About the Role
State Street's Cyber Data & Analytics (CyberDNA) team is seeking a Security Data Solutions Engineer to shape the next generation of cybersecurity data, analytics, and AI-powered solutions. This role enables cybersecurity teams to make faster, AI-driven decisions and strengthen the firm's ability to detect, prevent, and respond to evolving cyber threats.
Responsibilities
- Serve as the subject matter expert for security data solutions supporting SIEM, Security Analytics, Detection Engineering, Threat Hunting, and AI-enabled cybersecurity use cases.
- Partner with cybersecurity stakeholders to define data requirements, success criteria, onboarding priorities, roadmaps, and measurable outcomes for security data products.
- Design and implement enterprise-scale security telemetry solutions supporting on-premises, cloud, SaaS, and hybrid environments.
- Analyze source systems, log schemas, metadata requirements, retention needs, and downstream analytics requirements to define onboarding and normalization strategies.
- Design optimal workflows for onboarding of security data from applications, cloud platforms, identity systems, infrastructure, network devices, databases, endpoints, and security tools.
- Design scalable ingestion, routing, transformation, enrichment, normalization, and validation patterns for SIEM and cybersecurity data platforms.
- Ensure security telemetry meets requirements for quality, completeness, timeliness, consistency, governance, and operational reliability.
- Collaborate with architects, engineers, and product managers to prioritize capabilities and deliver solutions that align with cybersecurity and business objectives.
- Define product roadmaps, feature requirements, user stories, acceptance criteria, and delivery milestones for security data initiatives.
- Lead cross-functional workshops with business and technical stakeholders to identify opportunities for improving cybersecurity visibility and operational efficiency.
- Establish data quality metrics, service-level objectives, operational KPIs, data governance and process governance controls for security data products.
- Spearhead the implementation of AI, automation, and self-service workflow capabilities that improve cybersecurity outcomes and reduce operational effort.
- Influence strategic direction of cybersecurity data platforms, data engineering processes, and analytics capabilities.
- Provide technical leadership for complex cybersecurity data integration and modernization initiatives.
Requirements
- Deep understanding of SIEM platforms such as Splunk, Microsoft Sentinel, QRadar, Elastic, Chronicle, or similar technologies.
- Proven experience designing data driven solutions using technologies such as Databricks, Snowflake, Kafka, Spark and logging agents like Cribl, OpenTelemetry, FluentBit, or equivalent platforms.
- Hands-on experience & Strong understanding of data engineering concepts including ETL/ELT, streaming pipelines, data lakes, data warehouses, and data governance.
- Hands-on experience developing, validating, and deploying machine learning models and scalable data pipelines within production environments.
- Strong knowledge of cybersecurity telemetry, log management, event correlation, data normalization, enrichment, and detection engineering requirements.
- Demonstrated product management experience with the ability to develop roadmaps, prioritize features, define business value, and manage stakeholder expectations.
- Experience with cloud-native architectures across AWS, Azure, and Google Cloud environments.
- Ability to analyze complex problems, evaluate trade-offs, and recommend pragmatic solutions balancing business and technical requirements.
- Strong understanding of cybersecurity use cases including incident response, threat detection, threat hunting, vulnerability management, identity security, and cloud security.
- Experience working within Agile, DevSecOps, and product-driven delivery models.
- Exceptional communication, collaboration, and stakeholder management skills.
- Ability to influence technical and business leaders across multiple organizations.
Skills
- SIEM platforms
- Databricks
- Snowflake
- Kafka
- Spark
- Cribl
- OpenTelemetry
- FluentBit
- ETL/ELT
- Streaming pipelines
- Data lakes
- Data warehouses
- Data governance
- Machine learning models
- Data pipelines
- Cybersecurity telemetry
- Log management
- Event correlation
- Data normalization
- Data enrichment
- Detection engineering
- Product management
- Roadmap development
- Feature prioritization
- Business value definition
- Stakeholder expectation management
- AWS
- Azure
- Google Cloud
- Agile
- DevSecOps
- Communication
- Collaboration
- Stakeholder management
- Technical leadership
- Python
- SQL
- NIST CSF
- MITRE ATT&CK
- CIS Controls
- Zero Trust architectures
Location
- Local time
Work Type
- Hybrid
Experience Level
- 8+ years of experience in cybersecurity, data engineering, AI/ML, security analytics, SIEM engineering, product design, or related technical fields.
- 5+ years of hands-on experience designing and implementing enterprise-scale data products, data lakes, Lakehouse and data warehouse solutions.
Education Level
- Bachelor’s degree in computer science, Cybersecurity, Information Technology, Engineering, Data Engineering, Information Systems, or a related technical discipline.
- Master’s degree in computer science, Cybersecurity, Engineering, Data Science, Business Administration, or related discipline.
- Industry certifications such as CISSP, CISM, CCSP, Splunk Certified Architect, Splunk Certified Consultant, Microsoft Security Certifications, AWS Certifications, Databricks Certifications, or equivalent.
Salary/Compensations
- $120,000 - $202,500 Annual
Benefits
- Competitive and comprehensive benefits packages.
- Generous medical care, insurance and savings plans.
- Flexible Work Program.
- Wealth of development programs and educational support.
- Retirement savings plan (401K) with company match.
- Insurance coverage including basic life, medical, dental, vision, long-term disability, and other optional additional coverages.
- Paid-time off including vacation, sick leave, short term disability, and family care responsibilities.
- Access to our Employee Assistance Program.
- Incentive compensation including eligibility for annual performance-based awards.
- Eligibility for certain tax advantaged savings plans.
- Paid volunteer days.
- Matching gift program.
- Access to employee networks.
About the Company
- State Street is one of the largest custodian banks, asset managers and asset intelligence companies in the world.
- We are making our mark on the financial services industry through technology and product innovation.
- For more than two centuries, we’ve been helping our clients safeguard and steward the investments of millions of people.
- We provide investment servicing, data & analytics, investment research & trading and investment management to institutional clients.
- We keep our clients at the heart of everything we do, and smart, engaged employees are essential to our continued success.
- We are committed to fostering an environment where every employee feels valued and empowered to reach their full potential.
- Join us in shaping the future.
Equal Opportunity
- We warmly welcome the candidates of diverse origin, background, ability, age, sexual orientation, gender identity and personality.
- State Street is an equal opportunity and affirmative action employer.
- As an Equal Opportunity Employer, we consider all qualified applicants for all positions without regard to race, creed, color, religion, national origin, ancestry, ethnicity, age, disability, genetic information, sex, sexual orientation, gender identity or expression, citizenship, marital status, domestic partnership or civil union status, familial status, military and veteran status, and other characteristics protected by applicable law.
