
  • Monitor and respond to key management incidents, such as key compromise, expiration, or policy violations, ensuring timely remediation and risk mitigation.
  • Maintain the availability, integrity, and security of key management infrastructure, troubleshooting incidents and ensuring adherence to SLAs.
  • Collaborate with security, cloud, infrastructure, and DevSecOps teams to integrate cryptographic services into enterprise applications, infrastructure and IoT security frameworks.
  • Optimize and automate key management processes, leveraging APIs, key management platforms (KMS), security orchestration tools, and infrastructure-as-code (IaC) methodologies.
  • Ensure high availability and reliability of key management services to support secure transactions and data protection.
  • Develop and maintain detailed documentation of key management processes, procedures, and operational workflows.
  • Provide reporting and analysis on key usage, compliance, performance metrics, and risk exposure to senior leadership and auditors.
  • Stay up to date with emerging cryptographic technologies, security threats, and regulatory changes, ensuring that key management practices evolve accordingly.

Education & Preferred Qualifications:

  • Bachelor’s degree in Computer Science, Cybersecurity, Information Security, or related field or equivalent work experience.
  • 3+ years of experience in key management operations, cryptographic security, or information security within a financial institution or other regulated environment.
  • Strong expertise in cryptographic key lifecycle management, including symmetric and asymmetric encryption, PKI, and HSMs (Hardware Security Modules).
  • Experience with enterprise key management solutions (AWS KMS, Azure Key Vault, HashiCorp Vault, OCI KMS).
  • Familiarity with financial security regulations and standards, such as PCI DSS, FIPS 140-2/3, and NIST guidelines.
  • Experience with IoT device security and embedded encryption techniques.
  • Experience with SIEM tools for key access monitoring.
  • Security certifications such as CISM, CISSP, CCSP, and AWS Security Specialty.
  • Experience with post-quantum cryptography (PQC) readiness and emerging cryptographic frameworks.
  • Experience with JIRA and Confluence.

Additional requirements:

  • Travel up to 10% may be required.

Are you the right candidate?

Yes! We truly believe in the power that comes from the diverse backgrounds and experiences our employees bring with them. Although each vacancy details what we are looking for, we don’t necessarily need you to fulfil all of them when applying. If you like change and innovation, seek to see the bigger picture, make data driven decisions and are a good team player, you could be a great fit.

Why this role is important to us:

Our technology function, Global Technology Services (GTS), is vital to State Street and is the key enabler for our business to deliver data and insights to our clients. We’re driving the company’s digital transformation and expanding business capabilities using industry best practices and advanced technologies such as cloud, artificial intelligence and robotics process automation. We offer a collaborative environment where technology skills and innovation are valued in a global organization. We’re looking for top technical talent to join our team and deliver creative technology solutions that help us become an end-to-end, next-generation financial services company. Join us if you want to grow your technical skills, solve real problems and make your mark on our industry.

About State Street:

State Street is one of the largest custodian banks, asset managers and asset intelligence companies in the world. From technology to product innovation, we’re making our mark on the financial services industry. For more than two centuries, we’ve been helping our clients safeguard and steward the investments of millions of people. We provide investment servicing, data & analytics, investment research & trading and investment management to institutional clients.

Work, Live and Grow:

We make all efforts to create a great work environment. Our benefits packages are competitive and comprehensive. Details vary by location, but you may expect generous medical care, insurance and savings plans, among other perks. You’ll have access to flexible Work Programs to help you match your needs. And our wealth of development programs and educational support will help you reach your full potential.

Inclusion, Diversity and Social Responsibility:

We truly believe our employees’ diverse backgrounds, experiences and perspectives are a powerful contributor to creating an inclusive environment where everyone can thrive and reach their maximum potential while adding value to both our organization and our clients. We warmly welcome candidates of diverse origin, background, ability, age, sexual orientation, gender identity and personality. Another fundamental value at State Street is active engagement with our communities around the world, both as a partner and a leader. You will have tools to help balance your professional and personal life, paid volunteer days, matching gift programs and access to employee networks that help you stay connected to what matters to you. State Street is an equal opportunity and affirmative action employer.

