At a Glance
- Tasks: Design and optimise encryption solutions across various environments to secure data effectively.
- Company: State Street is a leading global custodian bank and asset manager with over 200 years of experience.
- Benefits: Enjoy flexible work options, competitive pay, and comprehensive benefits including medical care and educational support.
- Why this job: Join a collaborative team driving digital transformation in financial services while enhancing your technical skills.
- Qualifications: 4+ years in Cybersecurity, strong coding skills, and experience with key management systems required.
- Other info: Diversity and inclusion are core values; all backgrounds are encouraged to apply.
The predicted salary is between 84000 - 126000 £ per year.
State Street is seeking an experienced Encryption Program Analyst to help design, implement, and optimize enterprise-wide encryption and key management solutions across cloud, on-premises, and IoT environments in a highly regulated environment. This role will be responsible for defining cryptographic strategies, ensuring compliance with regulatory standards, and leading the integration of encryption services across a diverse infrastructure. As financial institutions increasingly adopt hybrid cloud and IoT-enabled banking solutions, this role will play a critical part in securing data at rest, in transit, and in use, ensuring end-to-end cryptographic protection across applications, infrastructure, and connected devices. The ideal candidate will have deep expertise in cryptographic key management, Hardware Security Modules (HSMs), cloud security, IoT encryption protocols, and enterprise data protection. This role can be performed in a hybrid model, where you can balance work from home and office to match your needs and role requirements.
What you will be responsible for:
- Implement and maintain the enterprise cryptographic strategy, ensuring alignment with security, compliance, and business objectives.
- Define and maintain key lifecycle management processes and procedures, including key generation, rotation, revocation, and decommissioning for cloud, on-premises, and IoT environments.
- Support the deploy of centralized Key Management Systems (KMS), including cloud-native KMS (AWS KMS, Azure Key Vault, OCI KMS), and enterprise HSMs.
- Ensure robust data encryption methodologies are applied to data stored in databases, applications, and IoT connected devices.
- Collaborate with cloud security and DevSecOps teams to integrate encryption and key management into CI/CD pipelines and Infrastructure as Code (IaC) deployments.
- Develop IoT encryption frameworks to secure IoT devices.
- Support the integration of encryption solutions into applications, databases, cloud services, IoT platforms, and enterprise infrastructure.
- Collaborate with application security, infrastructure, and DevSecOps teams to embed cryptographic security controls into software development and deployment processes.
- Support post-quantum cryptography (PQC) readiness by evaluating and preparing for emerging threats to encryption security.
- Ensure compliance with NIST 800-57, PCI DSS, FIPS 140-2/3, ISO 27001, GDPR, FFIEC, and IoT security (NIST 800-183, ETSI EN 303 645).
What We Value:
- Developing governance frameworks for encryption and cryptographic key management, including policies for key storage, access control, logging, and auditing.
- Conduct risk assessments, vulnerability testing, and security reviews for cryptographic implementations, IoT ecosystems, and cloud security controls.
- Act as a key stakeholder in security audits, regulatory assessments, and IoT security standardization efforts.
- Provide technical support and training to internal teams on encryption best practices, cloud security, and IoT security.
- Stay ahead of advancements in cryptographic algorithms, quantum computing risks, and emerging IoT security frameworks.
- Drive innovation in encryption automation, integrating key management with DevSecOps, and Infrastructure as Code (IaC).
Education & Preferred Qualifications:
- Multiyear (>4 years) experience within Cybersecurity including SecOps, Cloud Security, and secure architecture.
- Bachelor's Degree in Computer Science/Engineering, related discipline, or equivalent work experience.
- Strong proficiency in Python, PowerShell, Bash, or Java.
- Hands-on experience with key management systems (HashiCorp Vault, AWS KMS, Azure Key Vault, OCI KMS).
- Experience with Kubernetes, Terraform, Ansible, Chef, and CI/CD automation.
- Understanding of cryptographic algorithms (AES, RSA, ECC), hardware security modules (HSMs), and secure key storage practices.
- Experience working in financial institutions or other highly regulated industries.
- Certifications such as CISSP, CISM, AWS Security Specialty, HashiCorp Certified Vault Associate or CCSK.
- Familiarity with NIST 800-57, PCI DSS, FIPS 140-2/3, ISO 27001, GDPR, FFIEC, and IoT security (NIST 800-183, ETSI EN 303 645).
Additional requirements:
- Travel up to 10% may be required.
We truly believe in the power that comes from the diverse backgrounds and experiences our employees bring with them. Although each vacancy details what we are looking for, we don’t necessarily need you to fulfil all of them when applying. If you like change and innovation, seek to see the bigger picture, make data driven decisions and are a good team player, you could be a great fit.
Why this role is important to us:
Our technology function, Global Technology Services (GTS), is vital to State Street and is the key enabler for our business to deliver data and insights to our clients. We’re driving the company’s digital transformation and expanding business capabilities using industry best practices and advanced technologies such as cloud, artificial intelligence and robotics process automation.
We offer a collaborative environment where technology skills and innovation are valued in a global organization. We’re looking for top technical talent to join our team and deliver creative technology solutions that help us become an end-to-end, next-generation financial services company.
Join us if you want to grow your technical skills, solve real problems and make your mark on our industry.
About State Street:
State Street is one of the largest custodian banks, asset managers and asset intelligence companies in the world. From technology to product innovation, we’re making our mark on the financial services industry. For more than two centuries, we’ve been helping our clients safeguard and steward the investments of millions of people. We provide investment servicing, data & analytics, investment research & trading and investment management to institutional clients.
Work, Live and Grow:
We make all efforts to create a great work environment. Our benefits packages are competitive and comprehensive. Details vary by location, but you may expect generous medical care, insurance and savings plans, among other perks. You’ll have access to flexible Work Programs to help you match your needs. And our wealth of development programs and educational support will help you reach your full potential.
Inclusion, Diversity and Social Responsibility:
We truly believe our employees’ diverse backgrounds, experiences and perspectives are a powerful contributor to creating an inclusive environment where everyone can thrive and reach their maximum potential while adding value to both our organization and our clients. We warmly welcome candidates of diverse origin, background, ability, age, sexual orientation, gender identity and personality. Another fundamental value at State Street is active engagement with our communities around the world, both as a partner and a leader. You will have tools to help balance your professional and personal life, paid volunteer days, matching gift programs and access to employee networks that help you stay connected to what matters to you.
State Street is an equal opportunity and affirmative action employer.
Salary Range:
$120,000 - $187,500 Annual. The range quoted above applies to the role in the primary location specified. If the candidate would ultimately work outside of the primary location above, the applicable range could differ.
Job Application Disclosure:
It is unlawful in Massachusetts to require or administer a lie detector test as a condition of employment or continued employment. An employer who violates this law shall be subject to criminal penalties and civil liability.
Encryption Program Analyst, Vice President, Hybrid employer: State Street
Contact Detail:
State Street Recruiting Team
StudySmarter Expert Advice 🤫
We think this is how you could land Encryption Program Analyst, Vice President, Hybrid
✨Tip Number 1
Familiarise yourself with the specific encryption technologies and protocols mentioned in the job description, such as Hardware Security Modules (HSMs) and IoT encryption protocols. This knowledge will not only help you during interviews but also demonstrate your genuine interest in the role.
✨Tip Number 2
Network with professionals in the cybersecurity field, especially those who work in financial institutions or have experience with encryption. Attend industry events or join online forums to connect with potential colleagues and learn more about the latest trends and challenges in encryption.
✨Tip Number 3
Prepare to discuss your hands-on experience with key management systems and cloud security solutions. Be ready to share specific examples of how you've implemented encryption strategies in previous roles, as this will showcase your practical expertise and problem-solving skills.
✨Tip Number 4
Stay updated on regulatory standards relevant to the role, such as NIST 800-57 and PCI DSS. Understanding these regulations will not only prepare you for interview questions but also show that you are proactive about compliance and security best practices.
We think you need these skills to ace Encryption Program Analyst, Vice President, Hybrid
Some tips for your application 🫡
Tailor Your CV: Make sure your CV highlights relevant experience in cybersecurity, encryption, and key management. Use specific examples that demonstrate your expertise in cryptographic strategies and compliance with regulatory standards.
Craft a Strong Cover Letter: In your cover letter, express your passion for encryption and data security. Mention how your skills align with the responsibilities outlined in the job description, particularly your experience with cloud security and IoT encryption protocols.
Highlight Relevant Certifications: If you have certifications like CISSP, CISM, or AWS Security Specialty, make sure to include them prominently in your application. These credentials can set you apart from other candidates and show your commitment to the field.
Showcase Your Technical Skills: Detail your proficiency in programming languages such as Python or Java, and your hands-on experience with key management systems. This will demonstrate your technical capabilities and readiness for the role.
How to prepare for a job interview at State Street
✨Showcase Your Technical Expertise
Make sure to highlight your experience with cryptographic key management, Hardware Security Modules (HSMs), and cloud security. Be prepared to discuss specific projects where you implemented encryption solutions, as this will demonstrate your hands-on knowledge and problem-solving skills.
✨Understand Regulatory Compliance
Familiarise yourself with relevant regulations such as NIST 800-57, PCI DSS, and GDPR. During the interview, be ready to explain how you've ensured compliance in past roles, as this is crucial for the position at State Street.
✨Prepare for Scenario-Based Questions
Expect scenario-based questions that assess your ability to handle real-world challenges in encryption and key management. Practice articulating your thought process and decision-making strategies when faced with potential security threats or compliance issues.
✨Demonstrate Collaboration Skills
Since the role involves working with various teams like DevSecOps and application security, be prepared to discuss how you've successfully collaborated in cross-functional environments. Share examples of how you integrated encryption into CI/CD pipelines or worked on IoT security frameworks.