Salary Range: $120,000 - $187,500 Annual

Cryptographic Key Management Operations Engineer employer: State Street

State Street is an exceptional employer, offering a dynamic work environment in London where innovation and collaboration thrive. With a strong commitment to employee development, competitive benefits, and a focus on diversity and inclusion, we empower our team members to grow their technical skills while contributing to meaningful projects in the financial services sector. Our hybrid work model allows for flexibility, ensuring that you can balance your professional and personal life effectively.
S

Contact Detail:

State Street Recruiting Team

StudySmarter Expert Advice 🤫

We think this is how you could land Cryptographic Key Management Operations Engineer

✨Tip Number 1

Familiarise yourself with the specific cryptographic technologies mentioned in the job description, such as AWS KMS and Azure Key Vault. Being able to discuss these tools confidently during your interview will demonstrate your expertise and readiness for the role.

✨Tip Number 2

Network with professionals in the cryptographic security field, especially those who work at State Street or similar companies. Engaging with them on platforms like LinkedIn can provide insights into the company culture and expectations, which can be invaluable during your application process.

✨Tip Number 3

Stay updated on the latest trends and regulations in cryptographic security, such as PCI DSS and GDPR. Being knowledgeable about current compliance standards will not only help you in interviews but also show your commitment to the field.

✨Tip Number 4

Prepare to discuss your experience with incident response and risk mitigation related to key management. Highlighting specific examples of how you've handled key compromises or policy violations can set you apart from other candidates.

We think you need these skills to ace Cryptographic Key Management Operations Engineer

Cryptographic Key Lifecycle Management
Symmetric and Asymmetric Encryption
Public Key Infrastructure (PKI)
Hardware Security Modules (HSMs)
Enterprise Key Management Solutions (AWS KMS, Azure Key Vault, HashiCorp Vault, OCI KMS)
Compliance with Financial Security Regulations (PCI DSS, GDPR, FIPS 140-2/3)
IoT Device Security
Embedded Encryption Techniques
Security Information and Event Management (SIEM) Tools
Incident Response and Risk Mitigation
API Integration and Automation
Documentation of Key Management Processes
Reporting and Analysis on Key Usage and Compliance
Post-Quantum Cryptography (PQC) Readiness
Familiarity with JIRA and Confluence
Strong Communication and Collaboration Skills

Some tips for your application 🫡

Tailor Your CV: Make sure your CV highlights relevant experience in cryptographic key management and information security. Emphasise your familiarity with regulations like PCI DSS and FIPS, as well as any specific technologies mentioned in the job description.

Craft a Strong Cover Letter: In your cover letter, express your enthusiasm for the role and how your background aligns with State Street's needs. Mention your experience with key lifecycle management and your ability to collaborate with various teams, as this is crucial for the position.

Showcase Relevant Skills: Clearly outline your technical skills related to cryptography, such as experience with AWS KMS or Azure Key Vault. Highlight any certifications you hold, like CISSP or CISM, as these will strengthen your application.

Proofread Your Application: Before submitting, carefully proofread your CV and cover letter for any spelling or grammatical errors. A polished application reflects your attention to detail, which is essential in a role focused on security and compliance.

How to prepare for a job interview at State Street

✨Understand Key Management Fundamentals

Make sure you have a solid grasp of cryptographic key lifecycle management, including generation, distribution, and revocation. Be prepared to discuss your experience with symmetric and asymmetric encryption, PKI, and HSMs, as these are crucial for the role.

✨Familiarise Yourself with Regulations

Since compliance is a big part of this job, brush up on financial industry regulations like PCI DSS, GDPR, and FIPS 140-2/3. Being able to articulate how you've ensured compliance in past roles will impress your interviewers.

✨Showcase Your Collaboration Skills

This role requires working closely with various teams, so be ready to share examples of how you've successfully collaborated with security, IT, and DevSecOps teams in previous positions. Highlight any projects where teamwork was essential to achieving goals.

✨Demonstrate Your Problem-Solving Abilities

Prepare to discuss specific incidents you've managed, such as key compromises or policy violations. Explain how you approached these challenges, the steps you took to resolve them, and what you learned from the experience.

Cryptographic Key Management Operations Engineer
State Street
S
Similar positions in other companies
UK’s top job board for Gen Z
discover-jobs-cta
Discover now
>